commit | 01186270137225b812b18afb53acd66bc88002eb | [log] [tgz] |
---|---|---|
author | Ronald Cron <ronald.cron@arm.com> | Thu Dec 02 11:26:07 2021 +0100 |
committer | Ronald Cron <ronald.cron@arm.com> | Tue Dec 07 09:28:36 2021 +0100 |
tree | 1318611b04f02a210d58ef497c6dd19e50c24a16 | |
parent | a393619dc2f69e33a69097444c0f5c4e78243a9c [diff] |
Add change log Signed-off-by: Ronald Cron <ronald.cron@arm.com>
diff --git a/ChangeLog.d/fix-aead-nonce.txt b/ChangeLog.d/fix-aead-nonce.txt new file mode 100644 index 0000000..767cc1d --- /dev/null +++ b/ChangeLog.d/fix-aead-nonce.txt
@@ -0,0 +1,5 @@ +Security + * In psa_aead_generate_nonce(), do not read back from the output buffer. + This fixes a potential policy bypass or decryption oracle vulnerability + if the output buffer is in memory that is shared with an untrusted + application.