Fixed timing difference resulting from badly formatted padding.
(cherry picked from commit 4582999be608c9794d4518ae336b265084db9f93)

Conflicts:
	ChangeLog
	library/ssl_tls.c
diff --git a/ChangeLog b/ChangeLog
index 6753726..5884e49 100644
--- a/ChangeLog
+++ b/ChangeLog
@@ -4,6 +4,10 @@
 Changes
    * Allow enabling of dummy error_strerror() to support some use-cases
 
+Security
+   * Removed timing differences during SSL message decryption in
+     ssl_decrypt_buf() due to badly formatted padding
+
 = Version 1.1.5 released on 2013-01-16
 Bugfix
    * Fixed MPI assembly for SPARC64 platform