Commit Graph

  • 0162b788d3 Accepting request 1172147 from security factory Dominique Leuenberger 2024-05-07 16:02:28 +0000
  • 0fcf37062f - add new sub-package libtss2-tcti-spidev0: TCTI for communicating with a TPM connected directly via SPI. - add new sub-package libtss2-tcti-i2c-helper0: TCTI for communicating with a TPM connected directly via I2C. Matthias Gerstner 2024-05-06 10:47:12 +0000
  • edb29b2668 - Fixed CVE-2024-29040 (bsc#1223690) Matthias Gerstner 2024-05-06 10:16:07 +0000
  • 57ab8ba31f Update to version 4.1: + Security - Fixed CVE-2024-29040 + Fixed - fapi: Fix length check on FAPI auth callbacks - mu: Correct error message for errors - tss2-rc: fix unknown laer handler dropping bits. - fapi: Fix deviation from CEL specification (template_value was used instead of template_data). - fapi: Fix json syntax error in FAPI profiles which was ignored by json-c. - build: fix build fail after make clean. - mu: Fix unneeded size check in TPM2B unmarshaling. - fapi: Fix missing parameter encryption. - build: Fix failed build with --disable-vendor. - fapi: Fix flush of persistent handles. - fapi: Fix test provisioning with template with self generated certificate disabled. - fapi: Fix error in Fapi_GetInfo it TPM supports SHA3 hash algs. - fapi: Revert pcr extension for EV_NO_ACTION events. - fapi: Fix strange error messages if nv, ext, or policy path does not exits. - fapi: Fix segfault caused by wrong allocation of pcr policy. - esys: Fix leak in Esys_EvictControl for persistent handles. - tss2-tcti: tcti-libtpms: fix test failure on big-endian platform. - esys: Add reference counting for Esys_TR_FromTPMPublic. - esys: Fix HMAC error if session bind key has an auth value with a trailing 0. - fapi: fix usage of self signed certificates in TPM. - fapi: Usage of self signed certificates. - fapi: A segfault after the error handling of non existing keys. - fapi: Fix several leaks. - fapi: Fix error handling for policy execution. - fapi: Fix usage of persistent handles (should not be flushed) - fapi: Fix test provisioning with template (skip test without self generated certificate). Matthias Gerstner 2024-05-03 14:16:18 +0000
  • 27e8c205b8 Accepting request 1138772 from security Ana Guerrero 2024-01-15 21:15:33 +0000
  • 43cbd52bf9 Accepting request 1138485 from home:gmbr3:Active Marcus Meissner 2024-01-15 08:16:44 +0000
  • 6f8e5ebb7e Accepting request 1137558 from home:gmbr3:Active Marcus Meissner 2024-01-09 08:27:44 +0000
  • 9812c29b26 Accepting request 1129154 from security Ana Guerrero 2023-11-27 21:42:06 +0000
  • d17d372bf4 Accepting request 1129124 from home:lnussel:branches:security Marcus Meissner 2023-11-27 14:34:08 +0000
  • c3f5f96bb4 Accepting request 1100357 from security Ana Guerrero 2023-07-25 09:22:50 +0000
  • 19dbe542bb Accepting request 1100221 from home:firstyear:kanidm Matthias Gerstner 2023-07-24 09:27:24 +0000
  • 71ea17d68f Accepting request 1070181 from home:aplanas:branches:security Alberto Planas Dominguez 2023-03-08 12:58:53 +0000
  • 072812fe73 Accepting request 1069986 from home:aplanas:branches:security Alberto Planas Dominguez 2023-03-07 16:35:07 +0000
  • b44ac4081b Accepting request 1066193 from security Dominique Leuenberger 2023-02-17 15:43:57 +0000
  • c4218a3a27 Accepting request 1066192 from home:aplanas:branches:security Alberto Planas Dominguez 2023-02-16 15:00:57 +0000
  • 1cb5b7a946 Accepting request 1059943 from security Dominique Leuenberger 2023-01-21 18:10:13 +0000
  • 4cd4a5bc82 - add 0001-tss2_rc-ensure-layer-number-is-in-bounds.patch: fixes CVE-2023-22745 (bsc#1207325): Buffer Overlow in TSS2_RC_Decode. Overly large RC values passed to the TSS2 function could lead to memory overread or memory overread. This patch is not yet part of any upstream git tag. Matthias Gerstner 2023-01-20 11:24:42 +0000
  • 91c97e0294 Accepting request 988349 from security Dominique Leuenberger 2022-07-12 09:12:12 +0000
  • 4281ba40c5 Accepting request 988348 from home:aplanas:branches:security Alberto Planas Dominguez 2022-07-11 11:24:21 +0000
  • 85cccdc993 Accepting request 987923 from security Dominique Leuenberger 2022-07-09 14:59:10 +0000
  • 4623b2e0a3 Accepting request 987922 from home:aplanas:branches:security Alberto Planas Dominguez 2022-07-08 13:38:46 +0000
  • 71131875bd Accepting request 987905 from home:aplanas:branches:security Alberto Planas Dominguez 2022-07-08 12:20:43 +0000
  • 9150f41d89 OBS-URL: https://build.opensuse.org/package/show/security/tpm2-0-tss?expand=0&rev=118 Marcus Meissner 2022-04-27 06:57:23 +0000
  • 03ebf4999d Accepting request 937744 from security Dominique Leuenberger 2021-12-13 19:42:09 +0000
  • 6aad16be69 Accepting request 937743 from home:aplanas:branches:security Alberto Planas Dominguez 2021-12-09 10:31:03 +0000
  • d3c5c884e2 Accepting request 936752 from home:aplanas:branches:security Alberto Planas Dominguez 2021-12-08 17:09:11 +0000
  • 5aa8997739 Accepting request 936605 from home:aplanas:branches:security Alberto Planas Dominguez 2021-12-08 16:05:32 +0000
  • af4cb0d3eb Accepting request 936541 from home:aplanas:branches:security Alberto Planas Dominguez 2021-12-08 15:34:06 +0000
  • 525e740b90 Accepting request 936251 from home:aplanas:branches:security Matthias Gerstner 2021-12-08 09:29:33 +0000
  • 98eba292d4 Accepting request 906621 from security Dominique Leuenberger 2021-07-17 21:36:31 +0000
  • 7fefa963ed Accepting request 906490 from home:gmbr3:Active Matthias Gerstner 2021-07-16 08:13:53 +0000
  • bcdc60d0a7 Accepting request 906442 from home:gmbr3:Active Matthias Gerstner 2021-07-15 11:15:44 +0000
  • c0b9258829 Accepting request 902710 from security Dominique Leuenberger 2021-07-02 11:26:22 +0000
  • 3495640baa - small services fixes and comments Marcus Meissner 2021-06-28 06:53:09 +0000
  • ccc94ddaa8 Accepting request 867410 from security Dominique Leuenberger 2021-02-01 12:25:56 +0000
  • 2657dd4a32 note about download_files magic Matthias Gerstner 2021-01-29 13:10:09 +0000
  • 1b371b3d5b further explanation abuot tmpfiles %ghost madness Matthias Gerstner 2021-01-29 09:58:11 +0000
  • 1367d22f99 fix macros in comments Matthias Gerstner 2021-01-28 09:46:02 +0000
  • db6ae61a8c - update to 3.0.3: - changes in 3.0.3: * Fix Regression in Fapi_List * Fix memory leak in policy calculation - changes in 3.0.2: * FAPI: Fix setting of the system flag of NV objects * This will let NV object metadata be created system-wide always instead of * locally in the user. Existing metadata will remain in the user directory. * It can be moved to the corresponding systemstore manually if needed. * FAPI: Fix policy searching, when a policyRef was provided * FAPI: Accept EK-Certs without CRL dist point * FAPI: Fix return codes of Fapi_List * FAPI: Fix memleak in policy execution * FAPI: Fix coverity NULL-pointer check * FAPI: Set the written flag of NV objects in FAPI PolicyNV commands * FAPI: Fix deleting of policy files. * FAPI: Fix wrong file loading during object search. * Fapi: Fix memory leak * Fapi: Fix potential NULL-Dereference * Fapi: Remove superfluous NULL check * Fix a memory leak in async keystore load. Matthias Gerstner 2021-01-28 09:21:04 +0000
  • 259739975d Accepting request 844057 from security Dominique Leuenberger 2020-10-28 08:58:30 +0000
  • ec6907c8f9 OBS-URL: https://build.opensuse.org/package/show/security/tpm2-0-tss?expand=0&rev=103 Matthias Gerstner 2020-10-26 08:24:22 +0000
  • f5f7e05c1a OBS-URL: https://build.opensuse.org/package/show/security/tpm2-0-tss?expand=0&rev=102 Matthias Gerstner 2020-10-26 08:23:05 +0000
  • 6054f8f0f8 OBS-URL: https://build.opensuse.org/package/show/security/tpm2-0-tss?expand=0&rev=101 Matthias Gerstner 2020-10-23 10:56:19 +0000
  • b111eaabb3 OBS-URL: https://build.opensuse.org/package/show/security/tpm2-0-tss?expand=0&rev=100 Matthias Gerstner 2020-10-23 07:37:41 +0000
  • a1c55ce29a OBS-URL: https://build.opensuse.org/package/show/security/tpm2-0-tss?expand=0&rev=99 Matthias Gerstner 2020-10-22 14:02:30 +0000
  • a083903c1f - move the tcti-fapi tmpfiles.d config file into the libtss2-fapi1 sub-package. - improve the descriptions of new libraries (fapi1, cmd0, swtpm0) Matthias Gerstner 2020-10-22 11:43:23 +0000
  • ac062faf0c Accepting request 843352 from home:Guillaume_G:branches:openSUSE:Factory Matthias Gerstner 2020-10-22 10:27:22 +0000
  • d61f568b38 Accepting request 778720 from security Dominique Leuenberger 2020-02-26 14:02:05 +0000
  • 11ea812f83 sync _service with current version Matthias Gerstner 2020-02-24 09:44:44 +0000
  • 9dfcbbab6b Accepting request 778034 from home:mnhauke Matthias Gerstner 2020-02-24 09:44:15 +0000
  • e3f585c33e Accepting request 769069 from security Dominique Leuenberger 2020-02-09 20:01:18 +0000
  • 00388c2150 Accepting request 769062 from home:michals Matthias Gerstner 2020-01-31 14:16:21 +0000
  • 49479aa880 Accepting request 767595 from security Dominique Leuenberger 2020-01-30 08:33:03 +0000
  • 065455a1d1 Accepting request 766910 from home:dimstar:Factory Matthias Gerstner 2020-01-27 08:58:42 +0000
  • 5d799305f8 Accepting request 760375 from security Dominique Leuenberger 2020-01-05 14:20:41 +0000
  • 9877757ad7 Accepting request 759944 from home:mnhauke Matthias Gerstner 2020-01-02 09:06:06 +0000
  • 0c84f891db Accepting request 755853 from security Dominique Leuenberger 2019-12-17 12:29:00 +0000
  • 8566a367e8 adjust spec file to account for newly added libraries Matthias Gerstner 2019-12-11 11:27:31 +0000
  • f12df5d389 - update to upstream version 2.3.0: - changes in version 2.3.0: - tss2-tctildr: A new library that helps with tcti initialization Recommend to use this in place of custom tcti loading code now ! - tss2-rc: A new library that provides textual representations for return codes - Option to disable NIST-deprecated crypto (--disable-weak-crypto) - Support Esys_TR_FromTPMPublic on sessions (for use in Esys_FlushContext) - map-files with correct symbol lists for tss2-sys and tss2-esys This may lead to unresolved symbols in linked applications - Support to call Tss2_Sys_Execute repeatedly on certain errors - Reduced RAM consumption in Esys due to Tss2_Sys_Execute change - Automated session attribution clearing for esys (decrypt and encrypt) per cmd - Removed libtss2-mu from "Requires" field of libtss2-esys.pc Needs to be added explicitely now - All fixes from 2.2.1, 2.2.2 and 2.2.3 - Fixed SPDX License Identifiers - Fixed Null-pointer problems in tcti-tbs - Fixed Default locality for tcti-mssim set to LOC_0 - Fixed coverity and valgrind leaks detected in test programs (not library code) Matthias Gerstner 2019-12-11 11:09:20 +0000
  • 05ac4981c6 Accepting request 726006 from security Dominique Leuenberger 2019-08-27 08:22:31 +0000
  • bc68386482 clearer wording in changelog Matthias Gerstner 2019-08-26 05:44:16 +0000
  • e7a38c4fbc - update to upstream version 2.2.3: - changes from version 2.2.3: * Fix computation of session name * Fixed PolicyPassword handling of session Attributes * Fixed windows build from dist ball * Fixed default tcti configure option * Fixed nonce size calculation in ESYS sessions - changes from version 2.2.2: * Fixed wrong encryption flag in EncryptDecrypt * Fixing openssl engine invocation Matthias Gerstner 2019-08-23 12:08:26 +0000
  • 43cb96e289 Accepting request 698149 from security Yuchen Lin 2019-04-26 20:55:03 +0000
  • f9fbc4ab42 Accepting request 698141 from home:jubalh:branches:security Matthias Gerstner 2019-04-26 10:43:02 +0000
  • 0fe6a1b86d Accepting request 682101 from security Dominique Leuenberger 2019-03-06 14:51:44 +0000
  • 8e53f96352 - introduce _service file for syncing with upstream tags Matthias Gerstner 2019-03-06 10:10:25 +0000
  • d53bc3b303 remove old tarball Matthias Gerstner 2019-03-06 10:09:59 +0000
  • a153966f3f - update to upstream version 2.2.1: - changes from version 2.2.0: - Fixed leak of hkey on success in iesys_cryptossl_hmac_start - Fixed NULL ptr issues in Esys_HMAC_Start, Esys_HierarchyChangeAuth and Esys_NV_ChangeAuth - Fixed NULL ptr issue in sequenceHandleNode - Fixed NULL ptr auth handling in Esys_TR_SetAuth - Fixed NULL auth handling in iesys_compute_session_value - Fixed marshaling of TPM2Bs with sub types. - Fixed NULL ptr session handling in Esys_TRSess_SetAttributes - Fixed the way size of the hmac value of a session without authorization - Added missing MU functions for TPM2_NT type - Added missing MU functions for TPMA_ID_OBJECT type - Added missing type TPM2_NT into tss2_tpm2_types.h - Fixed wrong typename _ID_OBJECT in tss2_tpm2_types.h - Fixed build breakage when --with-maxloglevel is not 'trace' - Fixed build breakage in generated configure script when CFLAGS is set - Fixed configure scritp ERROR_IF_NO_PROG macro - Changed TPM2B type unmarshal to use sizeof of the dest buffer instead of dest - Fixed unmarshaling of the TPM2B type with invalid size - Removed dead code defect detected by coverity from Esys_TRSess_GetNonceTPM - Added support for QNX build - Added support for partial reads in device TCTI - changes from version 2.1.1: - Fixed leak of hkey on success in iesys_cryptossl_hmac_start - Fixed NULL ptr issues in Esys_HMAC_Start, Esys_HierarchyChangeAuth and Esys_NV_ChangeAuth - Fixed NULL ptr issue in sequenceHandleNode - Fixed NULL ptr auth handling in Esys_TR_SetAuth - Fixed NULL auth handling in iesys_compute_session_value - Fixed marshaling of TPM2Bs with sub types. - Fixed NULL ptr session handling in Esys_TRSess_SetAttributes Matthias Gerstner 2019-03-06 10:09:35 +0000
  • 464248b9d8 Accepting request 665951 from security Dominique Leuenberger 2019-01-21 09:52:56 +0000
  • 46aab25cee incorporate FATE number in changes file for SLE-15-SP1 (bsc#1121860) Matthias Gerstner 2019-01-14 14:18:22 +0000
  • f3841324bd Accepting request 638457 from security Dominique Leuenberger 2018-09-28 06:53:18 +0000
  • 852586d92b - update to upstream version 2.0.1: - Fixed problems with doxygan failing make distcheck - Fixed conversion of gcrypt mpi numbers to binary data - Fixed an error in parsing socket address in MSSIM TCTI - Fixed compilation error with --disable-tcti-mssim - Added initialization function for gcrypt to suppress warning - Fixed invalid type base type while marshaling TPMI_ECC_CURVE in Tss2_Sys_ECC_Parameters - Fixed invalid RSA encryption with exponent equal to 0 - Fixed checking of return codes in ESAPI commands - Added checks for programs required by the test harness @ configure time - Fixed warning on TPM2_RC_INITIALIZE rc after a Startup in Esys_Startup - Checked for 1.2 TPM type response - Changed constants values in esys header file to unsigned Matthias Gerstner 2018-09-26 15:42:09 +0000
  • a032a0c880 Accepting request 636378 from security Yuchen Lin 2018-09-19 12:30:22 +0000
  • 41614edfb3 - also process udev triggers for tpmrm subsystem, otherwise /dev/tpmrm0 isn't properly updated (at least on SLES-12-SP4) Matthias Gerstner 2018-09-18 09:05:11 +0000
  • deccdd4131 Accepting request 621176 from security Dominique Leuenberger 2018-07-06 08:49:13 +0000
  • dcaf845187 - added all librares to baselibs.conf to satisfy 32-bit dependencies of esys0 and sys0 Matthias Gerstner 2018-07-05 15:40:46 +0000
  • 4dfbe08170 add all libraries to baslibs to fix dependencies of esys 32 bit lib Matthias Gerstner 2018-07-05 15:30:52 +0000
  • 6783165805 also add mu0 to baselibs, required by esys0 Matthias Gerstner 2018-07-05 15:22:13 +0000
  • e59c70a0b3 switch to release tarball URL Matthias Gerstner 2018-07-03 11:44:25 +0000
  • ea68279678 - Explicitly require udev to fix missing ownership for /usr/lib/udev. Matthias Gerstner 2018-07-03 11:21:50 +0000
  • 382a889ab9 try to fix /usr/lib/udev issue again Matthias Gerstner 2018-07-03 08:31:06 +0000
  • 3d60827667 - Explicitly own the udev dir to fix builds on SLE12-SP2 and older. Alternative would be to require the filesystem package but that does seem like a hack, too. Matthias Gerstner 2018-07-03 07:57:35 +0000
  • 20164b1bf7 Accepting request 619787 from home:mgerstner:branches:security Matthias Gerstner 2018-06-29 14:14:43 +0000
  • d19a9668cc Accepting request 583943 from security Dominique Leuenberger 2018-03-08 09:59:04 +0000
  • 4e5c3e863e - removed leftover comment from dropped reproducable.patch Matthias Gerstner 2018-03-07 14:49:26 +0000
  • 9736607f10 removed patch comment Matthias Gerstner 2018-03-07 14:44:31 +0000
  • 172de64656 Accepting request 578991 from security Dominique Leuenberger 2018-02-26 22:24:19 +0000
  • 43a412b9d8 fixed typo in patch removal comment Matthias Gerstner 2018-02-22 12:15:09 +0000
  • a097eb82c2 - added version_fix.patch to fix package config version numbers. Matthias Gerstner 2018-02-22 10:49:01 +0000
  • 97d9bd7034 - update to upstream version 1.3.0: - support for reproducable builds - improved documentation / manual pages - various stability bugfixes - EncryptDecrypt2 command is now implemented - removed reproducable.patch. This is now included upstream. Matthias Gerstner 2018-02-22 10:16:24 +0000
  • 7b77d4e348 Accepting request 520198 from security Dominique Leuenberger 2017-09-04 10:34:45 +0000
  • 5efd3976fa - fix the "fix", turns out only the unversioned symlink's supposed to go into -devel. Matthias Gerstner 2017-09-01 14:32:12 +0000
  • dc68fc293e Accepting request 514212 from security Dominique Leuenberger 2017-08-21 09:36:37 +0000
  • aa18b0e08e OBS-URL: https://build.opensuse.org/package/show/security/tpm2-0-tss?expand=0&rev=50 Marcus Meissner 2017-08-03 08:25:42 +0000
  • 7db9b023bb OBS-URL: https://build.opensuse.org/package/show/security/tpm2-0-tss?expand=0&rev=49 Marcus Meissner 2017-08-03 08:23:08 +0000
  • 8c59ff1702 OBS-URL: https://build.opensuse.org/package/show/security/tpm2-0-tss?expand=0&rev=48 Marcus Meissner 2017-08-03 08:22:56 +0000
  • 5c1a7157c0 Accepting request 514157 from home:mgerstner:branches:security Marcus Meissner 2017-08-03 08:12:52 +0000
  • 84dae083ee Accepting request 498707 from security Dominique Leuenberger 2017-06-03 23:56:40 +0000
  • 4cbd149abb Accepting request 498585 from home:bmwiedemann:branches:security Alexander Naumov 2017-05-27 21:39:27 +0000
  • 71cab5af7c Don't ignore errors when adding tss user/group see sr#494834 Matthias Gerstner 2017-05-17 09:32:24 +0000