libtpms/libtpms.changes
Marcus Meissner 15458222e5 Accepting request 880005 from home:gary_lin:branches:security
- Update to version 0.7.7
  * CryptSym: fix AES output IV (bsc#1183729, CVE-2021-3446)
  * tpm2: Fix public key context save due to ANY_OBJECT_Marshal usage
  * tpm2: Address some Coverity issues (false positives)
  * tpm1.2: Backported ASAN/UBSAN related fixes
  * tpm2: Return properly sized array for b parameter for NIST P521
    (HLK)
  * tpm2: Addressed issues detected by UBSAN
  * tpm2: Addressed issues detected by cppcheck (false positives)

OBS-URL: https://build.opensuse.org/request/show/880005
OBS-URL: https://build.opensuse.org/package/show/security/libtpms?expand=0&rev=23
2021-03-19 07:40:53 +00:00

91 lines
3.4 KiB
Plaintext

-------------------------------------------------------------------
Fri Mar 19 02:03:20 UTC 2021 - Gary Ching-Pang Lin <glin@suse.com>
- Update to version 0.7.7
* CryptSym: fix AES output IV (bsc#1183729, CVE-2021-3446)
* tpm2: Fix public key context save due to ANY_OBJECT_Marshal usage
* tpm2: Address some Coverity issues (false positives)
* tpm1.2: Backported ASAN/UBSAN related fixes
* tpm2: Return properly sized array for b parameter for NIST P521
(HLK)
* tpm2: Addressed issues detected by UBSAN
* tpm2: Addressed issues detected by cppcheck (false positives)
-------------------------------------------------------------------
Mon Nov 23 03:31:28 UTC 2020 - Gary Ching-Pang Lin <glin@suse.com>
- Update to version 0.7.4
* Addressed potential constant-time related issues in TPM 1.2 and
TPM 2 code
TPM 1.2: RSA decryption
TPM 2: EcSchnorr and EcSM2 signatures; Ecsda is handled by OpenSSL
* Fixed some compilation issues
-------------------------------------------------------------------
Thu Jul 23 05:01:12 UTC 2020 - Kai Liu <kai.liu@suse.com>
- Update to version 0.7.3
* Fixed the set of PCRs belonging to the TCB group. This affects
the pcrUpdateCounter in TPM2_Pcrread() responses, thus needs
latest `swtpm` (master, stable branches) for test cases to
succeed there.
- Changes since version 0.7.2
* Fix output buffer parameter and size for RSA decryption that
could cause stack corruption under certain circumstances
* Set the RSA PSS salt length to the digest length rathern than
max. possible
* Fixes to symmetric decrytion related to input size check, defer
padding to the user [EVP_CIPHER_CTX_set_padding(ctx, 0)] and to
always use a temporary malloc'ed buffer for decryption
- Changes since version 0.7.1
* tpm2: Fix TDES key creation by adding missing un-/marshalling
functions
* tpm2: Fix a bug in CheckAuthSession
* compilation fixes for TPM 1.2 & TPM 2 and various architectures
and gcc versions
* Fix support for NIST curves P{192,224,521} and SM2 P256 and
BNP648 that would not work;
* Runtime filter elliptic curves (that OpenSSL does not support)
and do not advertise those curves as capabilities
* Removed unnecessary space in MANUFACTURER "IBM " -> "IBM"
-------------------------------------------------------------------
Thu Sep 5 08:21:34 UTC 2019 - Gary Ching-Pang Lin <glin@suse.com>
- Update to version 0.7.0
* fixes for TPM2
- Add gcc-c++ to BuildRequires
-------------------------------------------------------------------
Mon Jan 28 09:25:27 UTC 2019 - Gary Ching-Pang Lin <glin@suse.com>
- Update to version 0.6.0
* Introduce TPM2 support
- Use %license tag for LICENSE
-------------------------------------------------------------------
Wed Jan 17 12:05:51 UTC 2018 - vcizek@suse.com
- Update to version 0.6.0-dev1
* no upstream changelog
* fix build with openssl 1.1 (bsc#1074801)
- fix rpm group
-------------------------------------------------------------------
Sat Mar 21 11:50:03 UTC 2015 - p.drouand@gmail.com
- Update to version 0.5.2
* No entry for this release
- Update project home and download Urls
- Add autoconf, automake and libtool build require; the tarball
comes from git and configure script has to be generated
-------------------------------------------------------------------
Tue Jan 14 14:51:14 UTC 2014 - meissner@suse.com
- import 0.5.1
- software TPM driver library for hooking into QEMU