From 2724046aa7b6f58f9bc94cd19f045ed153f83f203d36211304d8a3f6dd84fd0d Mon Sep 17 00:00:00 2001 From: Nikolay Gueorguiev Date: Wed, 7 Feb 2024 07:52:33 +0000 Subject: [PATCH] Accepting request 1144812 from home:ngueorguiev:branches:security - Upgrade openCryptoki to version 3.23 (jsc#PED-3360, jsc#PED-3361) * EP11: Add support for FIPS-session mode * Updates to harden against RSA timing attacks * Bug fixes - Renamed ocki-3.22-remove-make-install-chgrp.patch to ocki-3.23-remove-make-install-chgrp.patch OBS-URL: https://build.opensuse.org/request/show/1144812 OBS-URL: https://build.opensuse.org/package/show/security/openCryptoki?expand=0&rev=143 --- ....patch => ocki-3.23-remove-make-install-chgrp.patch | 0 openCryptoki-3.22.0.tar.gz | 3 --- openCryptoki-3.23.0.tar.gz | 3 +++ openCryptoki.changes | 10 ++++++++++ openCryptoki.spec | 4 ++-- 5 files changed, 15 insertions(+), 5 deletions(-) rename ocki-3.22-remove-make-install-chgrp.patch => ocki-3.23-remove-make-install-chgrp.patch (100%) delete mode 100644 openCryptoki-3.22.0.tar.gz create mode 100644 openCryptoki-3.23.0.tar.gz diff --git a/ocki-3.22-remove-make-install-chgrp.patch b/ocki-3.23-remove-make-install-chgrp.patch similarity index 100% rename from ocki-3.22-remove-make-install-chgrp.patch rename to ocki-3.23-remove-make-install-chgrp.patch diff --git a/openCryptoki-3.22.0.tar.gz b/openCryptoki-3.22.0.tar.gz deleted file mode 100644 index 2c1e987..0000000 --- a/openCryptoki-3.22.0.tar.gz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:994cd77b5181c05bb8b29b984b6490b244401ac17f67d91b514c5e9424eaee73 -size 1828156 diff --git a/openCryptoki-3.23.0.tar.gz b/openCryptoki-3.23.0.tar.gz new file mode 100644 index 0000000..a786c37 --- /dev/null +++ b/openCryptoki-3.23.0.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:e106ae81650338151e14b4fd96bb7a4c2a18c17ffa1b81887a75e5a20113ff96 +size 1859821 diff --git a/openCryptoki.changes b/openCryptoki.changes index fc854fb..c0b8b77 100644 --- a/openCryptoki.changes +++ b/openCryptoki.changes @@ -1,3 +1,13 @@ +------------------------------------------------------------------- +Wed Feb 7 07:27:00 UTC 2024 - Nikolay Gueorguiev + +- Upgrade openCryptoki to version 3.23 (jsc#PED-3360, jsc#PED-3361) + * EP11: Add support for FIPS-session mode + * Updates to harden against RSA timing attacks + * Bug fixes +- Renamed ocki-3.22-remove-make-install-chgrp.patch to + ocki-3.23-remove-make-install-chgrp.patch + ------------------------------------------------------------------- Mon Feb 5 08:59:37 UTC 2024 - Marcus Meissner diff --git a/openCryptoki.spec b/openCryptoki.spec index fefd0c1..3a84410 100644 --- a/openCryptoki.spec +++ b/openCryptoki.spec @@ -27,7 +27,7 @@ %define oc_cvs_tag opencryptoki Name: openCryptoki -Version: 3.22.0 +Version: 3.23.0 Release: 0 Summary: An Implementation of PKCS#11 (Cryptoki) v2.11 for IBM Cryptographic Hardware License: CPL-1.0 @@ -39,7 +39,7 @@ Source2: openCryptoki-TFAQ.html Source3: openCryptoki-rpmlintrc # Patch 0 is needed because group pkcs11 doesn't exist in the build environment # and because we don't want(?) various file and directory permissions to be 0700. -Patch000: ocki-3.22-remove-make-install-chgrp.patch +Patch000: ocki-3.23-remove-make-install-chgrp.patch # # BuildRequires: bison