From: Ankur Tyagi <[email protected]>
* New and extended features:
- gpg: New option --allow-9980 to enable the processing of RFC-9980
specified data structures. The use of this option is only
recommended if external policy requirements demand the use of
these governmental approved specification. PGP folks requiring
some PQC resistance should keep on using the standard LibrePGP
Kyber algorithm introduced 2 years ago.
- gpg: In 9980 mode support PQC encryption using ML-KEM (aka Kyber)
with X448, X25519, Brainpool, or NIST curves as specified by
RFC-9980 et al.
- gpg: In 9980 mode support ED25519 and X25519 as specified by
RFC-9580 under the names "ietf27" and "ietf27".
- gpg: Add experimental support for a --compliance=fips mode to use
GCM for bulk encryption.
- scd: Add Nitrokey 3 to pcsc-shared interference detection.
* Bug fixes:
- gpgsm: Fix an exploitable printf bug when using the debug option
"--debug x509".
- dirmngr: Make the LDAP upload flags also work for KS_SEARCH.
- dirmngr: Fix OOB read in DNS CERT record parser.
- scd: Fix OOB access in DO parsing of faulty cards.
* Other changes:
- dirmngr: Add a mitigation for badly configured web key
directories.
- New option --debug-no-libgcrypt for gpg, gpgsm, and agent. This
debug option is useful to avoid cluttering other debug output
with libgcrypt generated debug details.
- gpg: New --list-options "debug-show-sexp" to print a secret key
as an s-expression.
Signed-off-by: Ankur Tyagi <[email protected]>
---
meta/recipes-support/gnupg/{gnupg_2.5.23.bb => gnupg_2.5.24.bb} | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
rename meta/recipes-support/gnupg/{gnupg_2.5.23.bb => gnupg_2.5.24.bb} (97%)
diff --git a/meta/recipes-support/gnupg/gnupg_2.5.23.bb
b/meta/recipes-support/gnupg/gnupg_2.5.24.bb
similarity index 97%
rename from meta/recipes-support/gnupg/gnupg_2.5.23.bb
rename to meta/recipes-support/gnupg/gnupg_2.5.24.bb
index 139e1c9ef2..3e562250d7 100644
--- a/meta/recipes-support/gnupg/gnupg_2.5.23.bb
+++ b/meta/recipes-support/gnupg/gnupg_2.5.24.bb
@@ -25,7 +25,7 @@ SRC_URI:append:class-native = "
file://0001-configure.ac-use-a-custom-value-for-
file://relocate.patch"
SRC_URI:append:class-nativesdk = " file://relocate.patch"
-SRC_URI[sha256sum] =
"97ebba329ed0aa1ed24395b6a485a3626680f4c19232c62a0c0f0433c726e2bd"
+SRC_URI[sha256sum] =
"bf149d01a2b9fcc0e4589b8ae8697d3d5c557ea48ed95a3fa55dd3b1187e6039"
EXTRA_OECONF = "--disable-ldap \
--disable-ccid-driver \
-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#246957):
https://lists.openembedded.org/g/openembedded-core/message/246957
Mute This Topic: https://lists.openembedded.org/mt/121506364/21656
Group Owner: [email protected]
Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub
[[email protected]]
-=-=-=-=-=-=-=-=-=-=-=-