[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[openssl-gost] [gost-engine/engine] ac13da: Fix buffer overrun in creating key transport blob ...



  Branch: refs/heads/ossl_patched
  Home:   https://github.com/gost-engine/engine
  Commit: ac13dafdd889b51c3f91c7351674ca9935a551f1
      https://github.com/gost-engine/engine/commit/ac13dafdd889b51c3f91c7351674ca9935a551f1
  Author: Dmitry Belyavskiy <beldmit@gmail.com>
  Date:   2022-05-30 (Mon, 30 May 2022)

  Changed paths:
    M e_gost_err.c
    M e_gost_err.h
    M gost_ec_keyx.c

  Log Message:
  -----------
  Fix buffer overrun in creating key transport blob according to RFC 9189, 4.2.4.1

Resolves: CVE-2022-29242


  Commit: bb2183d09ae6f44640197b2d3eb8af75f549a57c
      https://github.com/gost-engine/engine/commit/bb2183d09ae6f44640197b2d3eb8af75f549a57c
  Author: Dmitry Belyavskiy <beldmit@gmail.com>
  Date:   2022-05-30 (Mon, 30 May 2022)

  Changed paths:
    M gost_ec_keyx.c

  Log Message:
  -----------
  Fix buffer overrun in creating key transport blob according to RFC 9189, 4.2.4.2

Resolves: CVE-2022-29242


  Commit: b1316e066838eb4c4fafa64fd98590e60c62a189
      https://github.com/gost-engine/engine/commit/b1316e066838eb4c4fafa64fd98590e60c62a189
  Author: Dmitry Belyavskiy <beldmit@gmail.com>
  Date:   2022-05-30 (Mon, 30 May 2022)

  Changed paths:
    M gost_ec_keyx.c

  Log Message:
  -----------
  On unpacking key blob output buffer size should be fixed

Related: CVE-2022-29242


  Commit: 8751d1538fd893488d90ef5cb7997c58e54f8059
      https://github.com/gost-engine/engine/commit/8751d1538fd893488d90ef5cb7997c58e54f8059
  Author: igrkir <i.kirillov@kryptonite.ru>
  Date:   2022-05-30 (Mon, 30 May 2022)

  Changed paths:
    M e_gost_err.h

  Log Message:
  -----------
  fix: next error value for new error


Compare: https://github.com/gost-engine/engine/compare/cc4de730d8ae...8751d1538fd8