[openssl.org #2941] Memory leaks in ca.c

2012-12-11 Thread Dmitry Belyavsky via RT
Greetings! In case of error updating ca database a memory leak occur: $ openssl ca -config z/caCA/ca.conf -in z/user1/req.pem -batch -notext ... skipped ... failed to update database TXT_DB error number 2 [19:00:30] 4957 file=ca.c, line=2199, thread=3074324104, number=28, address=086466F0

Coverity coverage of OpenSSL?

2012-12-11 Thread Gary Grebus
Hi, I recently started building OpenSSL 1.0.1c in one of our source pools that is scanned with Coverity, and was surprised at the large number of issues that were reported. There was a significant increase even from an earlier version we were using. What is the status of OpenSSL with regard to

RE: Coverity coverage of OpenSSL?

2012-12-11 Thread Salz, Rich
Perhaps if someone donated a license or two to the core team, they'd be interested in tracking changes. As of now, it's sporadic, depending on interested parties to submit patches. (Including Coverity at times, IIRC) /r$ -- Principal Security Engineer Akamai Technology Cambridge,

OpenSSL openssl-fips-2.0.2 and private label

2012-12-11 Thread bhagyalekshmi r
Hi All, I had one question regarding usage of openssl-fips-2.0.2. I want to use openssl-fips-2.0.2 to get NIST compliance for some crypto functionality*.* I don't want to go for FIPS 140-2 certification/validation. I want to use only a part of openssl-fips-2.0.2 module. Can I use some parts of