61bb1370d0
Fix a "Local side channel attack on classical CBC decryption in (D)TLS" a.k.a. CVE-2020-16150: https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-2020-09-1 as well as a "Local side channel attack on RSA and static Diffie-Hellman" (no CVE): https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-2020-09-2 Also change MBEDTLS_SITE and retrieve hash provided by upstream https://github.com/ARMmbed/mbedtls/releases/tag/v2.16.8 Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com> Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
5 lines
270 B
Plaintext
5 lines
270 B
Plaintext
# From https://github.com/ARMmbed/mbedtls/releases/tag/v2.16.8:
|
|
sha256 fe9e3b15c3375943bdfebbbb20dd6b4f1147b3b5d926248bd835d73247407430 mbedtls-2.16.8.tar.gz
|
|
# Locally calculated
|
|
sha256 cfc7749b96f63bd31c3c42b5c471bf756814053e847c10f3eb003417bc523d30 apache-2.0.txt
|