15 Commits

Author SHA1 Message Date
yezengruan
9b5c834117 rename patch 0001-tpm2-CryptSym-fix-AES-output-IV.patch
renamed:
0001-tpm2-CryptSym-fix-AES-output-IV.patch
-> tpm2-CryptSym-fix-AES-output-IV.patch

Signed-off-by: yezengruan <yezengruan@huawei.com>
(cherry picked from commit d72fe333606a2a4857986a505d09438dc0ee69a4)
2022-05-18 16:37:06 +08:00
jiangfangjie
68604ead6f tpm2-Fix-issue-with-misaligned-address-when-marshall
Signed-off-by: yezengruan <yezengruan@huawei.com>
(cherry picked from commit 6f13a423388db7c3c721792f5ddd9f51f51eaaf8)
2022-05-18 16:37:06 +08:00
jiangfangjie
384d9de9a1 tpm2: Initialize a whole OBJECT before using it and NVMarshal: Handle index orderly RAM without 0-sized
terminating node

fix CVE-2021-3746

Signed-off-by: jiangfangjie <jiangfangjie@huawei.com>
Signed-off-by: yezengruan <yezengruan@huawei.com>
(cherry picked from commit 0bf6927a2899a9ff18d5bada3f5574fbe7f02b62)
2022-05-18 16:37:06 +08:00
imxcc
50f940a8d8 fix bare word "debug" in spec
Signed-off-by: imxcc <xingchaochao@huawei.com>
2022-02-14 11:07:52 +08:00
jiangfangjie 00559066
b9e24caedb update libtpms.spec
(cherry picked from commit ceabec5e4bd71516fe2964830e6183ef3cb3e259)
2021-09-09 18:39:02 +08:00
jiangfangjie 00559066
c54acdfb69 fix the cve-2021-3505
Signed-off-by: jiangfangjie 00559066 <jiangfangjie@huawei.com>
(cherry picked from commit 49be9bc2aed2a56d88f89efec8d142b9565fc37e)
2021-09-09 18:39:02 +08:00
jiangfangjie 00559066
1c62fb2410 update spec file
Signed-off-by: jiangfangjie 00559066 <jiangfangjie@huawei.com>
2021-04-07 10:38:52 +08:00
jiangfangjie 00559066
a1a4809abf tpm2: CryptSym: fix AES output IV
The TPM is supposed to provide the output IV in the ivInOut parameter in
CryptSymmetricEncrypt. In the case of using the openssl routines, the
output IV is missed, and the resulting output from the TPM is in the
input IV.

OpenSSL unfortunately does not export EVP_CIPHER_CTX_iv() until
tags/OpenSSL_1_1_0, so we have to fall back to the reference code for
previous OpenSSL versions.

Fixes: CVE-2021-3446
buglink:https://bugzilla.redhat.com/show_bug.cgi?id=1939664

Signed-off-by: William Roberts <william.c.roberts@intel.com>
Signed-off-by: Stefan Berger <stefanb@linux.ibm.com>
Signed-off-by: jiangfangjie 00559066 <jiangfangjie@huawei.com>
2021-04-06 18:19:30 +08:00
jiangfangjie
a5323d08cb update version to versionx
Signed-off-by: jiangfangjie <jiangfangjie@huawei.com>
2020-09-17 16:12:45 +08:00
jiangfangjie
2cb9c2ce66 update release
Signed-off-by: jiangfangjie <jiangfangjie@huawei.com>
2020-09-16 18:22:58 +08:00
jiangfangjie
f1dc1d5e42 update release
Signed-off-by: jiangfangjie <jiangfangjie@huawei.com>
2020-09-16 12:06:12 +08:00
jiangfangjie
9cefddfde8 update release
Signed-off-by: jiangfangjie <jiangfangjie@huawei.com>
2020-09-16 09:16:54 +08:00
jiangfangjie
e6e9493e17 update spec file and source file
Signed-off-by: jiangfangjie <jiangfangjie@huawei.com>
2020-09-15 20:04:36 +08:00
jiangfangjie
d396320548 update source0
Signed-off-by: jiangfangjie <jiangfangjie@huawei.com>
2020-09-14 20:18:42 +08:00
jiangfangjie
602e72bb02 init packet with version 0.7.3
Signed-off-by: jiangfangjie <jiangfangjie@huawei.com>
2020-08-21 13:09:43 +08:00