1
0
mirror of https://github.com/Mbed-TLS/mbedtls.git synced 2025-08-08 17:42:09 +03:00

Restore ChangeLog from 3.6.2

Signed-off-by: David Horstmann <david.horstmann@arm.com>
This commit is contained in:
David Horstmann
2024-10-11 19:50:20 +01:00
parent 03060661bc
commit 6600df63ba

View File

@@ -1,5 +1,17 @@
Mbed TLS ChangeLog (Sorted per branch, date)
= Mbed TLS 3.6.2 branch released 2024-10-11
Security
* Fix a buffer overflow in mbedtls_pk_write_pubkey(),
mbedtls_pk_write_pubkey_der() and mbedtls_pk_write_key_der().
With MBEDTLS_USE_PSA_CRYPTO turned on, these functions would
write to a location before the start of the output buffer if it was less
than the size of the key being written and also less than
PK_MAX_EC_PUBLIC_KEY_SIZE (for EC public keys) and
PSA_EXPORT_KEY_PAIR_MAX_SIZE (for RSA private keys).
This buffer overflow only occurs for keys with the type MBEDTLS_PK_OPAQUE.
= Mbed TLS 3.6.1 branch released 2024-08-30
API changes