Brett
|
bc8eeea703
|
prevent apple native cert validation from overriding error codes other than ASN_NO_SIGNER_E
|
2025-06-04 15:48:15 -06:00 |
|
Ruby Martin
|
9864959e41
|
create policy for WOLFSSL_APPLE_NATIVE_CERT_VALIDATION, domain name
checking
|
2025-06-03 10:08:58 -06:00 |
|
JacobBarthelmeh
|
ecb8cb744e
|
Merge pull request #8799 from dgarske/csharp_wince_unicode
Fix issue with CSharp and Windows CE with conversion of ASCII and Unicode
|
2025-06-02 10:39:23 -06:00 |
|
David Garske
|
30490f9650
|
Merge pull request #8828 from douzzer/20250531-wc_linuxkm_fpu_state_assoc-optimize
20250531-wc_linuxkm_fpu_state_assoc-optimize
|
2025-05-31 09:23:59 -07:00 |
|
Daniel Pouzzner
|
8c33f47a85
|
linuxkm/x86_vector_register_glue.c: fix overhead in wc_linuxkm_fpu_state_assoc() from pointless full searches of wc_linuxkm_fpu_states.
|
2025-05-31 00:23:32 -05:00 |
|
Daniel Pouzzner
|
a6e9bd73e4
|
Merge pull request #8803 from dgarske/csr_nomalloc
Refactor to support CSR generation and signing with `WOLFSSL_NO_MALLOC`
|
2025-05-30 18:05:25 -05:00 |
|
philljj
|
316681be2a
|
Merge pull request #8826 from douzzer/20250530-ML-KEM-WC_SHA3_NO_ASM
20250530-ML-KEM-WC_SHA3_NO_ASM
|
2025-05-30 16:25:48 -05:00 |
|
Daniel Pouzzner
|
dd6e6015ea
|
wolfcrypt/src/wc_mlkem.c: add setup for WC_MLKEM_NO_ASM.
|
2025-05-30 14:51:52 -05:00 |
|
Daniel Pouzzner
|
0bdf8b54db
|
wolfssl/wolfcrypt/sha3.h: in asm prototypes section, snip out redundant prototypes for BlockSha3(), and add indentation for clarity.
|
2025-05-30 14:16:25 -05:00 |
|
Daniel Pouzzner
|
8256e42178
|
.github/workflows/wolfCrypt-Wconversion.yml: fix apt-get to update first.
|
2025-05-30 13:56:14 -05:00 |
|
Daniel Pouzzner
|
6a5dc482fd
|
linuxkm/Kbuild: set OBJECT_FILES_NON_STANDARD=y for wolfcrypt/src/wc_mlkem_asm.o ("'naked' return found").
|
2025-05-30 13:39:33 -05:00 |
|
Daniel Pouzzner
|
8f347e68f5
|
wolfcrypt/src/wc_mlkem_poly.c and configure.ac: add support for WC_MLKEM_NO_ASM, and add gates to support WC_SHA3_NO_ASM;
wolfcrypt/src/sha3.c and wolfssl/wolfcrypt/sha3.h: BlockSha3() now always WOLFSSL_LOCAL (never static) to support calls from MLKEM implementation.
|
2025-05-30 13:31:40 -05:00 |
|
Daniel Pouzzner
|
5c21551808
|
Merge pull request #8816 from philljj/crypto_sig_sign_ret_value
linuxkm rsa: fix ret value usage for crypto_sig_sign.
|
2025-05-29 22:44:13 -05:00 |
|
philljj
|
9bd58344d9
|
Merge pull request #8817 from douzzer/20250529-WC_SHA3_NO_ASM
20250529-WC_SHA3_NO_ASM
|
2025-05-29 22:24:36 -05:00 |
|
David Garske
|
165f868be1
|
Fix for warning: ‘free’ called on unallocated object ‘buf’.
|
2025-05-29 17:15:55 -07:00 |
|
Daniel Pouzzner
|
aeae9cb3b6
|
Merge pull request #8807 from philljj/linuxkm_ecdsa_small_cleanup
linuxkm ecdsa: small debug msg cleanup.
|
2025-05-29 17:16:40 -05:00 |
|
jordan
|
0b64a5549c
|
linuxkm rsa: fix ret value usage for crypto_sig_sign.
|
2025-05-29 16:22:40 -05:00 |
|
Daniel Pouzzner
|
245042a342
|
add WC_SHA3_NO_ASM, mainly for the benefit of linuxkm-defaults and KASAN compatibility.
|
2025-05-29 16:21:34 -05:00 |
|
philljj
|
429ed8d0be
|
Merge pull request #8814 from douzzer/20250529-linuxkm-fix-AesGcmCrypt_1-no-stream
20250529-linuxkm-fix-AesGcmCrypt_1-no-stream
|
2025-05-29 14:36:07 -05:00 |
|
Daniel Pouzzner
|
4d19f55c3f
|
linuxkm/lkcapi_aes_glue.c: in AesGcmCrypt_1(), in !WOLFSSL_AESGCM_STREAM version, don't call skcipher_walk_done(&sk_walk, ...) -- doesn't work, and not needed.
|
2025-05-29 12:10:02 -05:00 |
|
Daniel Pouzzner
|
2a9269e654
|
Merge pull request #8796 from philljj/linuxkm_rsa_sig
linuxkm rsa: add sig_alg support for linux 6.13
|
2025-05-29 01:15:13 -05:00 |
|
philljj
|
8ce0a3bf83
|
Merge pull request #8810 from douzzer/20250528-linuxkm-aes-kmemleaks
20250528-linuxkm-aes-kmemleaks
|
2025-05-28 19:45:49 -05:00 |
|
David Garske
|
18aab1a883
|
Further improvements to MultiByte and WideChar conversions.
|
2025-05-28 15:35:10 -07:00 |
|
Daniel Pouzzner
|
5c0a278c7f
|
linuxkm/lkcapi_aes_glue.c: add error path cleanups for dangling skcipher_walks.
|
2025-05-28 16:30:43 -05:00 |
|
David Garske
|
5c82757eb4
|
Merge pull request #8809 from douzzer/20250528-fix-mldsa_nosign
20250528-fix-mldsa_nosign
|
2025-05-28 14:12:06 -07:00 |
|
Daniel Pouzzner
|
b9ef6c583a
|
wolfcrypt/test/test.c: in test_dilithium_decode_level(), on early malloc failure, stay in the flow to assure cleanup;
.wolfssl_known_macro_extras: remove unneeded entry for WOLFSSL_DILITHIUM_VERIFY_NO_MALLOC.
|
2025-05-28 12:48:36 -05:00 |
|
jordan
|
7212fd0483
|
linuxkm ecdsa: small debug msg cleanup.
|
2025-05-28 11:43:44 -05:00 |
|
Sean Parkinson
|
8ea01056c3
|
Merge pull request #8788 from julek-wolfssl/gh/8765
tls13: handle malformed CCS and CCS before CH
|
2025-05-28 09:45:09 +10:00 |
|
David Garske
|
3032e977a8
|
Merge pull request #8802 from kojo1/csharp
fix C# Release build
|
2025-05-27 15:46:28 -07:00 |
|
David Garske
|
6de7bb74ed
|
Merge pull request #8787 from julek-wolfssl/refactor-GetHandshakeHeader
Refactor GetHandshakeHeader/GetHandShakeHeader into one
|
2025-05-27 15:26:24 -07:00 |
|
David Garske
|
482f2bdd2a
|
Refactor to support CSR generation and signing with WOLFSSL_NO_MALLOC. Also for DSA. Don't test no malloc with ECC custom curves.
|
2025-05-27 14:51:16 -07:00 |
|
Sean Parkinson
|
71a9e48701
|
Merge pull request #8801 from rlm2002/coverity
coverity: misc changes to api.c
|
2025-05-28 07:28:40 +10:00 |
|
Daniel Pouzzner
|
8179367412
|
Merge pull request #8798 from dgarske/mldsa_nosign
Fix for ML-DSA with `WOLFSSL_DILITHIUM_NO_SIGN`
|
2025-05-27 14:44:44 -05:00 |
|
Ruby Martin
|
2eddc32eed
|
coverity: fix use after free, improper use of negative value, initialize src variable
|
2025-05-27 09:43:44 -06:00 |
|
Sean Parkinson
|
6c7edeba38
|
Merge pull request #8800 from douzzer/20250523-WC_NID_netscape_cert_type
20250523-WC_NID_netscape_cert_type
|
2025-05-26 08:19:22 +10:00 |
|
Takashi Kojo
|
7b8f30bb25
|
fix Release build
|
2025-05-24 14:03:55 +09:00 |
|
jordan
|
da9410565d
|
linuxkm rsa: km_pkcs1_sign should return sig_len on success.
|
2025-05-23 22:29:16 -05:00 |
|
Daniel Pouzzner
|
ec842be582
|
wolfssl/wolfcrypt/asn.h: add a real value for WC_NID_netscape_cert_type.
|
2025-05-23 14:05:51 -05:00 |
|
Juliusz Sosinowicz
|
2ec6b92b41
|
tls13: handle malformed CCS and CCS before CH
- fix incorrect alert type being sent
- error out when we receive a CCS before a CH
- error out when we receive an encrypted CCS
|
2025-05-23 15:04:22 +02:00 |
|
Sean Parkinson
|
999641d9b1
|
Merge pull request #8642 from rizlik/dtls_no_span_records
DTLS: drop records that span datagrams
|
2025-05-23 14:57:24 +10:00 |
|
David Garske
|
db0b0e28d2
|
Fix issue with CSharp and Windows CE with conversion of ASCII->Unicode and Unicode->ASCII with odd length and extra null terminator.
|
2025-05-22 16:34:54 -07:00 |
|
Sean Parkinson
|
d1312c87bb
|
Merge pull request #8792 from rlm2002/coverity-src
Coverity: remove dead code issue in ssl.c
|
2025-05-23 09:27:39 +10:00 |
|
Sean Parkinson
|
2ecd4d75e3
|
Merge pull request #8795 from dgarske/stm32_aes_gcm_oldcube
Fix for STM32 AES GCM and older STM32Cube HAL that does not support `HeaderWidthUnit`
|
2025-05-23 08:00:35 +10:00 |
|
Sean Parkinson
|
fb6f0c8b73
|
Merge pull request #8797 from douzzer/20250522-FIPS-v5-no-implicit-DES
20250522-FIPS-v5-no-implicit-DES
|
2025-05-23 07:50:34 +10:00 |
|
David Garske
|
607d7489bc
|
Add no malloc support for Dilithium tests. Fixes for WOLFSSL_DILITHIUM_NO_ASN1.
|
2025-05-22 14:34:34 -07:00 |
|
Ruby Martin
|
5352e100db
|
Add NO_OLD_TLS macroguard, remove dead code
|
2025-05-22 14:21:38 -06:00 |
|
Daniel Pouzzner
|
b06a921697
|
tests/api.c: add missing NO_SHA gates in test_wc_PKCS12_create().
|
2025-05-22 14:56:31 -05:00 |
|
David Garske
|
d0085834cd
|
Fix for ML-DSA with WOLFSSL_DILITHIUM_NO_SIGN. ZD 19948.
|
2025-05-22 12:36:46 -07:00 |
|
Daniel Pouzzner
|
7e9460c377
|
configure.ac: remove implicit enablements of DES/DES3 on FIPS v5+.
|
2025-05-22 14:19:28 -05:00 |
|
jordan
|
402ebec3b7
|
linuxkm rsa: comments, cleanup work buffer useage.
|
2025-05-22 11:07:36 -05:00 |
|