diff --git a/_service b/_service index fd00e41..5dafb66 100644 --- a/_service +++ b/_service @@ -1,11 +1,11 @@ - 3.6.1 + 3.6.2 https://github.com/Mbed-TLS/mbedtls.git git enable .* - refs/tags/v3.6.1 + refs/tags/v3.6.2 diff --git a/_servicedata b/_servicedata index ab1596d..b7245a0 100644 --- a/_servicedata +++ b/_servicedata @@ -1,4 +1,4 @@ https://github.com/Mbed-TLS/mbedtls.git - 71c569d44bf3a8bd53d874c81ee8ac644dd6e9e3 \ No newline at end of file + 107ea89daaefb9867ea9121002fbbdf926780e98 \ No newline at end of file diff --git a/mbedtls-3.6.1.obscpio b/mbedtls-3.6.1.obscpio deleted file mode 100644 index 3dff1c0..0000000 --- a/mbedtls-3.6.1.obscpio +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:7a8c0377c4550810ca5dd168844533899606965ca614c5a63b484eac3557d0c4 -size 45245453 diff --git a/mbedtls-3.6.2.obscpio b/mbedtls-3.6.2.obscpio new file mode 100644 index 0000000..ac3b215 --- /dev/null +++ b/mbedtls-3.6.2.obscpio @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:4a06e2286ee6036baeea96e762631e0c1e735cc0fc85e9395c160effced5ceb7 +size 45246989 diff --git a/mbedtls.changes b/mbedtls.changes index 69b202d..4a98fd3 100644 --- a/mbedtls.changes +++ b/mbedtls.changes @@ -1,3 +1,11 @@ +------------------------------------------------------------------- +Thu Oct 17 09:38:18 UTC 2024 - Pedro Monreal + +- Update to version 3.6.2: [bsc#1231708, CVE-2024-49195] + * test_suite_pkwrite: extend coverage of wrong output buffer + sizes in pk_write_check_common() + * pkwrite: fix buffer overrun + ------------------------------------------------------------------- Sat Sep 07 12:00:00 UTC 2024 - cunix@mail.de diff --git a/mbedtls.obsinfo b/mbedtls.obsinfo index 97687d6..ca07085 100644 --- a/mbedtls.obsinfo +++ b/mbedtls.obsinfo @@ -1,4 +1,4 @@ name: mbedtls -version: 3.6.1 -mtime: 1725009114 -commit: 71c569d44bf3a8bd53d874c81ee8ac644dd6e9e3 +version: 3.6.2 +mtime: 1728898458 +commit: 107ea89daaefb9867ea9121002fbbdf926780e98 diff --git a/mbedtls.spec b/mbedtls.spec index a204c85..5f04d35 100644 --- a/mbedtls.spec +++ b/mbedtls.spec @@ -22,7 +22,7 @@ %define lib_everest libeverest %define lib_p256m libp256m Name: mbedtls -Version: 3.6.1 +Version: 3.6.2 Release: 0 Summary: Libraries for crypto and SSL/TLS protocols License: Apache-2.0 OR GPL-2.0-or-later