meta-openembedded/meta-networking
Stefan Ghinea 2ab113e8be mbedtls: upgrade to 2.28.2 to fix CVE-2022-46392, CVE-2022-46393
An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0.
An adversary with access to precise enough information about memory
accesses (typically, an untrusted operating system attacking a secure
enclave) can recover an RSA private key after observing the victim
performing a single private-key operation, if the window size
(MBEDTLS_MPI_WINDOW_SIZE) used for the exponentiation is 3 or smaller.

An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0.
There is a potential heap-based buffer overflow and heap-based buffer
over-read in DTLS if MBEDTLS_SSL_DTLS_CONNECTION_ID is enabled and
MBEDTLS_SSL_CID_IN_LEN_MAX > 2 * MBEDTLS_SSL_CID_OUT_LEN_MAX.

References:
https://nvd.nist.gov/vuln/detail/CVE-2022-46392
https://nvd.nist.gov/vuln/detail/CVE-2022-46393

Upstream patches:
https://github.com/Mbed-TLS/mbedtls/releases/tag/v2.28.2

Signed-off-by: Stefan Ghinea <stefan.ghinea@windriver.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
2023-01-26 13:16:34 -08:00
..
classes kernel_add_regdb: Change the task order 2023-01-11 17:56:42 -08:00
conf layer.conf: update LAYERSERIES_COMPAT for mickledore 2023-01-04 14:34:04 -08:00
dynamic-layers/meta-python/recipes-connectivity crda: 3.18 -> 4.15 2023-01-16 21:29:24 -08:00
files/waf-cross-answers samba upgrade 4.14.14 -> 4.17.4 2023-01-01 02:23:29 -08:00
licenses
recipes-connectivity mbedtls: upgrade to 2.28.2 to fix CVE-2022-46392, CVE-2022-46393 2023-01-26 13:16:34 -08:00
recipes-core packagegroup-meta-networking: Remove ypbind-mt on musl 2022-08-30 00:14:58 -07:00
recipes-daemons opensaf: Fix build with gcc13 2023-01-26 10:24:25 -08:00
recipes-devtools libcoap: Upgrade 4.3.0 -> 4.3.1 2022-09-22 16:45:05 -07:00
recipes-extended dlm: Upgrade to 4.1.1 2022-08-30 00:14:58 -07:00
recipes-filter nftables: Fix missing leading whitespace with ':append' 2023-01-25 08:51:25 -08:00
recipes-irc weechat: Update 3.4.1 -> 3.8 2023-01-13 09:47:27 -08:00
recipes-kernel/wireguard wireguard-tools: Add a new package for wg-quick 2022-08-22 14:13:37 -07:00
recipes-netkit netkit-telnet: Drop using register storage class keyword 2023-01-16 21:23:07 -08:00
recipes-protocols net-snmp: Fix build with clang16 2023-01-21 10:02:02 -08:00
recipes-support ntpsec: Upgrade 1.2.1 -> 1.2.2 2023-01-25 08:51:25 -08:00
COPYING.MIT
MAINTAINERS MAINTAINERS: add entry for OpenThread 2022-04-07 17:40:45 -04:00
README meta-networking,meta-python: Fix README for yocto check layer 2021-12-02 18:36:58 -08:00

meta-networking
===============

This layer is intended to be a central point for networking-related
packages and configuration.  It should be useful directly on top of
oe-core and compliments meta-openembedded.  It should be primarily useful
to the following groups:

      - Anyone building a small networking device (eg. a home router /
        bridge / switch).

      - Anyone wanting to add network services to their device (eg.
        anything that might benefit from a small ftp/tftp server)

Dependencies
------------

This layer depends on:

URI: git://git.openembedded.org/openembedded-core
branch: master

For some recipes, the meta-oe layer is required:

URI: git://git.openembedded.org/meta-openembedded
subdirectory: meta-oe
branch: master

URI: git://git.openembedded.org/meta-openembedded
subdirectory: meta-python
branch: master

Maintenance
-----------
Layer maintainers: Khem Raj <raj.khem@gmail.com>
                   Armin Kuster <akuster808@gmail.com> (recipes-netkit)


Please see the MAINTAINERS file for information on contacting the
maintainers of this layer, as well as instructions for submitting patches.