HomeFreeBSD

OpenSSL: update to 3.0.12

Description

OpenSSL: update to 3.0.12

OpenSSL 3.0.12 addresses:

  • Fix incorrect key and IV resizing issues when calling EVP_EncryptInit_ex2(), EVP_DecryptInit_ex2() or EVP_CipherInit_ex2() with OSSL_PARAM parameters that alter the key or IV length ([CVE-2023-5363]).

Relnotes: Yes
Sponsored by: The FreeBSD Foundation

(cherry picked from commit ad991e4c142ebabad7aef488ad97b189ecabb270)
(cherry picked from commit 575878a533823aa3e5bab715928d9cdffbc4dcbc)
(cherry picked from commit e833378cf9589171562ccad4c6ff59c3713770bd)

Approved by: so
Approved by: re (gjb)

Details

Provenance
emasteAuthored on Oct 24 2023, 6:55 PM
Parents
rG3acc60b4121f: ossl: Update arm_arch.h from OpenSSL 1.1.1 to 3.0
Branches
Unknown
Tags
Unknown