diff options
author | Magnus Kroken <mkroken@gmail.com> | 2021-03-14 19:42:33 +0100 |
---|---|---|
committer | Petr Štetiar <ynezz@true.cz> | 2021-03-27 07:35:25 +0100 |
commit | c336db7a78261d354ab2f2e5a3f79389ba13cb9f (patch) | |
tree | d9965349482a96cbb5fdda57943bd26fc6ce5957 /target/linux/apm821xx/patches-4.14/022-0001-crypto-Use-zeroing-memory-allocator-instead-of-alloc.patch | |
parent | 616fff2a94837f1372e78342b78edc7588a7bb9a (diff) | |
download | upstream-c336db7a78261d354ab2f2e5a3f79389ba13cb9f.tar.gz upstream-c336db7a78261d354ab2f2e5a3f79389ba13cb9f.tar.bz2 upstream-c336db7a78261d354ab2f2e5a3f79389ba13cb9f.zip |
mbedtls: update to 2.16.10
This release of Mbed TLS provides bug fixes and minor enhancements. This
release includes fixes for security issues.
Security fixes:
* Fix a buffer overflow in mbedtls_mpi_sub_abs()
* Fix an errorneous estimation for an internal buffer in
mbedtls_pk_write_key_pem()
* Fix a stack buffer overflow with mbedtls_net_poll() and
mbedtls_net_recv_timeout()
* Guard against strong local side channel attack against base64 tables
by making access aceess to them use constant flow code
Full release announcement:
https://github.com/ARMmbed/mbedtls/releases/tag/v2.16.10
Signed-off-by: Magnus Kroken <mkroken@gmail.com>
(cherry picked from commit dbde2bcf60b5d5f54501a4b440f25fe7d02fbe5d)
Diffstat (limited to 'target/linux/apm821xx/patches-4.14/022-0001-crypto-Use-zeroing-memory-allocator-instead-of-alloc.patch')
0 files changed, 0 insertions, 0 deletions