HomeFreeBSD

MFH: r474695

Description

MFH: r474695

bouncycastle15: update to version 1.60

This release deals with two CVEs: one affecting RSA key pair generation
where the certainty value is being tweaked in the light-weight API,
and the other on properly validating an XMSS/XMSS^MT private key on reload.

In terms of improvements, the BCJSSE now supports SNI,
CMS now supports SHA-3 signatures, the Unified Model is now fully supported
for Diffie-Hellman with ephemeral keys, and PGP EC operations can support
a wider range of curves. Issues have also been fixed in EST,
CRMF request generation, and low-level support has been added for EdDSA.

Further details on other additions and bug fixes can be found in the
release notes at:

https://www.bouncycastle.org/releasenotes.html

Security: CVE-2018-1000180
Security: CVE-2018-1000613

Approved by: ports-secteam (miwi)

Details

Provenance
eugenAuthored on
Parents
rP474697: security/vuxml: add entry for devel/upp
Branches
Unknown
Tags
Unknown