Commit Graph

9 Commits

Author SHA1 Message Date
Robert Relyea
1b8abdc153 Resolves: RHEL-127696
- fips update
 -   Fix indicators for the new post-quantum algorithms
 -   Fix the ML-KEM Self-tests
 -   Fix the ML-KEM zeroizaiton
 -   Add partial public validation before OAEP
- bug fixes
 -   add CKA_SEED to private attributes so they are updated on password change.
 -   mark CKA_PARAMETER_SET as CK_ULONG when storing into the database
 -   fix unrefrence read in leancrypto.
2025-11-26 11:02:42 -08:00
Robert Relyea
79c4ab2fd8 Resolves: RHEL-103370
- restore CONCATENATE functions accidentally remvoed in the last patch
- fix big endian issue in tstclnt and selfserv in certificate compression
2025-08-01 11:02:59 -07:00
Robert Relyea
9a73b38b2d Resolves: RHEL-103370
- fix issues found by QE
  - fips changes
2025-07-30 20:16:38 -07:00
Krenzelok Frantisek
0f76bd6054 Resolves: RHEL-61274
Allow RSA-OAEP in Fips mode
Add the algorithms to fips_algorythms and add additional checks.

fix release number in changelog
2024-11-18 12:18:55 +01:00
Robert Relyea
19e3cdb28c Resolves: RHEL-16653
CVE-2023-6135 nss: vulnerable to Minerva side-channel information leak
 - Pick up validated constant time implementations of p256, p384, and p521
   from upsream
 - More Fips indicator changes
2024-01-20 08:01:55 -08:00
Robert Relyea
78737bcfaa Resolves: RHEL-17216
Incorporate Lab FIPS review requests.
2023-12-05 09:30:31 -08:00
Robert Relyea
2fef3aa45f Resolves: rhbz#2229399
- add indicator for pbkdf
- fix ems policy bug
2023-08-05 10:43:46 -07:00
Bob Relyea
67466513bc Resolves: rhbz#2176630 rhbz#2153473 rhbz#2174613
Fix CVE 2023-0767
Fix FIPS review comments.
2023-03-11 11:19:28 -08:00
Bob Relyea
f445964895 Resolves: rhbz#2004545 rhbz#2122714
- Update fips_algorithms.h to match the final FIPS requirements
    - Disable delegated credentials
2022-09-08 08:56:38 -07:00