From 2c2c1778f7e7a7c6c6dbbce72d58e636e46cdc66 Mon Sep 17 00:00:00 2001 From: Andrzej Kurek Date: Wed, 1 Dec 2021 22:25:48 +0100 Subject: [PATCH] Add a changelog entry for the ChaCha20 default behavior change Signed-off-by: Andrzej Kurek --- ChangeLog.d/chacha20_invalid_iv_len_fix.txt | 4 ++++ 1 file changed, 4 insertions(+) create mode 100644 ChangeLog.d/chacha20_invalid_iv_len_fix.txt diff --git a/ChangeLog.d/chacha20_invalid_iv_len_fix.txt b/ChangeLog.d/chacha20_invalid_iv_len_fix.txt new file mode 100644 index 000000000..af35e2a00 --- /dev/null +++ b/ChangeLog.d/chacha20_invalid_iv_len_fix.txt @@ -0,0 +1,4 @@ +Default behavior changes + * mbedtls_cipher_set_iv will now fail with ChaCha20 and ChaCha20+Poly1305 + for IV lengths other than 12. The library was silently overwriting this + length with 12, but did not inform the caller about it. Fixes #4301.