diff options
author | Peter Marko <peter.marko@siemens.com> | 2023-08-01 18:36:41 +0200 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2023-08-16 07:54:38 +0100 |
commit | 71193e58b0df5541d28dd488c211666e40eafa71 (patch) | |
tree | 79550de879d8d1a214bcafa977d76ed05e5e9133 /README.OE-Core.md | |
parent | d724ec6f040dc4eb5965a791b93d9956f37206a2 (diff) | |
download | poky-71193e58b0df5541d28dd488c211666e40eafa71.tar.gz |
openssl: Upgrade 3.1.1 -> 3.1.2
https://github.com/openssl/openssl/blob/openssl-3.1/NEWS.md#major-changes-between-openssl-311-and-openssl-312-1-aug-2023
Major changes between OpenSSL 3.1.1 and OpenSSL 3.1.2 [1 Aug 2023]
* Fix excessive time spent checking DH q parameter value (CVE-2023-3817)
* Fix DH_check() excessive time with over sized modulus (CVE-2023-3446)
* Do not ignore empty associated data entries with AES-SIV (CVE-2023-2975)
* When building with the enable-fips option and using the resulting FIPS provider, TLS 1.2 will, by default, mandate the use of an extended master secret and the Hash and HMAC DRBGs will not operate with truncated digests.
(From OE-Core rev: e65802383b02df6f502af859a927309d881bbb27)
Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'README.OE-Core.md')
0 files changed, 0 insertions, 0 deletions