LibreSSL 3.6.0 Siidaynta Maktabada Cryptographic

Soosaarayaasha mashruuca OpenBSD ayaa soo bandhigay siideynta daabacaadda la qaadi karo ee xirmada LibreSSL 3.6.0, kaas oo lagu soo saarayo fargeeto OpenSSL ah, looga dan leeyahay in la bixiyo heer sare oo ammaan ah. Mashruuca LibreSSL wuxuu diiradda saarayaa taageerada tayada sare leh ee borotokoolka SSL/TLS iyadoo meesha laga saarayo shaqeynta aan loo baahnayn, lagu daro sifooyin ammaan oo dheeri ah, iyo si weyn u nadiifinta iyo dib u habeynta saldhigga koodhka. LibreSSL 3.6.0 waxaa loo tixgaliyaa siideyn tijaabo ah oo horumarisa astaamo lagu dari doono OpenBSD 7.2.

Tilmaamaha LibreSSL 3.6.0:

  • EVP API ee HKDF (HMAC Key Derivation Function) shaqada furaha waxa laga soo raray OpenSSL.
  • API lagu daray dejinta iyo helitaanka heerarka amniga - SSL_{,CTX}_{get,set}_security_level().
  • Taageerada tijaabada API ee lagu daray borotokoolka QUIC, oo markii hore laga hirgaliyay BoringSSL.
  • Lagu daray taageerada bilowga ah ee xaqiijinta TS ESSCertIDv2.
  • Imtixaanka aasaasiga ah ee Bailey-Pomerantz-Selfridge-Wagstaff (Baillie-PSW) ayaa la isticmaalaa halkii laga isticmaali lahaa imtixaanka Miller-Rabin.
  • Dib-u-shaqayn weyn oo gudaha ah ayaa la sameeyay. Hubinta kheyraadka degdega ah ee RFC 3779 ee meesha laga saaray markii la xaqiijinayo shahaadooyinka. Decoder-ka iyo saacad-sameeyaha ASN.1 dib baa loo qaabeeyey. Hirgelinta ASN1_STRING_to_UTF8() dib ayaa loo qoray.
  • Lagu daray -"s" ikhtiyaar si loo furo utility si ay u muujiyaan kaliya ciphers ay taageerayaan borotokoolka la cayimay.

Source: opennet.ru

Add a comment