mirror of
https://github.com/yuzu-emu/mbedtls.git
synced 2024-11-26 01:55:52 +01:00
NIST_KW in cipher: credit the reporter
This issue was found by Guido Vranken's Cryptofuzz running on the OSS-Fuzz platform. Fix #3665 Signed-off-by: Gilles Peskine <Gilles.Peskine@arm.com>
This commit is contained in:
parent
3aae5d4ed7
commit
22a191199d
@ -3,7 +3,8 @@ API changes
|
|||||||
mbedtls_cipher_auth_decrypt() no longer accept NIST_KW contexts,
|
mbedtls_cipher_auth_decrypt() no longer accept NIST_KW contexts,
|
||||||
as they have no way to check if the output buffer is large enough.
|
as they have no way to check if the output buffer is large enough.
|
||||||
Please use mbedtls_cipher_auth_encrypt_ext() and
|
Please use mbedtls_cipher_auth_encrypt_ext() and
|
||||||
mbedtls_cipher_auth_decrypt_ext() instead.
|
mbedtls_cipher_auth_decrypt_ext() instead. Credit to OSS-Fuzz and
|
||||||
|
Cryptofuzz. Fixes #3665.
|
||||||
|
|
||||||
Security
|
Security
|
||||||
* The functions mbedtls_cipher_auth_encrypt() and
|
* The functions mbedtls_cipher_auth_encrypt() and
|
||||||
|
Loading…
Reference in New Issue
Block a user