Gilles Peskine | e298eeb | 2024-10-14 11:03:24 +0200 | [diff] [blame] | 1 | Security |
Gilles Peskine | 604e4d9 | 2024-10-14 11:34:18 +0200 | [diff] [blame] | 2 | * Fix a buffer underrun in mbedtls_pk_write_key_der() when |
Gilles Peskine | e298eeb | 2024-10-14 11:03:24 +0200 | [diff] [blame] | 3 | called on an opaque key, MBEDTLS_USE_PSA_CRYPTO is enabled, |
| 4 | and the output buffer is smaller than the actual output. |
Gilles Peskine | 604e4d9 | 2024-10-14 11:34:18 +0200 | [diff] [blame] | 5 | Fix a related buffer underrun in mbedtls_pk_write_key_pem() |
Gilles Peskine | e298eeb | 2024-10-14 11:03:24 +0200 | [diff] [blame] | 6 | when called on an opaque RSA key, MBEDTLS_USE_PSA_CRYPTO is enabled |
| 7 | and MBEDTLS_MPI_MAX_SIZE is smaller than needed for a 4096-bit RSA key. |
| 8 | CVE-2024-49195 |