openwrt/package
Magnus Kroken eb370a7d02 mbedtls: update to 3.6.5
This release includes fixes for security issues.

Mbed TLS 3.6 is a long-term support (LTS) branch. It will be supported
with bug-fixes and security fixes until at least March 2027.

The two issues fixed were timing side channels:
* Padding oracle through timing of cipher error reporting
  (CVE-2025-59438) [1]
* Side channel in RSA key generation and operations (SSBleed, M-Step)
  (CVE-2025-54764) [2]

Bug fixes:
* Fix potential CMake parallel build failure when building both the static and shared libraries.
* Fix a build error or incorrect TLS session lifetime on platforms where mbedtls_time_t is not time_t.

[1]: https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2025-10-invalid-padding-error/
[2]: https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2025-10-ssbleed-mstep/

Full release announcement:
https://github.com/Mbed-TLS/mbedtls/releases/tag/mbedtls-3.6.5

Tested-by: Edoardo Pinci <epinci@outlook.com>
Signed-off-by: Magnus Kroken <mkroken@gmail.com>
Link: https://github.com/openwrt/openwrt/pull/20425
Signed-off-by: Hauke Mehrtens <hauke@hauke-m.de>
2025-10-18 01:27:52 +02:00
..
base-files base-files: add ucidef_set_interface_netdev_range function 2025-10-06 19:06:26 +02:00
boot rockchip: add FriendlyElec NanoPi R76S support 2025-10-16 21:39:16 +02:00
devel strace: update to 6.17 2025-10-15 11:16:08 +02:00
firmware ipq-wifi: update to Git HEAD (2025-10-17) 2025-10-17 12:17:28 +02:00
kernel ltq-ptm: Fix unprivileged local user memory read and write 2025-10-18 00:47:29 +02:00
libs mbedtls: update to 3.6.5 2025-10-18 01:27:52 +02:00
network wifi-scripts: ucode: add support for WPS client 2025-10-15 09:56:33 +02:00
system ubus: update to Git HEAD (2025-10-17) 2025-10-17 13:28:52 +02:00
utils ucode: fix EOF detection in the non-blocking read patch 2025-10-16 20:58:55 +02:00
Makefile package: do not sign individual APK packages 2025-10-09 12:52:43 +02:00