mbedtls: update to 2.16.10
This release of Mbed TLS provides bug fixes and minor enhancements. This release includes fixes for security issues. Security fixes: * Fix a buffer overflow in mbedtls_mpi_sub_abs() * Fix an errorneous estimation for an internal buffer in mbedtls_pk_write_key_pem() * Fix a stack buffer overflow with mbedtls_net_poll() and mbedtls_net_recv_timeout() * Guard against strong local side channel attack against base64 tables by making access aceess to them use constant flow code Full release announcement: https://github.com/ARMmbed/mbedtls/releases/tag/v2.16.10 Signed-off-by: Magnus Kroken <mkroken@gmail.com>
This commit is contained in:
		 Magnus Kroken
					Magnus Kroken
				
			
				
					committed by
					
						 Petr Štetiar
						Petr Štetiar
					
				
			
			
				
	
			
			
			 Petr Štetiar
						Petr Štetiar
					
				
			
						parent
						
							34f898ec29
						
					
				
				
					commit
					dbde2bcf60
				
			| @@ -144,7 +144,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_SSL_TRUNCATED_HMAC_COMPAT | ||||
| @@ -1779,7 +1779,7 @@ | ||||
| @@ -1796,7 +1796,7 @@ | ||||
|   * | ||||
|   * Comment this to disable run-time checking and save ROM space | ||||
|   */ | ||||
| @@ -153,7 +153,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_X509_ALLOW_EXTENSIONS_NON_V3 | ||||
| @@ -2109,7 +2109,7 @@ | ||||
| @@ -2126,7 +2126,7 @@ | ||||
|   *      MBEDTLS_TLS_PSK_WITH_CAMELLIA_128_GCM_SHA256 | ||||
|   *      MBEDTLS_TLS_PSK_WITH_CAMELLIA_128_CBC_SHA256 | ||||
|   */ | ||||
| @@ -162,7 +162,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_ARIA_C | ||||
| @@ -2175,7 +2175,7 @@ | ||||
| @@ -2192,7 +2192,7 @@ | ||||
|   * This module enables the AES-CCM ciphersuites, if other requisites are | ||||
|   * enabled as well. | ||||
|   */ | ||||
| @@ -171,7 +171,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_CERTS_C | ||||
| @@ -2187,7 +2187,7 @@ | ||||
| @@ -2204,7 +2204,7 @@ | ||||
|   * | ||||
|   * This module is used for testing (ssl_client/server). | ||||
|   */ | ||||
| @@ -180,7 +180,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_CHACHA20_C | ||||
| @@ -2295,7 +2295,7 @@ | ||||
| @@ -2312,7 +2312,7 @@ | ||||
|   * \warning   DES is considered a weak cipher and its use constitutes a | ||||
|   *            security risk. We recommend considering stronger ciphers instead. | ||||
|   */ | ||||
| @@ -189,7 +189,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_DHM_C | ||||
| @@ -2458,7 +2458,7 @@ | ||||
| @@ -2475,7 +2475,7 @@ | ||||
|   * This module adds support for the Hashed Message Authentication Code | ||||
|   * (HMAC)-based key derivation function (HKDF). | ||||
|   */ | ||||
| @@ -198,7 +198,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_HMAC_DRBG_C | ||||
| @@ -2768,7 +2768,7 @@ | ||||
| @@ -2785,7 +2785,7 @@ | ||||
|   * | ||||
|   * This module enables abstraction of common (libc) functions. | ||||
|   */ | ||||
| @@ -207,7 +207,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_POLY1305_C | ||||
| @@ -2789,7 +2789,7 @@ | ||||
| @@ -2806,7 +2806,7 @@ | ||||
|   * Caller:  library/md.c | ||||
|   * | ||||
|   */ | ||||
| @@ -216,7 +216,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_RSA_C | ||||
| @@ -2896,7 +2896,7 @@ | ||||
| @@ -2913,7 +2913,7 @@ | ||||
|   * | ||||
|   * Requires: MBEDTLS_CIPHER_C | ||||
|   */ | ||||
| @@ -225,7 +225,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_SSL_CLI_C | ||||
| @@ -2996,7 +2996,7 @@ | ||||
| @@ -3013,7 +3013,7 @@ | ||||
|   * | ||||
|   * This module provides run-time version information. | ||||
|   */ | ||||
| @@ -234,7 +234,7 @@ | ||||
|   | ||||
|  /** | ||||
|   * \def MBEDTLS_X509_USE_C | ||||
| @@ -3106,7 +3106,7 @@ | ||||
| @@ -3123,7 +3123,7 @@ | ||||
|   * Module:  library/xtea.c | ||||
|   * Caller: | ||||
|   */ | ||||
|   | ||||
		Reference in New Issue
	
	Block a user