Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

libcjose-devel-0.6.2.2-1.1 RPM for s390x

From OpenSuSE Ports Tumbleweed for s390x

Name: libcjose-devel Distribution: openSUSE:Factory:zSystems
Version: 0.6.2.2 Vendor: openSUSE
Release: 1.1 Build date: Tue Jul 18 22:22:56 2023
Group: Development/Libraries/C and C++ Build host: s390zp21
Size: 49843 Source RPM: cjose-0.6.2.2-1.1.src.rpm
Packager: https://bugs.opensuse.org
Url: https://github.com/OpenIDC/cjose
Summary: C library implementing the Javascript Object Signing and Encryption (JOSE)
C library implementing the Javascript Object Signing and Encryption (JOSE)

Provides

Requires

License

MIT

Changelog

* Tue Jul 18 2023 Danilo Spinella <danilo.spinella@suse.com>
  - Switch to OpenIDC fork of cjose
  - Update to 0.6.2.2:
    * use fixed authentication tag length of 16 octets in AES GCM decryption
    * avoid use of assert
    * fix make on srcdir != builddir
  - Update to 0.6.2.1:
    * preserve key order in cjose_header_get_raw as well
    * fix a memory leak in cjose_jws_import() for invalid JWS
    * don't use STACK_ALLOC in cjose_concatkdf_derive
  - Update to 0.6.2.0:
    * add support for A128GCM and A192GCM encryption
    * extract cjose_jwe_encrypt_iv to allow explicit IV
    * allow compilation against OpenSSL 3 with #define OPENSSL_API_COMPAT 0x10000000L
    * cleanup some warnings about \param lines in header files
    * preserve key order in order to be able to compare serialized JWTs
    * minor updates for conformance
    * check that JWE object has any CEK at all, return error if it doesn't
    * fix double free on decrypt ek rsa padding failure
    * replace calls to free() with cjose_get_dealloc() in _cjose_jws_build_hdr
    * fix buffer overflow in test_cjose_jwe_multiple_recipients
    * use fixed size of IV size of 16 bytes for AES-CBC
    * fix memory leak already addressed in cjose_jws_build_dig_sha when a JWS is reused for validation
    * compile against older versions of check
    * rename free() to free_func() in struct key_fntable for memory leak detectors
    * check result of cek = cjose_get_alloc()(cek_len) in jwe.c
  - Fix CVE-2023-37464, AES GCM decryption routine incorrectly uses the Tag
    length from the actual Authentication Tag, bsc#1213385
  - Remove unneeded patches:
    * cjose-0.6.1-concatkdf.patch
    * cjose-ck_assert_bin_eq.patch
* Mon Feb 06 2023 Marcus Meissner <meissner@suse.com>
  - disable depreacted declarations warnings for openssl 3 for now.
* Wed Oct 30 2019 Kristyna Streitova <kstreitova@suse.com>
  - add cjose-0.6.1-concatkdf.patch to fix concatkdf failures on big
    endian architectures [bsc#1149887]
  - re-enable tests on s390
* Mon Sep 09 2019 Vítězslav Čížek <vcizek@suse.com>
  - Fix a bug in an assert message macro
    * add cjose-ck_assert_bin_eq.patch
* Sun Sep 08 2019 Vítězslav Čížek <vcizek@suse.com>
  - Temporarily disable tests on s390 as they are broken there
    (bsc#1149887)
* Fri Apr 27 2018 vcizek@suse.com
  - update to 0.6.1
  - packaged as a dependency for apache2-mod_auth_openidc which was
    requested in fate#323817
* Wed Dec 13 2017 christof.hanke@mpcdf.mpg.de
  - update to version 0.5.1
* Wed Nov 02 2016 crrodriguez@opensuse.org
  - Initial version

Files

/usr/include/cjose
/usr/include/cjose/base64.h
/usr/include/cjose/cjose.h
/usr/include/cjose/error.h
/usr/include/cjose/header.h
/usr/include/cjose/jwe.h
/usr/include/cjose/jwk.h
/usr/include/cjose/jws.h
/usr/include/cjose/util.h
/usr/include/cjose/version.h
/usr/lib64/libcjose.so
/usr/lib64/pkgconfig/cjose.pc


Generated by rpm2html 1.8.1

Fabrice Bellet, Sat Mar 9 12:50:11 2024