Go to file
Otto Hollmann 6a02bab132 Accepting request 1126087 from home:ohollmann:branches:security:tls
- Security fix: [bsc#1216922, CVE-2023-5678]
  * Fix excessive time spent in DH check / generation with large Q
    parameter value.
  * Applications that use the functions DH_generate_key() to generate
    an X9.42 DH key may experience long delays. Likewise,
    applications that use DH_check_pub_key(), DH_check_pub_key_ex
    () or EVP_PKEY_public_check() to check an X9.42 DH key or X9.42
    DH parameters may experience long delays. Where the key or
    parameters that are being checked have been obtained from an
    untrusted source this may lead to a Denial of Service.
  * Add openssl-CVE-2023-5678.patch
- Remove trailing spaces from changelog

- Remove a hack for bsc#936563
  bsc936563_hack.patch (bsc#936563)
- Build with no-ssl3, for details on why this is needed read
  require us to patch dependant packages as the relevant
  functions are still available (SSLv3_(client|server)_method)
- openssl.keyring: use Matt Caswells current key.
- openSSL 1.0.1j
- openssl.keyring: the 1.0.1i release was done by
- 012-Fix-eckey_priv_encode.patch eckey_priv_encode should
- 0001-Axe-builtin-printf-implementation-use-glibc-instead.patch
  it is already in RPM_OPT_FLAGS and is replaced by
- Remove the "gmp" and "capi" shared engines, nobody noticed
  but they are just dummies that do nothing.
- Use enable-rfc3779 to allow projects such as rpki.net
- openssl-buffreelistbug-aka-CVE-2010-5298.patch fix
- openssl-gcc-attributes.patch: fix thinko, CRYPTO_realloc_clean does
- openssl-gcc-attributes.patch

OBS-URL: https://build.opensuse.org/request/show/1126087
OBS-URL: https://build.opensuse.org/package/show/security:tls/openssl-1_1?expand=0&rev=150
2023-11-15 09:54:14 +00:00
.gitattributes - Renamed from openssl-1_1_0 (bsc#1081335) 2018-02-16 12:13:08 +00:00
.gitignore - Renamed from openssl-1_1_0 (bsc#1081335) 2018-02-16 12:13:08 +00:00
0001-s390x-assembly-pack-perlasm-support.patch Accepting request 708112 from home:vitezslav_cizek:branches:factory 2019-06-06 11:11:21 +00:00
0002-crypto-chacha-asm-chacha-s390x.pl-add-vx-code-path.patch Accepting request 786956 from home:vitezslav_cizek:branches:security:tls 2020-03-20 17:43:35 +00:00
0003-crypto-poly1305-asm-poly1305-s390x.pl-add-vx-code-pa.patch Accepting request 786956 from home:vitezslav_cizek:branches:security:tls 2020-03-20 17:43:35 +00:00
0004-s390x-assembly-pack-fix-formal-interface-bug-in-chac.patch Accepting request 708112 from home:vitezslav_cizek:branches:factory 2019-06-06 11:11:21 +00:00
0005-s390x-assembly-pack-import-chacha-from-cryptogams-re.patch Accepting request 708112 from home:vitezslav_cizek:branches:factory 2019-06-06 11:11:21 +00:00
0006-s390x-assembly-pack-import-poly-from-cryptogams-repo.patch Accepting request 708112 from home:vitezslav_cizek:branches:factory 2019-06-06 11:11:21 +00:00
baselibs.conf Accepting request 1089971 from security:tls:unstable 2023-05-31 09:13:51 +00:00
bsc1185319-FIPS-KAT-for-ECDSA.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
bsc1198207-FIPS-add-hash_hmac-drbg-kat.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-AES-GCM-performance-optimzation-with-stitched-method.patch Accepting request 1042846 from home:ohollmann:branches:security:tls 2022-12-14 09:46:30 +00:00
openssl-1_1-chacha20-performance-optimizations-for-ppc64le-with-.patch Accepting request 1042846 from home:ohollmann:branches:security:tls 2022-12-14 09:46:30 +00:00
openssl-1_1-disable-test_srp-sslapi.patch Accepting request 865443 from home:pmonrealgonzalez:branches:security:tls 2021-01-21 14:53:39 +00:00
openssl-1_1-FIPS_drbg-rewire.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-fips-bsc1215215_fips_in_version_string.patch Accepting request 1116067 from home:ohollmann:branches:security:tls 2023-10-06 13:41:55 +00:00
openssl-1_1-fips-drbg-selftest.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-FIPS-fix-error-reason-codes.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-fips-list-only-approved-digest-and-pubkey-algorithms.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-FIPS-PBKDF2-KAT-requirements.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-Fix-AES-GCM-on-Power-8-CPUs.patch Accepting request 1042984 from home:ohollmann:branches:security:tls 2022-12-14 20:20:45 +00:00
openssl-1_1-Fixed-conditional-statement-testing-64-and-256-bytes.patch Accepting request 1042846 from home:ohollmann:branches:security:tls 2022-12-14 09:46:30 +00:00
openssl-1_1-Fixed-counter-overflow.patch Accepting request 1042846 from home:ohollmann:branches:security:tls 2022-12-14 09:46:30 +00:00
openssl-1_1-jitterentropy-3.4.0.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-openssl-config.patch Accepting request 1101915 from home:pmonrealgonzalez:branches:security:tls 2023-08-02 10:03:45 +00:00
openssl-1_1-Optimize-AES-GCM-uarchs.patch Accepting request 949750 from home:pmonrealgonzalez:branches:security:tls 2022-01-28 17:51:43 +00:00
openssl-1_1-Optimize-AES-XTS-aarch64.patch Accepting request 949750 from home:pmonrealgonzalez:branches:security:tls 2022-01-28 17:51:43 +00:00
openssl-1_1-Optimize-ppc64.patch Accepting request 949750 from home:pmonrealgonzalez:branches:security:tls 2022-01-28 17:51:43 +00:00
openssl-1_1-Optimize-RSA-armv8.patch Accepting request 949750 from home:pmonrealgonzalez:branches:security:tls 2022-01-28 17:51:43 +00:00
openssl-1_1-ossl-sli-000-fix-build-error.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-ossl-sli-001-fix-faults-preventing-make-update.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-ossl-sli-002-ran-make-update.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-ossl-sli-003-add-sli.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-ossl-sli-004-allow-aes-xts-256.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-ossl-sli-005-EC_group_order_bits.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-ossl-sli-006-rsa_pkcs1_padding.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-ossl-sli-007-pbkdf2-keylen.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-ossl-sli-008-pbkdf2-salt_pass_iteration.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-paramgen-default_to_rfc7919.patch Accepting request 1007029 from home:ohollmann:branches:home:jsikes:branches:security:tls 2022-09-30 10:26:12 +00:00
openssl-1_1-seclevel.patch Accepting request 865443 from home:pmonrealgonzalez:branches:security:tls 2021-01-21 14:53:39 +00:00
openssl-1_1-serialize-jitterentropy-calls.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-shortcut-test_afalg_aes_cbc.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1-use-include-directive.patch Accepting request 960455 from home:pmonrealgonzalez:branches:security:tls 2022-03-09 11:25:28 +00:00
openssl-1_1-use-seclevel2-in-tests.patch Accepting request 865443 from home:pmonrealgonzalez:branches:security:tls 2021-01-21 14:53:39 +00:00
openssl-1_1-Zeroization.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1_1.changes Accepting request 1126087 from home:ohollmann:branches:security:tls 2023-11-15 09:54:14 +00:00
openssl-1_1.spec Accepting request 1126087 from home:ohollmann:branches:security:tls 2023-11-15 09:54:14 +00:00
openssl-1.1.0-issuer-hash.patch Accepting request 873674 from home:pmonrealgonzalez:branches:security:tls 2021-02-22 12:20:01 +00:00
openssl-1.1.0-no-html.patch Accepting request 790182 from home:vitezslav_cizek:branches:security:tls 2020-03-31 14:27:13 +00:00
openssl-1.1.1-evp-kdf.patch Accepting request 961990 from home:pmonrealgonzalez:branches:security:tls 2022-03-15 18:24:32 +00:00
openssl-1.1.1-fips-crng-test.patch Accepting request 796077 from home:vitezslav_cizek:branches:security:tls 2020-04-21 15:13:15 +00:00
openssl-1.1.1-fips-fix-memory-leaks.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1.1.1-fips-post-rand.patch Accepting request 854071 from home:vitezslav_cizek:branches:security:tls 2020-12-14 11:20:34 +00:00
openssl-1.1.1-fips.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1.1.1-ssh-kdf.patch Accepting request 786956 from home:vitezslav_cizek:branches:security:tls 2020-03-20 17:43:35 +00:00
openssl-1.1.1-system-cipherlist.patch Accepting request 942952 from home:pmonrealgonzalez:branches:security:tls 2022-01-03 08:42:13 +00:00
openssl-1.1.1w.tar.gz Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-1.1.1w.tar.gz.asc Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-assembly-pack-accelerate-scalar-multiplication.patch Accepting request 786956 from home:vitezslav_cizek:branches:security:tls 2020-03-20 17:43:35 +00:00
openssl-CVE-2023-5678.patch Accepting request 1126087 from home:ohollmann:branches:security:tls 2023-11-15 09:54:14 +00:00
openssl-DEFAULT_SUSE_cipher.patch Accepting request 960455 from home:pmonrealgonzalez:branches:security:tls 2022-03-09 11:25:28 +00:00
openssl-DH.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-dont-pass-zero-length-input-to-EVP_Cipher.patch Accepting request 1100559 from home:ohollmann:branches:security:tls 2023-07-25 08:04:18 +00:00
openssl-ec-56-bit-Limb-Solinas-Strategy-for-secp384r1.patch Accepting request 1119558 from home:ohollmann:branches:security:tls 2023-10-25 07:52:22 +00:00
openssl-ec-powerpc64le-Add-asm-implementation-of-felem_-squa.patch Accepting request 1119558 from home:ohollmann:branches:security:tls 2023-10-25 07:52:22 +00:00
openssl-ec-Use-static-linkage-on-nistp521-felem_-square-mul-.patch Accepting request 1119558 from home:ohollmann:branches:security:tls 2023-10-25 07:52:22 +00:00
openssl-ecc-Remove-extraneous-parentheses-in-secp384r1.patch Accepting request 1119558 from home:ohollmann:branches:security:tls 2023-10-25 07:52:22 +00:00
openssl-Enable-curve-spefific-ECDSA-implementations-via-EC_M.patch Accepting request 786956 from home:vitezslav_cizek:branches:security:tls 2020-03-20 17:43:35 +00:00
openssl-fips_mode.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-fips_selftest_upstream_drbg.patch Accepting request 836174 from home:vitezslav_cizek:branches:security:tls 2020-09-23 06:41:06 +00:00
openssl-fips-add-SHA3-selftest.patch Accepting request 776093 from home:jsikes:branches:security:tls 2020-02-19 08:42:05 +00:00
openssl-fips-clearerror.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-fips-DH_selftest_shared_secret_KAT.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-fips-ignore_broken_atexit_test.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-FIPS-KAT-before-integrity-tests.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-fips-kdf-hkdf-selftest.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-fips-run_selftests_only_when_module_is_complete.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-fips-selftests_in_nonfips_mode.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-Fix-9bf682f-which-broke-nistp224_method.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-Improve-performance-for-6x-unrolling-with-vpermxor-i.patch Accepting request 1119558 from home:ohollmann:branches:security:tls 2023-10-25 07:52:22 +00:00
openssl-kdf-selftest.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-kdf-ssh-selftest.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-kdf-tls-selftest.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-keep_EVP_KDF_functions_version.patch Accepting request 767728 from home:vitezslav_cizek:branches:security:tls 2020-01-27 14:25:49 +00:00
openssl-no-date.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-OPENSSL_s390xcap.pod-list-msa9-facility-bit-155.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-pkgconfig.patch Accepting request 631304 from home:vitezslav_cizek:branches:security:tls 2018-08-24 10:39:49 +00:00
openssl-powerpc-ecc-Fix-stack-allocation-secp384r1-asm.patch Accepting request 1119558 from home:ohollmann:branches:security:tls 2023-10-25 07:52:22 +00:00
openssl-ppc64-config.patch Accepting request 631304 from home:vitezslav_cizek:branches:security:tls 2018-08-24 10:39:49 +00:00
openssl-riscv64-config.patch Accepting request 985766 from home:Andreas_Schwab:Factory 2022-07-07 02:47:54 +00:00
openssl-s390x-assembly-pack-accelerate-ECDSA.patch Accepting request 786956 from home:vitezslav_cizek:branches:security:tls 2020-03-20 17:43:35 +00:00
openssl-s390x-assembly-pack-accelerate-X25519-X448-Ed25519-and-Ed448.patch Accepting request 786956 from home:vitezslav_cizek:branches:security:tls 2020-03-20 17:43:35 +00:00
openssl-s390x-assembly-pack-add-OPENSSL_s390xcap-environment.patch Accepting request 980599 from home:jsikes:branches:security:tls 2022-06-07 06:28:40 +00:00
openssl-s390x-assembly-pack-add-OPENSSL_s390xcap-man-page.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-s390x-assembly-pack-add-support-for-pcc-and-kma-inst.patch Accepting request 980599 from home:jsikes:branches:security:tls 2022-06-07 06:28:40 +00:00
openssl-s390x-assembly-pack-cleanse-only-sensitive-fields.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-s390x-assembly-pack-fix-msa3-stfle-bit-detection.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-s390x-assembly-pack-fix-OPENSSL_s390xcap-z15-cpu-mas.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-s390x-assembly-pack-update-OPENSSL_s390xcap-3.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-s390x-fix-x448-and-x448-test-vector-ctime-for-x25519-and-x448.patch Accepting request 786956 from home:vitezslav_cizek:branches:security:tls 2020-03-20 17:43:35 +00:00
openssl-s390xcpuid.pl-fix-comment.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-s_client-check-ocsp-status.patch Accepting request 1111331 from home:ohollmann:branches:security:tls 2023-09-14 19:44:42 +00:00
openssl-ship_fips_standalone_hmac.patch Accepting request 766865 from home:vitezslav_cizek:branches:security:tls 2020-01-24 11:52:58 +00:00
openssl-truststore.patch Accepting request 631304 from home:vitezslav_cizek:branches:security:tls 2018-08-24 10:39:49 +00:00
openssl-unknown_dgst.patch Accepting request 786956 from home:vitezslav_cizek:branches:security:tls 2020-03-20 17:43:35 +00:00
openssl.keyring Accepting request 1101936 from home:pmonrealgonzalez:branches:security:tls 2023-08-02 10:17:50 +00:00
showciphers.c - Renamed from openssl-1_1_0 (bsc#1081335) 2018-02-16 12:13:08 +00:00