Commit Graph

  • 65bafa176c !55 merge master_0630 into master master weekly_20260713 weekly_20260706 OpenHarmony-7.0-Release openharmony_ci 2026-07-03 15:10:58 +08:00
  • 6979f132dc fix: harden file permissions for sensitive data and add input validation dumb 2026-06-01 11:39:09 +00:00
  • 2534e12796 Fix the issue where the failure branch of ReferencesInit does not reinitialize references Dongjianwei001 2026-06-22 10:43:25 +08:00
  • eeba11b2fe Fix some code issues and comments hanzhiyang 2026-06-15 11:05:48 +08:00
  • 8a5d51b503 Fixed missing validation and memory issues Dongjianwei001 2026-06-09 19:57:41 +08:00
  • a75ed9311a fix: separate XMSS/XMSSMT macro guards and add repeated-init guard xlot 2026-06-15 03:13:06 +00:00
  • 21e59050f4 fix: Fix code review issues huangwenb0 2026-06-15 01:26:44 +00:00
  • cebeb1a79d fix&test: fix X.509 time tag updates and cover validity edge cases huangwenb0 2026-06-11 13:03:47 +00:00
  • 5e44d5881a Reject RSA private key encoding without public exponent jchx 2026-06-13 02:43:31 +00:00
  • 06dfcb1002 fix: decouple xmssmt from xmss dispatch xlot 2026-06-10 03:55:26 +00:00
  • 617ce7bcf2 fix codecskey of rsa crt mode jchx 2026-06-08 06:53:07 +00:00
  • 47532511c3 fix: Changed the post-quantum algorithm hash to "unknown" gsp 2026-06-09 15:12:02 +08:00
  • 0ad9f47b3b fix:fix bugs in verify CRL Tom 2026-06-09 14:36:04 +08:00
  • e3ab410f6a fix:remove const time selector helper function in frodokem Tom 2026-06-04 14:29:39 +08:00
  • e0943c05d2 fix:adjust dup behavior for xmss Tom 2026-06-03 11:34:48 +08:00
  • 16f7e55b84 fix:fix PC mode of Mceliece Tom 2026-06-02 14:48:35 +08:00
  • 3ccd9c2dee fix:fix the correctness of mceliece in BE platform;clean sensitive information Tom 2026-06-01 15:33:36 +08:00
  • 1649783752 fix: various PQC bugfixes for SLH-DSA, ML-DSA zhangpeilong 2026-06-02 06:18:30 +00:00
  • 2ecc50a67a fix: Fix reset AES-WRAP IV state issue dsy678 2026-05-28 21:15:06 +08:00
  • d2c2b21d49 fix: cleanse secret buffers in ML-KEM PKE encrypt/decrypt and decapsulation dumb 2026-06-01 02:38:32 +00:00
  • 8eb58551a3 fix: guard termios.h and FSetAttr/FGetAttr with HITLS_BSL_UI Dongjianwei001 2026-05-29 19:31:38 +08:00
  • a281faa097 fix: validate ML-DSA Mu message length kafei-cy 2026-05-26 22:10:18 +08:00
  • 7beb43f2d1 fix:fix the correctness of frodokem in BE platform, clean sensitive data Tom 2026-05-28 17:35:20 +08:00
  • 97a72bdb45 fix:Fix the issue where the chain is not cleared when only one certificate is loaded in HITLS_CFG_UseCertificateChainBuffer balabala-123 2026-05-26 23:34:10 +08:00
  • fa88e7f768 update version to openHiTLS 0.3.3 release liwei3013 2026-04-22 15:53:21 +08:00
  • 13608690d8 fix:Fix possible null pointer dereference issue with certMgrCtx hanzhiyang 2026-05-25 21:29:47 +08:00
  • 6c4b36ee4f fix:Fix CRL entry CHOICE tag check hanzhiyang 2026-05-26 19:20:59 +08:00
  • a1b0c3d4ca fix:Fixed several overflow checksum issues and issues with parsing Curve25519 private key TLV dsy678 2026-05-26 22:22:50 +08:00
  • 881f726d17 fix:Fix the issue of missing static and MLDSA DUP fields dsy678 2026-05-22 16:52:11 +08:00
  • 3db04fa4af Ignore unsupported decoder providers during chain discovery jchx 2026-05-23 10:56:04 +00:00
  • 448b67161a fix:The actual behavior of the repair function is inconsistent with its description. Add a comment to explain. balabala-123 2026-05-25 21:24:46 +08:00
  • 06f47f4ebe fix:fix issues of mceliece and rsa Tom 2026-05-25 21:43:03 +08:00
  • 8fd63444ed fix:Clean up sensitive data and fix some code issues hanzhiyang 2026-05-21 20:48:47 +08:00
  • 505c8953a7 fix:protocal handshake probelms fix longparty 2026-05-23 11:55:53 +08:00
  • fa3f69dceb fix: harden app IO and TLS shutdown dny 2026-05-22 09:28:38 +08:00
  • eb2863c691 fix:Fix the issue where the DSA verification function does not check for the case where the output length of the hash algorithm is shorter than N. xuzhengyi 2026-05-21 20:55:08 +08:00
  • 22cee3928d fix:fix issues of cms and CRYPT_EAL_CleanUp for PROVIDER_RAND bit Tom 2026-05-21 20:13:16 +08:00
  • 2f5fb8cc43 tls: report pending renegotiation in state query baoyi84930 2026-05-21 21:31:46 +08:00
  • 1b6376df22 !54 merge master into master weekly_20260629 weekly_20260622 weekly_20260615 weekly_20260608 weekly_20260601 openharmony_ci 2026-05-27 15:48:44 +08:00
  • 9c5a525ff0 fix(bsl): fix bsl get time redundancy check TaylorGao3558 2026-05-20 21:26:34 +08:00
  • 16c6360760 fix:clear sensitive data hanzhiyang 2026-05-20 21:24:19 +08:00
  • aa4c1785bc fix array out-of-bounds issues in EAL_FindParam. Dongjianwei001 2026-05-20 15:15:15 +08:00
  • ad5911f70c fix:fix bugs and clean sensitive data Tom 2026-05-20 17:01:31 +08:00
  • 278a755f38 fix:Fixing some issues,See details for the list. xuzhengyi 2026-05-20 15:44:36 +08:00
  • 287116b9ee Relaxing RSA decryption verification jchx 2026-04-24 18:15:19 +08:00
  • 58eab462f0 fix:Fix the failure to obtain the peer certificate during the handshake process && fix the issue of not ignoring duplicate certificates when loading them balabala-123 2026-04-25 18:47:44 +08:00
  • b8d4c91f15 feat: add FIPS 186-5 A.1.3 compliant RSA key generation jchx 2026-04-14 21:19:37 +08:00
  • 532c1a9929 feat: add DISABLE_TIME_CHECK flag and time parameter for certificate and CRL verification Ooohui 2026-04-15 19:24:44 +08:00
  • 2d29fa195d fix: MLDSA_CalPub pairwise check memcmp size argument bug Ooohui 2026-04-24 09:19:14 +08:00
  • 8fdcb4e381 fix: add TMP_DH security check for client processing ServerKeyExchange baoyi84930 2026-04-16 15:57:58 +08:00
  • a2a221f6c3 fix:fix security issues of xmss algorithm Tom 2026-04-23 12:01:07 +08:00
  • 8828fac44c fix:Fix code check alarms c3dehui 2026-04-23 09:05:36 +08:00
  • 90d378846f fix: stabilize tls config SDV concurrent regression liwei3013 2026-04-21 21:51:47 +08:00
  • 2072eca555 fix:Fix some code logic issues hanzhiyang 2026-05-19 23:06:16 +08:00
  • 33115cbab3 fix:protocal handshake probelms fix longparty 2026-05-19 20:40:11 +08:00
  • 3c675844ad fix: harden sm verification and pem stdin handling dny 2026-05-19 14:41:54 +08:00
  • 571fdba062 fix:Fix the issue of lacking version check when processing the curve in skx messages balabala-123 2026-05-18 17:29:25 +08:00
  • 2effc6c703 fix:Fix some bugs of pki huangwenbo 2026-05-16 19:27:43 +08:00
  • 536bed0415 test: Add read/write boundary test cases for symmetric and hash assembly optimizations. liwei3013 2026-05-17 11:24:09 +08:00
  • e5397ef8df fix: adapt app hardening changes for 0.3 dny 2026-05-18 22:08:41 +08:00
  • df6b1a292c fix: harden app command security handling dny 2026-05-18 20:36:54 +08:00
  • d52e42f5e1 fix:protocal handshake probelms fix longparty 2026-05-18 20:20:59 +08:00
  • 7dd522be8f fix set param flag jchx 2026-05-18 10:03:16 +00:00
  • 78513ea977 fix:protocal handshake probelms fix longparty 2026-05-15 17:35:23 +08:00
  • c5179260c3 fix(sal/time): wait for Darwin monotonic clock to advance ZHui_er 2026-05-18 10:36:40 +08:00
  • e59b26cf06 Fix code review issues. Dongjianwei001 2026-05-15 10:17:44 +08:00
  • c4100f4b5a fix: harden entropy/rand handling and CMS streaming verification ZHui_er 2026-05-15 19:57:56 +08:00
  • ed7c42251a fix(test): fix RSA-PSS mdId type in X509 SDV cases liwei3013 2026-05-16 22:14:10 +08:00
  • 34642ad364 fix(crypto/bsl): fix bsl and ml-kem security check TaylorGao3558 2026-05-15 20:18:35 +08:00
  • a795c69f61 fix:Fix the issues found in the security audit balabala-123 2026-05-15 17:05:30 +08:00
  • 85b01a30ab fix(bsl/uio): support zero-length UDP datagrams baoyi84930 2026-05-16 19:19:55 +08:00
  • 6c91f0666a fix(pki/bsl): harden X509 verification, fix IPv6 string length, and add ASN.1 overflow check Ooohui 2026-05-15 11:31:18 +00:00
  • 7ec1c42250 fix:Fixed some function-related issues xuzhengyi 2026-05-16 18:36:18 +08:00
  • 13c23289d5 fix:Fixed the code issues of PKI and Crypto xuzhengyi 2026-05-16 19:10:25 +08:00
  • 8600e94f5c fix:fix some bugs and clean sensitive information Tom 2026-05-15 14:44:07 +08:00
  • 38fd72a3e6 Fix the issue where SM4-HCTR context copying still copies by default 4096 bytes after the internal cache expansio xuzhengyi 2026-05-16 10:01:36 +08:00
  • e80300b296 fix: align SCTP peer auth check control invocation with the current callback contract pi_ixeL 2026-05-16 14:51:14 +08:00
  • 7766d7fa52 fix(crypto): fix security bug for xmss, modes, sm4-ccm xlot 2026-05-15 17:16:29 +08:00
  • 8a97960015 fix:Fix some code logic issues hanzhiyang 2026-05-15 20:29:20 +08:00
  • e4d0872138 Fix ARMv7 SM2 infinite loop, concurrency issues, and API safety annotations dumb 2026-05-15 06:00:19 +00:00
  • 3ac94d7f4e fix: resolve audit findings for group security and parser checks pi_ixeL 2026-05-14 22:34:17 +08:00
  • ee9c094ad4 feat(sm9): remove key exchange capability Remove all SM9 key exchange functionality including algorithm implementation, EAL layer, CTRL commands, test cases, and cmake options. Sign and encrypt operations remain fully functional. jchx 2026-05-13 11:29:04 +00:00
  • 6cca63e935 fix:clean sensitive information and fix some functions Tom 2026-05-13 13:45:45 +00:00
  • 7d425ddf96 fix:Fixing uncleaned sensitive information && memory leaks balabala-123 2026-05-12 22:55:21 +08:00
  • 1af3bc3e44 Fix the issue of TL_SessionMgr pointer leakage causing external bypass of locks and direct reading of data hanzhiyang 2026-05-13 18:28:33 +08:00
  • bb98e1267e Fix: Resolve double free and HITLS_CFG_SetNoClientCertSupport annotation issues xxlu 2026-05-13 16:10:16 +08:00
  • 9e779a8c76 Fix insufficient buffer size calculation for base64 encoding Dongjianwei001 2026-05-13 16:56:18 +08:00
  • 06428c110d Fix code review issues xuzhengyi 2026-05-13 20:13:09 +08:00
  • 4499ab429e Fix code review issues Dongjianwei001 2026-05-11 20:04:36 +08:00
  • e61fe868d6 fix(pki): harden X509 verification for certificate version, SAN parsing, and security level integration Ooohui 2026-05-13 07:04:06 +00:00
  • 2227684cfc fix:Fixed some function-related issues. dsy 2026-05-13 14:16:52 +08:00
  • 15c1b164c1 fix:Clear sensitive data and fix some functional issues hanzhiyang 2026-05-12 20:10:31 +08:00
  • d21a010054 fix:clean sensitive information Tom 2026-05-12 02:37:57 +00:00
  • f874d3b25c fix:Fixing some APP and AUTH bugs xuzhengyi 2026-05-12 19:11:10 +08:00
  • 60fb1918bb fix(crypto): harden ChaCha20 counter wrap, McEliece constant-time, XTS data-unit limit, RSA blinding default, and misc bug fixes dumb 2026-05-10 03:41:17 +08:00
  • 4b5184c9fb chore:add usage constraints comments for xmss Tom 2026-05-09 09:25:12 +08:00
  • dd09488cc2 fix(cms): finalize verify state and sync signing comments yyl 2026-05-09 10:34:19 +08:00
  • 05db6de40a Fix the calculation error in cfb mode on 32-bit systems Dongjianwei001 2026-05-09 14:28:00 +08:00
  • c79bd89535 fix:Fixing improper macro wrapping balabala-123 2026-05-08 10:33:20 +08:00
  • f7bcfe1591 fix: harden length-bounded parsing edge cases liwei3013 2026-05-07 22:07:49 +08:00