1
0
Fork 0
forked from mirror/openwrt
openwrt/package
Hauke Mehrtens ea22e3df3e mbedtls: Update to 2.12.0
Multiple security fixes
* CVE-2018-0497 Remote plaintext recovery on use of CBC based ciphersuites through a timing side-channel
* CVE-2018-0498 Plaintext recovery on use of CBC based ciphersuites through a cache based side-channel

Disable OFB block mode and XTS block cipher mode, added in 2.11.0.
Disable Chacha20 and Poly1305 cryptographic primitives, added in 2.12.0
Patch the so version back to the original one, the API changes are
looking no so invasive.

The size of mbedtls increased a little bit:
ipkg for mips_24kc before:
163.967 Bytes
ipkg for mips_24kc after:
164.753 Bytes

Signed-off-by: Hauke Mehrtens <hauke@hauke-m.de>
2018-08-08 22:49:59 +02:00
..
base-files base-files: drop fwtool_pre_upgrade 2018-08-08 15:42:06 +02:00
boot uboot-kirkwood: fix malformed boot configuration 2018-06-26 23:35:18 +02:00
devel perf: restrict libunwind dependency to archs that actually support libunwind 2018-02-25 17:03:42 +01:00
firmware firmware: amd64-microcode: update to 20180524 2018-08-08 15:29:36 +02:00
kernel kernel: leds-apu2 remove boardname check 2018-08-08 15:37:10 +02:00
libs mbedtls: Update to 2.12.0 2018-08-08 22:49:59 +02:00
network mbedtls: Update to 2.12.0 2018-08-08 22:49:59 +02:00
system ca-certificates[18.06]]: remove myself as PKG_MAINTAINER 2018-07-31 00:01:56 +02:00
utils mbedtls: Update to 2.12.0 2018-08-08 22:49:59 +02:00
Makefile imagebuilder: reuse rootfs preparation from rootfs.mk 2018-03-07 09:59:08 +01:00