Accepting request 903414 from security

- cryptsetup 2.3.6:
  * integritysetup: Fix possible dm-integrity mapping table truncation.
  * cryptsetup: Backup header can be used to activate TCRYPT device.
    Use --header option to specify the header.
  * cryptsetup: Avoid LUKS2 decryption without detached header.
    This feature will be added later and is currently not supported.
  * Additional fixes and workarounds for common warnings produced
    by some static analysis tools (like gcc-11 analyzer) and additional
    code hardening.
  * Fix standalone libintl detection for compiled tests.
  * Add Blake2b and Blake2s hash support for crypto backends.
    Kernel and gcrypt crypto backend support all variants.
    OpenSSL supports only Blake2b-512 and Blake2s-256.
    Crypto backend supports kernel notation e.g. "blake2b-512".

OBS-URL: https://build.opensuse.org/request/show/903414
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/cryptsetup?expand=0&rev=114
This commit is contained in:
Dominique Leuenberger 2021-07-04 20:10:04 +00:00 committed by Git OBS Bridge
commit 2ca5e2b515
6 changed files with 38 additions and 20 deletions

View File

@ -1,16 +0,0 @@
-----BEGIN PGP SIGNATURE-----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=9hRP
-----END PGP SIGNATURE-----

View File

@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:ced9946f444d132536daf92fc8aca4277638a3c2d96e20540b2bae4d36fd70c1
size 11146364

16
cryptsetup-2.3.6.tar.sign Normal file
View File

@ -0,0 +1,16 @@
-----BEGIN PGP SIGNATURE-----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=AlrZ
-----END PGP SIGNATURE-----

3
cryptsetup-2.3.6.tar.xz Normal file
View File

@ -0,0 +1,3 @@
version https://git-lfs.github.com/spec/v1
oid sha256:b296b7a21ea576c2b180611ccb19d06aec8dddaedf7c704b0c6a81210c25635f
size 11154148

View File

@ -1,3 +1,21 @@
-------------------------------------------------------------------
Thu Jul 1 12:50:25 UTC 2021 - Ludwig Nussel <lnussel@suse.de>
- cryptsetup 2.3.6:
* integritysetup: Fix possible dm-integrity mapping table truncation.
* cryptsetup: Backup header can be used to activate TCRYPT device.
Use --header option to specify the header.
* cryptsetup: Avoid LUKS2 decryption without detached header.
This feature will be added later and is currently not supported.
* Additional fixes and workarounds for common warnings produced
by some static analysis tools (like gcc-11 analyzer) and additional
code hardening.
* Fix standalone libintl detection for compiled tests.
* Add Blake2b and Blake2s hash support for crypto backends.
Kernel and gcrypt crypto backend support all variants.
OpenSSL supports only Blake2b-512 and Blake2s-256.
Crypto backend supports kernel notation e.g. "blake2b-512".
-------------------------------------------------------------------
Sat Mar 13 11:29:54 UTC 2021 - Andreas Stieger <andreas.stieger@gmx.de>

View File

@ -22,7 +22,7 @@ Name: cryptsetup2
%else
Name: cryptsetup
%endif
Version: 2.3.5
Version: 2.3.6
Release: 0
Summary: Setup program for dm-crypt Based Encrypted Block Devices
License: SUSE-GPL-2.0-with-openssl-exception AND LGPL-2.0-or-later