ELBA-2022-7324

ELBA-2022-7324 - libgcrypt bug fix and enhancement update

Type:BUG
Severity:NA
Release Date:2022-11-02

Description


[1.10.0-8]
- Fix unneeded PBKDF2 passphrase length limitation in FIPS mode
- Enforce HMAC key lengths in MD API in FIPS mode

[1.10.0-7]
- Properly enforce KDF limits in FIPS mode (#2130275)
- Fix memory leak in large digest test (#2129150)
- Fix function name FIPS service indicator by disabling PK encryption and decryption (#2130275)
- Skip RSA encryption/decryption selftest in FIPS mode (#2130275)

[1.10.0-6]
- Fix SHA3 digests with large inputs (#2129150)
- Fix FIPS RSA PCT (#2128455)
- Fix RSA FIPS Keygen that non-deterministically fails (#2130275)
- Get max 32B from getrandom in FIPS mode (#2130275)




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 9 (aarch64) libgcrypt-1.10.0-8.el9_0.src.rpm3994a53bb93ec7a1e140313d6906e4b4-
libgcrypt-1.10.0-8.el9_0.aarch64.rpm9ae49152f571365b10498938586f4f75-
libgcrypt-devel-1.10.0-8.el9_0.aarch64.rpm3b93ce011f8e1bdcd8c7f3263b626e6f-
Oracle Linux 9 (x86_64) libgcrypt-1.10.0-8.el9_0.src.rpm3994a53bb93ec7a1e140313d6906e4b4-
libgcrypt-1.10.0-8.el9_0.i686.rpm3f2bd64c57d84bec25d27d1434b5c2f5-
libgcrypt-1.10.0-8.el9_0.x86_64.rpm28649a2e1021f584f309d32eb5008a97-
libgcrypt-devel-1.10.0-8.el9_0.i686.rpm1bfc4efcef05bd031ad837c9ce36428a-
libgcrypt-devel-1.10.0-8.el9_0.x86_64.rpmeee415d80c201c201e81473d0f5c7c1c-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete