"Fossies" - the Fresh Open Source Software Archive  

Source code changes of the file "NEWS" between
nettle-3.7.2.tar.gz and nettle-3.7.3.tar.gz

About: Nettle is a low-level cryptographic library.

NEWS  (nettle-3.7.2):NEWS  (nettle-3.7.3)
NEWS for the Nettle 3.7.3 release
This is bugfix release, fixing bugs that could make the RSA
decryption functions crash on invalid inputs.
Upgrading to the new version is strongly recommended. For
applications that want to support older versions of Nettle,
the bug can be worked around by adding a check that the RSA
ciphertext is in the range 0 < ciphertext < n, before
attempting to decrypt it.
Thanks to Paul Schaub and Justus Winter for reporting these
problems.
The new version is intended to be fully source and binary
compatible with Nettle-3.6. The shared library names are
libnettle.so.8.4 and libhogweed.so.6.4, with sonames
libnettle.so.8 and libhogweed.so.6.
Bug fixes:
* Fix crash for zero input to rsa_sec_decrypt and
rsa_decrypt_tr. Potential denial of service vector.
* Ensure that all of rsa_decrypt_tr and rsa_sec_decrypt return
failure for out of range inputs, instead of either crashing,
or silently reducing input modulo n. Potential denial of
service vector.
* Ensure that rsa_decrypt returns failure for out of range
inputs, instead of silently reducing input modulo n.
* Ensure that rsa_sec_decrypt returns failure if the message
size is too large for the given key. Unlike the other bugs,
this would typically be triggered by invalid local
configuration, rather than by processing untrusted remote
data.
NEWS for the Nettle 3.7.2 release NEWS for the Nettle 3.7.2 release
This is a bugfix release, fixing a bug in ECDSA signature This is a bugfix release, fixing a bug in ECDSA signature
verification that could lead to a denial of service attack verification that could lead to a denial of service attack
(via an assertion failure) or possibly incorrect results. It (via an assertion failure) or possibly incorrect results. It
also fixes a few related problems where scalars are required also fixes a few related problems where scalars are required
to be canonically reduced modulo the ECC group order, but in to be canonically reduced modulo the ECC group order, but in
fact may be slightly larger. fact may be slightly larger.
Upgrading to the new version is strongly recommended. Upgrading to the new version is strongly recommended.
 End of changes. 1 change blocks. 
0 lines changed or deleted 38 lines changed or added

Home  |  About  |  Features  |  All  |  Newest  |  Dox  |  Diffs  |  RSS Feeds  |  Screenshots  |  Comments  |  Imprint  |  Privacy  |  HTTP(S)