Page MenuHome GnuPG
Feed Advanced Search

Fri, Jan 30

gniibe committed rC285bf54b1ac7: Simplify the PCT for RSA and ECDSA (authored by Jakuje).
Simplify the PCT for RSA and ECDSA
Fri, Jan 30, 10:43 AM
gniibe committed rC15fb6257e827: gcrypt.h: Fix function name in comment. (authored by Jakuje).
gcrypt.h: Fix function name in comment.
Fri, Jan 30, 10:43 AM
gniibe committed rCe5bfda492ab9: fips: Disable RSA-OAEP padding in FIPS mode. (authored by Jakuje).
fips: Disable RSA-OAEP padding in FIPS mode.
Fri, Jan 30, 10:43 AM
gniibe committed rC658679e0ec8b: tests: Expect the OEAP tests to fail in FIPS mode. (authored by Jakuje).
tests: Expect the OEAP tests to fail in FIPS mode.
Fri, Jan 30, 10:43 AM
gniibe committed rC16ac1850b854: Fix _gcry_err_code_to_errno. (authored by gniibe).
Fix _gcry_err_code_to_errno.
Fri, Jan 30, 10:43 AM
gniibe committed rC44812a1d96fc: build: Fix configure script. (authored by gniibe).
build: Fix configure script.
Fri, Jan 30, 10:43 AM
gniibe committed rC4963c127ae69: fips: Skip PCT if RSA keygen test-parms specified (authored by neverpanic).
fips: Skip PCT if RSA keygen test-parms specified
Fri, Jan 30, 10:43 AM
gniibe committed rC1524b60a7ccc: build: Skip PK-specific tests if algo is disabled (authored by neverpanic).
build: Skip PK-specific tests if algo is disabled
Fri, Jan 30, 10:43 AM
gniibe committed rC9ee2d56e806b: keccak: Use size_t to avoid integer overflow (authored by Jakuje).
keccak: Use size_t to avoid integer overflow
Fri, Jan 30, 10:43 AM
gniibe committed rC52d48b710470: kdf:pkdf2: Check minimum allowed key size when running in FIPS mode. (authored by tobhe).
kdf:pkdf2: Check minimum allowed key size when running in FIPS mode.
Fri, Jan 30, 10:43 AM
gniibe committed rCd09d3d33c79d: kdf:pkdf2: Require longer input when FIPS mode. (authored by gniibe).
kdf:pkdf2: Require longer input when FIPS mode.
Fri, Jan 30, 10:43 AM
gniibe committed rCce0df08bbab7: random: Get maximum 32B of entropy at once in FIPS Mode (authored by Jakuje).
random: Get maximum 32B of entropy at once in FIPS Mode
Fri, Jan 30, 10:43 AM
gniibe committed rC96615490c7b1: random: Extend the comment about FIPS specifics (authored by Jakuje).
random: Extend the comment about FIPS specifics
Fri, Jan 30, 10:43 AM
gniibe committed rCe235f38f9b9f: tests: Reproducer for short dklen in FIPS mode (authored by Jakuje).
tests: Reproducer for short dklen in FIPS mode
Fri, Jan 30, 10:43 AM
gniibe committed rCe2c0920fd7de: build: Update gpg-error.m4. (authored by gniibe).
build: Update gpg-error.m4.
Fri, Jan 30, 10:43 AM
gniibe committed rCe7b1fbda6a9e: hmac,hkdf: Check the HMAC key length in FIPS mode. (authored by Jakuje).
hmac,hkdf: Check the HMAC key length in FIPS mode.
Fri, Jan 30, 10:43 AM
gniibe committed rC5191379da3ad: build: Prefer gpgrt-config when available. (authored by gniibe).
build: Prefer gpgrt-config when available.
Fri, Jan 30, 10:43 AM
gniibe committed rC7f4fafb5564d: Revert "kdf:pkdf2: Require longer input when FIPS mode." (authored by Jakuje).
Revert "kdf:pkdf2: Require longer input when FIPS mode."
Fri, Jan 30, 10:43 AM
gniibe added a reverting change for rCd09d3d33c79d: kdf:pkdf2: Require longer input when FIPS mode.: rC7f4fafb5564d: Revert "kdf:pkdf2: Require longer input when FIPS mode.".
Fri, Jan 30, 10:43 AM
gniibe committed rC44789af6c23b: doc: Update document for pkg-config and libgcrypt.m4. (authored by gniibe).
doc: Update document for pkg-config and libgcrypt.m4.
Fri, Jan 30, 10:43 AM
gniibe committed rC057844700ec2: pkdf2: Add checks for FIPS. (authored by Jakuje).
pkdf2: Add checks for FIPS.
Fri, Jan 30, 10:43 AM
gniibe committed rC20ad5df60b03: fips: Mark AES key wrapping as approved. (authored by Jakuje).
fips: Mark AES key wrapping as approved.
Fri, Jan 30, 10:43 AM
gniibe committed rCfdd2a8b3329e: rsa: Prevent usage of long salt in FIPS mode (authored by Jakuje).
rsa: Prevent usage of long salt in FIPS mode
Fri, Jan 30, 10:43 AM
gniibe committed rC392e0ccd25f3: fips,rsa: Prevent usage of X9.31 keygen in FIPS mode. (authored by Jakuje).
fips,rsa: Prevent usage of X9.31 keygen in FIPS mode.
Fri, Jan 30, 10:43 AM
gniibe committed rCbdeea2a53e9e: t-rsa-testparm: fix 'function declaration isn’t a prototype' warning (authored by jukivili).
t-rsa-testparm: fix 'function declaration isn’t a prototype' warning
Fri, Jan 30, 10:43 AM
gniibe committed rC7ddad4035d92: doc: Minor fix up. (authored by gniibe).
doc: Minor fix up.
Fri, Jan 30, 10:43 AM
gniibe committed rC83ea195b61d5: build: Fix configure.ac for strict C99. (authored by gniibe).
build: Fix configure.ac for strict C99.
Fri, Jan 30, 10:42 AM
gniibe committed rCb1a3424e7f80: build: Fix m4 macros for strict C compiler. (authored by gniibe).
build: Fix m4 macros for strict C compiler.
Fri, Jan 30, 10:42 AM
gniibe committed rC1540698389ba: fips: Remove GCM mode from the allowed FIPS indicators. (authored by Jakuje).
fips: Remove GCM mode from the allowed FIPS indicators.
Fri, Jan 30, 10:42 AM
gniibe committed rC44a3f26539f7: ecc: Do not allow skipping tests in FIPS Mode. (authored by Jakuje).
ecc: Do not allow skipping tests in FIPS Mode.
Fri, Jan 30, 10:42 AM
gniibe committed rCc41d4f502f1b: ecc: Make the PCT recoverable in FIPS mode and consistent with RSA. (authored by Jakuje).
ecc: Make the PCT recoverable in FIPS mode and consistent with RSA.
Fri, Jan 30, 10:42 AM
gniibe committed rCfc19b27b5439: visibility: Check FIPS operational status for MD+Sign operation. (authored by Jakuje).
visibility: Check FIPS operational status for MD+Sign operation.
Fri, Jan 30, 10:42 AM
gniibe committed rC397ff085749e: kdf: Update tests in regards to the allowed parameters in FIPS mode. (authored by Jakuje).
kdf: Update tests in regards to the allowed parameters in FIPS mode.
Fri, Jan 30, 10:42 AM
gniibe committed rC076dd2ffcd95: fips: Check return value from ftell (authored by Jakuje).
fips: Check return value from ftell
Fri, Jan 30, 10:42 AM
gniibe committed rC4cff7e739829: random: Remove unused SHA384 DRBGs. (authored by Jakuje).
random: Remove unused SHA384 DRBGs.
Fri, Jan 30, 10:42 AM
gniibe committed rCa51f0e66842a: fips: Add explicit indicators for md and mac algorithms. (authored by tobhe).
fips: Add explicit indicators for md and mac algorithms.
Fri, Jan 30, 10:42 AM
gniibe committed rC0024db5afee8: fips: Unblock MD5 in fips mode but mark non-approved in indicator. (authored by tobhe).
fips: Unblock MD5 in fips mode but mark non-approved in indicator.
Fri, Jan 30, 10:42 AM
gniibe committed rC6805d76b7ed4: fips: Fix fips indicator function. (authored by Jakuje).
fips: Fix fips indicator function.
Fri, Jan 30, 10:42 AM
gniibe committed rC0b2b30c0c42f: fips: Explicitly allow only some PK flags. (authored by Jakuje).
fips: Explicitly allow only some PK flags.
Fri, Jan 30, 10:42 AM
gniibe committed rCfcb9ec67a117: doc: Document the new FIPS indicators. (authored by tobhe).
doc: Document the new FIPS indicators.
Fri, Jan 30, 10:42 AM
gniibe committed rC051bbe84d889: fips: Mark gcry_pk_encrypt/decrypt function non-approved. (authored by Jakuje).
fips: Mark gcry_pk_encrypt/decrypt function non-approved.
Fri, Jan 30, 10:42 AM
gniibe committed rC251f1749900e: fips: Explicitly disable overriding random in FIPS mode. (authored by Jakuje).
fips: Explicitly disable overriding random in FIPS mode.
Fri, Jan 30, 10:42 AM
gniibe committed rC22cb410dd445: tests: Improve test coverage for FIPS service indicators. (authored by Jakuje).
tests: Improve test coverage for FIPS service indicators.
Fri, Jan 30, 10:42 AM
gniibe committed rCf815ae113a2a: build: Update gpg-error.m4. (authored by gniibe).
build: Update gpg-error.m4.
Fri, Jan 30, 10:42 AM
gniibe committed rCf6f345fe89b0: fips: More elaborate way of getting FIPS pk flags indicators. (authored by gniibe).
fips: More elaborate way of getting FIPS pk flags indicators.
Fri, Jan 30, 10:42 AM
gniibe committed rCc118a8ddd022: m4: Update gpg-error.m4. (authored by gniibe).
m4: Update gpg-error.m4.
Fri, Jan 30, 10:42 AM
gniibe committed rC4128f73d3a83: cipher: Enable the fast path to ChaCha20 only when supported. (authored by gniibe).
cipher: Enable the fast path to ChaCha20 only when supported.
Fri, Jan 30, 10:42 AM
gniibe committed rCf2ab06bc3ccc: build: Allow build with -Oz. (authored by gniibe).
build: Allow build with -Oz.
Fri, Jan 30, 10:42 AM
gniibe committed rCd41177937cea: random: Use getrandom only when it's appropriate. (authored by gniibe).
random: Use getrandom only when it's appropriate.
Fri, Jan 30, 10:42 AM
gniibe committed rCb863ec507dae: cipher:ecc: Fix public key computation for EdDSA. (authored by gniibe).
cipher:ecc: Fix public key computation for EdDSA.
Fri, Jan 30, 10:42 AM
gniibe committed rC31adc78fa503: cipher:ecc: Fix an error-path to release the KEY correctly. (authored by gniibe).
cipher:ecc: Fix an error-path to release the KEY correctly.
Fri, Jan 30, 10:42 AM
gniibe committed rC297c5a47837c: cipher:pubkey: Fix non-use of flexible array member. (authored by gniibe).
cipher:pubkey: Fix non-use of flexible array member.
Fri, Jan 30, 10:42 AM
gniibe committed rCd37ad2823f84: Remove out of core handler setting message in FIPS mode. (authored by gniibe).
Remove out of core handler setting message in FIPS mode.
Fri, Jan 30, 10:42 AM
gniibe committed rC2c8562ca5a49: cipher:kdf: Move FIPS mode check to _gcry_kdf_derive. (authored by gniibe).
cipher:kdf: Move FIPS mode check to _gcry_kdf_derive.
Fri, Jan 30, 10:42 AM
gniibe committed rCc8ee15dfe869: build: Fix the notice in configure.ac. (authored by bernhard).
build: Fix the notice in configure.ac.
Fri, Jan 30, 10:42 AM
gniibe committed rC5547e5255c46: tests: Allow KDF measurement in FIPS mode. (authored by gniibe).
tests: Allow KDF measurement in FIPS mode.
Fri, Jan 30, 10:42 AM
gniibe committed rC8cdd0d353e19: cipher:pubkey: Check digest size which should not be zero. (authored by gniibe).
cipher:pubkey: Check digest size which should not be zero.
Fri, Jan 30, 10:42 AM
gniibe committed rC49e1e67f4e4e: sexp: String with \0 is considered "binary". (authored by gniibe).
sexp: String with \0 is considered "binary".
Fri, Jan 30, 10:42 AM
gniibe committed rC09ab61948845: build: Change the default for --with-libtool-modification. (authored by gniibe).
build: Change the default for --with-libtool-modification.
Fri, Jan 30, 10:42 AM
gniibe committed rC0ddc823e331c: build: New configure option --with-libtool-modification. (authored by gniibe).
build: New configure option --with-libtool-modification.
Fri, Jan 30, 10:42 AM
gniibe committed rC45c992020168: rsa: Fix decoding of PKCS#1 v1.5 and OAEP padding. (authored by gniibe).
rsa: Fix decoding of PKCS#1 v1.5 and OAEP padding.
Fri, Jan 30, 10:42 AM
gniibe committed rCe8072d8d3255: const-time: Use ct_not_memequal, instead. Tested with AVR. (authored by gniibe).
const-time: Use ct_not_memequal, instead. Tested with AVR.
Fri, Jan 30, 10:42 AM
gniibe committed rCfee1e63c7286: build: Check if arch is VAX or compiler is MSVC. (authored by gniibe).
build: Check if arch is VAX or compiler is MSVC.
Fri, Jan 30, 10:42 AM
gniibe committed rC2839aaee3e6e: cipher: Fix ElGamal decryption. (authored by gniibe).
cipher: Fix ElGamal decryption.
Fri, Jan 30, 10:42 AM
gniibe committed rCc98b5e4a1471: rsa: Use memmov_independently when unpadding. (authored by gniibe).
rsa: Use memmov_independently when unpadding.
Fri, Jan 30, 10:42 AM
gniibe committed rC45945be8f3c3: const-time: Add ct_memmov_cond, fix _gcry_mpih_set_cond. (authored by gniibe).
const-time: Add ct_memmov_cond, fix _gcry_mpih_set_cond.
Fri, Jan 30, 10:42 AM
gniibe committed rC892bc25ff74b: Use single constant-time memory comparison implementation (authored by jukivili).
Use single constant-time memory comparison implementation
Fri, Jan 30, 10:42 AM
gniibe committed rC5e9ba851948f: const-time: always avoid comparison operator for byte comparison (authored by jukivili).
const-time: always avoid comparison operator for byte comparison
Fri, Jan 30, 10:42 AM
gniibe committed rC3583e2ebcad5: rsa, elgamal: avoid logical not operator in constant-time code (authored by jukivili).
rsa, elgamal: avoid logical not operator in constant-time code
Fri, Jan 30, 10:42 AM
gniibe committed rC3fa1b81c92e5: const-time: prefix global symbols with _gcry_ (authored by jukivili).
const-time: prefix global symbols with _gcry_
Fri, Jan 30, 10:42 AM
gniibe committed rC7f0eb519897b: mpih_set_cond: restore EM leakage mitigation (authored by jukivili).
mpih_set_cond: restore EM leakage mitigation
Fri, Jan 30, 10:42 AM
gniibe committed rC9c0984ed2c55: const-time: ct_memmov_cond: switch to use dual mask approach (authored by jukivili).
const-time: ct_memmov_cond: switch to use dual mask approach
Fri, Jan 30, 10:42 AM
gniibe committed rC15cd08ae4c1e: mpih-const-time: use global vzero/vone variable (authored by jukivili).
mpih-const-time: use global vzero/vone variable
Fri, Jan 30, 10:42 AM
gniibe committed rC6377725ed01e: mpiutil: use global vone and vzero (authored by jukivili).
mpiutil: use global vone and vzero
Fri, Jan 30, 10:42 AM
gniibe committed rC610667fb2558: ec-nist: use global vone and vzero (authored by jukivili).
ec-nist: use global vone and vzero
Fri, Jan 30, 10:42 AM
gniibe committed rC2ed340744746: ec-nist: avoid unintentional conditional branch by comparison (authored by jukivili).
ec-nist: avoid unintentional conditional branch by comparison
Fri, Jan 30, 10:42 AM
gniibe committed rC9acddd8b95e1: mpih_cmp_ui: avoid unintentional conditional branch (authored by jukivili).
mpih_cmp_ui: avoid unintentional conditional branch
Fri, Jan 30, 10:42 AM
gniibe committed rC237523b49f42: ec: avoid unintentional condition branches for 25519, 448 and 256k1 (authored by jukivili).
ec: avoid unintentional condition branches for 25519, 448 and 256k1
Fri, Jan 30, 10:42 AM
gniibe committed rC01e7052cb245: const-time: add functions for generating masks from 0/1 input (authored by jukivili).
const-time: add functions for generating masks from 0/1 input
Fri, Jan 30, 10:42 AM
gniibe committed rC74588de441fd: mpih-const-time: use constant-time comparisons conditional add/sub/abs (authored by jukivili).
mpih-const-time: use constant-time comparisons conditional add/sub/abs
Fri, Jan 30, 10:42 AM
gniibe committed rC11973c2219da: mpih_mod: avoid unintentional conditional branch (authored by jukivili).
mpih_mod: avoid unintentional conditional branch
Fri, Jan 30, 10:42 AM
gniibe committed rC75e9bcccb69a: mpi: Fix ECC computation on hppa. (authored by gniibe).
mpi: Fix ECC computation on hppa.
Fri, Jan 30, 10:42 AM
gniibe committed rC28afad4517c7: random:jent: Fix for jent_rng_is_initialized. (authored by gniibe).
random:jent: Fix for jent_rng_is_initialized.
Fri, Jan 30, 10:41 AM
gniibe committed rC67b528721e88: random:jent: Fix build with address sanitizer. (authored by gniibe).
random:jent: Fix build with address sanitizer.
Fri, Jan 30, 10:41 AM
gniibe committed rCf3bad2deb024: cipher:kyber: No change ABI/API for gcry_kem_genkey. (authored by gniibe).
cipher:kyber: No change ABI/API for gcry_kem_genkey.
Fri, Jan 30, 10:41 AM
gniibe committed rC1a82b26055e6: mpi: Use secure MPI in _gcry_mpi_assign_limb_space. (authored by gniibe).
mpi: Use secure MPI in _gcry_mpi_assign_limb_space.
Fri, Jan 30, 10:41 AM
gniibe committed rC889126dde923: secmem: Handle HAVE_BROKEN_MLOCK for the case with ASAN. (authored by gniibe).
secmem: Handle HAVE_BROKEN_MLOCK for the case with ASAN.
Fri, Jan 30, 10:41 AM
gniibe committed rC506219f031fd: Merge branch 'master' into LIBGCRYPT-1.11-BRANCH (authored by gniibe).
Merge branch 'master' into LIBGCRYPT-1.11-BRANCH
Fri, Jan 30, 10:41 AM
gniibe committed rCa6267ad91dcd: Merge commit '4876a1a4' into LIBGCRYPT-1.11-BRANCH (authored by gniibe).
Merge commit '4876a1a4' into LIBGCRYPT-1.11-BRANCH
Fri, Jan 30, 10:41 AM
gniibe committed rCd9ebc6c4e8b5: cipher:kem:ecc: Support secp256k1 by KEM API. (authored by gniibe).
cipher:kem:ecc: Support secp256k1 by KEM API.
Fri, Jan 30, 10:41 AM
gniibe committed rCf7e06f8a29fc: cipher:kem: Provide each enum constant as macro. (authored by gniibe).
cipher:kem: Provide each enum constant as macro.
Fri, Jan 30, 10:41 AM
gniibe committed rCacd0b4347002: build: Allow build with no Kyber. (authored by gniibe).
build: Allow build with no Kyber.
Fri, Jan 30, 10:41 AM
gniibe committed rCd54d834eb434: build: More changes to allow build with no Kyber. (authored by gniibe).
build: More changes to allow build with no Kyber.
Fri, Jan 30, 10:41 AM
gniibe committed rC7ebe90e5553b: cipher:ecc: Silence GCC 15 warning. (authored by gniibe).
cipher:ecc: Silence GCC 15 warning.
Fri, Jan 30, 10:41 AM
gniibe committed rC448693047fac: cipher:rsa: Fix missing initialization in generate_fips. (authored by gniibe).
cipher:rsa: Fix missing initialization in generate_fips.
Fri, Jan 30, 10:41 AM
gniibe committed rCaced8fd23236: mpi: Provide the function prototype of __udiv_qrnnd. (authored by gniibe).
mpi: Provide the function prototype of __udiv_qrnnd.
Fri, Jan 30, 10:41 AM
gniibe committed rC013bcc18676d: Add missing abiversion tag for PowerPC assembly (authored by jukivili).
Add missing abiversion tag for PowerPC assembly
Fri, Jan 30, 10:41 AM
gniibe committed rC210562de650d: Add missing machine tags for PowerPC assembly (authored by jukivili).
Add missing machine tags for PowerPC assembly
Fri, Jan 30, 10:41 AM
gniibe committed rCc720dd8927a5: poly1305-p10le: use '.rodata' section for read-only data (authored by jukivili).
poly1305-p10le: use '.rodata' section for read-only data
Fri, Jan 30, 10:41 AM
gniibe committed rCdb55dfb74e64: Mark nonstring use cases with __nonstring__ attribute. (authored by gniibe).
Mark nonstring use cases with __nonstring__ attribute.
Fri, Jan 30, 10:41 AM