ELBA-2023-1698

ELBA-2023-1698 - libgcrypt bug fix and enhancement update

Type:BUG
Severity:NA
Release Date:2023-04-11

Description


[1.10.0-10]
- Provide FIPS indicators for MD and HMACs
- Improve PCT tests for ECDSA and always run them after key is generated
- Add missing guards for FIPS status in md_sign/verify function
- Provider FIPS indicators for public key operation flags

[1.10.0-9]
- Avoid usage of invalid arguments sizes for PBKDF2 in FIPS mode
- Do not allow large salt lengths with RSA-PSS padding
- Disable X9.31 key generation in FIPS mode
- Update the FIPS integrity checking code to upstream version
- Update cipher modes FIPS indicators for AES WRAP and GCM
- Disable jitter entropy generator

[1.10.0-8]
- Fix unneeded PBKDF2 passphrase length limitation in FIPS mode
- Enforce HMAC key lengths in MD API in FIPS mode




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 9 (aarch64) libgcrypt-1.10.0-10.el9_1.src.rpm16dab86c24b590fbc61c77139ab09b63-
libgcrypt-1.10.0-10.el9_1.aarch64.rpmb2e15c0eec89de64afe96c6438332d6d-
libgcrypt-devel-1.10.0-10.el9_1.aarch64.rpm4171db80cd8c47da23feeeef64d1b98c-
Oracle Linux 9 (x86_64) libgcrypt-1.10.0-10.el9_1.src.rpm16dab86c24b590fbc61c77139ab09b63-
libgcrypt-1.10.0-10.el9_1.i686.rpm019fd3d4ae07352e0f522ea9db55f840-
libgcrypt-1.10.0-10.el9_1.x86_64.rpmdce31097bd652f536f4be6a01761d50d-
libgcrypt-devel-1.10.0-10.el9_1.i686.rpmfc93744ad33b7220debfaa00fcf4c5ec-
libgcrypt-devel-1.10.0-10.el9_1.x86_64.rpm1767de124312a57bc5e9788e916ef030-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete