<feed xmlns='http://www.w3.org/2005/Atom'>
<title>linux/poky.git/meta/recipes-connectivity/openssl, branch yocto-3.3.2</title>
<subtitle>Mirror of git.yoctoproject.org/poky</subtitle>
<id>https://git.enea.com/cgit/linux/poky.git/atom?h=yocto-3.3.2</id>
<link rel='self' href='https://git.enea.com/cgit/linux/poky.git/atom?h=yocto-3.3.2'/>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/'/>
<updated>2021-03-28T21:28:27+00:00</updated>
<entry>
<title>openssl: update to 1.1.1k to fix CVE-2021-3450 and CVE-2021-3449</title>
<updated>2021-03-28T21:28:27+00:00</updated>
<author>
<name>Mikko Rapeli</name>
<email>mikko.rapeli@bmw.de</email>
</author>
<published>2021-03-25T19:20:37+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=c5e5ba214ab0b878047d4293e55ad74057c46ae9'/>
<id>urn:sha1:c5e5ba214ab0b878047d4293e55ad74057c46ae9</id>
<content type='text'>
Only security issues fixed in this release according to
https://www.openssl.org/news/cl111.txt

(From OE-Core rev: 557d956743ecf5e1d002ae0b2135b1307736b7c8)

Signed-off-by: Mikko Rapeli &lt;mikko.rapeli@bmw.de&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
<entry>
<title>openssl: Enable building for RISC-V 32-bit</title>
<updated>2021-03-11T14:00:36+00:00</updated>
<author>
<name>Alistair Francis</name>
<email>alistair.francis@wdc.com</email>
</author>
<published>2021-03-09T16:10:03+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=4aafbcc3704cb6adfae9213fa327da984e558cab'/>
<id>urn:sha1:4aafbcc3704cb6adfae9213fa327da984e558cab</id>
<content type='text'>
(From OE-Core rev: 22691df60abe22bafb83f391549ee9e5026cabef)

Signed-off-by: Alistair Francis &lt;alistair.francis@wdc.com&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
<entry>
<title>openssl: address ptest failures caused by perl 5.32.1</title>
<updated>2021-03-02T14:15:33+00:00</updated>
<author>
<name>Alexander Kanavin</name>
<email>alex.kanavin@gmail.com</email>
</author>
<published>2021-02-28T15:37:01+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=4d1f48f6d90734a99a52996f53f429f1380d3e71'/>
<id>urn:sha1:4d1f48f6d90734a99a52996f53f429f1380d3e71</id>
<content type='text'>
For some reason the new perl no longer has . in list of
directories searched in 'require', and so the file
needs to be copied where perl can find it.

(From OE-Core rev: 2ae879ddb72bd316e49a8200e99887dadb02b3dc)

Signed-off-by: Alexander Kanavin &lt;alex.kanavin@gmail.com&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
<entry>
<title>openssl: upgrade 1.1.1i -&gt; 1.1.1j</title>
<updated>2021-02-23T22:35:00+00:00</updated>
<author>
<name>Wang Mingyu</name>
<email>wangmy@cn.fujitsu.com</email>
</author>
<published>2021-02-22T06:11:30+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=b120603e2e4f51f281681f9ccd13cb4046ece478'/>
<id>urn:sha1:b120603e2e4f51f281681f9ccd13cb4046ece478</id>
<content type='text'>
(From OE-Core rev: a67635ca2c7a016efcf450e4011f2032883e995d)

Signed-off-by: Wang Mingyu &lt;wangmy@cn.fujitsu.com&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
<entry>
<title>openssl: re-enable whirlpool</title>
<updated>2021-02-06T09:03:00+00:00</updated>
<author>
<name>Andreas Müller</name>
<email>schnitzeltony@gmail.com</email>
</author>
<published>2021-02-05T11:32:29+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=7ee0c2c8cba2c7f2b91ae39500ae2a2663192638'/>
<id>urn:sha1:7ee0c2c8cba2c7f2b91ae39500ae2a2663192638</id>
<content type='text'>
* it breaks KDE's qca and dependencies
* it is not deprecated. Openssl 3.0 (currently alpha) will deprecate whirlpool

[1] https://www.openssl.org/news/changelog.html#openssl-30

(From OE-Core rev: bc02baadeee477b10eceae62985af4f4c323506e)

Signed-off-by: Andreas Müller &lt;schnitzeltony@gmail.com&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
<entry>
<title>openssl: set CVE_VERSION_SUFFIX</title>
<updated>2021-02-03T21:45:49+00:00</updated>
<author>
<name>Lee Chee Yang</name>
<email>chee.yang.lee@intel.com</email>
</author>
<published>2021-01-27T09:03:54+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=77c56e8c78c38ccbb6d15a114fadcf9e834503da'/>
<id>urn:sha1:77c56e8c78c38ccbb6d15a114fadcf9e834503da</id>
<content type='text'>
(From OE-Core rev: 17df664a32a74f17baaef8c31ac23adec2d6255f)

Signed-off-by: Lee Chee Yang &lt;chee.yang.lee@intel.com&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
<entry>
<title>openssl: Enable srp algorithm</title>
<updated>2021-01-27T10:17:45+00:00</updated>
<author>
<name>akuster</name>
<email>akuster808@gmail.com</email>
</author>
<published>2021-01-24T15:03:20+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=2d1610e8017c79c00838b1573a2e61c6a2f33cfe'/>
<id>urn:sha1:2d1610e8017c79c00838b1573a2e61c6a2f33cfe</id>
<content type='text'>
This is still needed by libest in meta-security

(From OE-Core rev: 1242b04e97fbef3d926bcf706ac99a580109e58b)

Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
Cc: Shachar Menashe &lt;shachar@vdoo.com&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
<entry>
<title>openssl: Enable psk for qtbase</title>
<updated>2021-01-12T17:44:17+00:00</updated>
<author>
<name>Khem Raj</name>
<email>raj.khem@gmail.com</email>
</author>
<published>2020-12-23T19:05:21+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=86358ef49baa48ac14cc22c764c475e97b6d6034'/>
<id>urn:sha1:86358ef49baa48ac14cc22c764c475e97b6d6034</id>
<content type='text'>
TLS 1.3 implementation in qt5 uses psk so retain it for now

(From OE-Core rev: ab2cc33331ee931e65a63a02cf034c1b8ee695ac)

Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
<entry>
<title>openssl: Enable rc4/rc2/bf/md4 algorithms</title>
<updated>2021-01-12T17:44:16+00:00</updated>
<author>
<name>Khem Raj</name>
<email>raj.khem@gmail.com</email>
</author>
<published>2020-12-23T07:24:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=2fc8e7bae43159472b525d9ac841a66298c903fb'/>
<id>urn:sha1:2fc8e7bae43159472b525d9ac841a66298c903fb</id>
<content type='text'>
They are still needed by several packages in meta-openembedded

(From OE-Core rev: 52af41387f1c843e7677c0bb632b2b96f9793ebd)

Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
Cc: Shachar Menashe &lt;shachar@vdoo.com&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
<entry>
<title>openssl: drop support for deprecated algorithms</title>
<updated>2021-01-12T17:44:16+00:00</updated>
<author>
<name>Shachar Menashe</name>
<email>shachar@vdoo.com</email>
</author>
<published>2020-12-19T16:04:30+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/poky.git/commit/?id=f471317c688d8421c14b5e7daf6b6932f72c6c50'/>
<id>urn:sha1:f471317c688d8421c14b5e7daf6b6932f72c6c50</id>
<content type='text'>
1. Drop support for many deprecated algorithms by default
2. Allow dropping support for TLS 1.0/1.1 via PACKAGECONFIG

(From OE-Core rev: 304417a97db89d9ea4a41aa7c92b5a052896d63b)

Signed-off-by: Shachar Menashe &lt;shachar@vdoo.com&gt;
Signed-off-by: Richard Purdie &lt;richard.purdie@linuxfoundation.org&gt;
</content>
</entry>
</feed>
