openwrt-mirror/package/libs
Magnus Kroken eb370a7d02 mbedtls: update to 3.6.5
This release includes fixes for security issues.

Mbed TLS 3.6 is a long-term support (LTS) branch. It will be supported
with bug-fixes and security fixes until at least March 2027.

The two issues fixed were timing side channels:
* Padding oracle through timing of cipher error reporting
  (CVE-2025-59438) [1]
* Side channel in RSA key generation and operations (SSBleed, M-Step)
  (CVE-2025-54764) [2]

Bug fixes:
* Fix potential CMake parallel build failure when building both the static and shared libraries.
* Fix a build error or incorrect TLS session lifetime on platforms where mbedtls_time_t is not time_t.

[1]: https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2025-10-invalid-padding-error/
[2]: https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2025-10-ssbleed-mstep/

Full release announcement:
https://github.com/Mbed-TLS/mbedtls/releases/tag/mbedtls-3.6.5

Tested-by: Edoardo Pinci <epinci@outlook.com>
Signed-off-by: Magnus Kroken <mkroken@gmail.com>
Link: https://github.com/openwrt/openwrt/pull/20425
Signed-off-by: Hauke Mehrtens <hauke@hauke-m.de>
2025-10-18 01:27:52 +02:00
..
argp-standalone treewide: opt-out of tree-wide LTO usage 2023-03-21 18:28:23 +01:00
elfutils package/libs/elfutils: fix license 2025-09-08 14:46:48 +02:00
gettext-full package/libs/gettext-full: fix license 2025-09-08 14:51:35 +02:00
gmp gmp: fix compilation with GCC 15.1 2025-06-08 12:46:17 +02:00
gnulib-l10n gnulib-l10n: add package 2025-07-26 14:38:09 +02:00
jansson treewide: add support for "lto" in PKG_BUILD_FLAGS 2023-03-21 18:28:22 +01:00
libbpf libbpf: add support for passing classid for tc attached programs 2025-07-31 17:34:24 +02:00
libbsd libbsd: update to 0.11.8 2024-01-30 10:39:21 +01:00
libcap libcap: update to 2.69 2023-05-22 18:51:31 +02:00
libevent2 libevent2: make cmake use relative imported path 2024-03-13 00:24:43 +00:00
libiconv-full libiconv-full: update to 1.18 2025-05-04 20:50:33 +02:00
libjson-c libjson-c: update to 0.18 2024-10-05 12:29:20 +02:00
libmd libmd: update to 1.1.0 2023-10-12 09:50:25 +02:00
libmnl libmnl: add PKG_CPE_ID 2022-09-06 16:36:44 +01:00
libnetfilter-conntrack libnetfilter-conntrack: bump to 1.1.0 2025-07-04 15:15:07 +02:00
libnfnetlink libnfnetlink: add PKG_CPE_ID 2022-09-06 16:36:45 +01:00
libnftnl libnftnl: update to 1.3.0 2025-09-20 18:58:14 -04:00
libnl libnl: update to 3.11.0 2025-03-11 23:57:22 +01:00
libnl-tiny libnl-tiny: update to Git HEAD (2025-10-03) 2025-10-04 00:00:53 +02:00
libpcap libpcap: bump PKG_RELEASE 2025-07-19 18:54:05 +02:00
libselinux libselinux: update to 3.8.1 2025-05-02 19:15:42 +02:00
libsemanage libsemanage: update to 3.8.1 and fix build with GCC14 2025-05-02 19:15:42 +02:00
libsepol libsepol: update to 3.8.1 2025-05-02 19:15:42 +02:00
libtool libtool: update to 2.4.7 2022-07-10 19:07:47 +02:00
libtraceevent libtraceevent: update to 1.8.4 2025-03-25 20:26:45 +01:00
libtracefs libtracefs: update to 1.8.2 2025-05-13 16:48:49 +02:00
libubox libubox: update to Git HEAD (2025-10-04) 2025-10-04 12:09:32 +02:00
libunistring libunistring: update to 1.2 2024-08-07 18:05:32 +02:00
libunwind libunwind: enable it to all targets 2025-10-01 20:23:42 +02:00
libusb libusb: update to 1.0.27 2024-09-22 18:20:44 +02:00
libxml2 libxml2: correct PKG_LICENSE_FILES 2025-09-11 22:06:26 +02:00
mbedtls mbedtls: update to 3.6.5 2025-10-18 01:27:52 +02:00
mpfr mpfr: import from packages feed 2024-01-04 22:40:05 +01:00
musl-fts musl-fts: remove shared libraries from host 2022-03-27 14:38:13 +02:00
ncurses Revert "ncurses: update to 6.5" 2025-07-09 11:51:01 +02:00
nettle nettle: Fix PKG_LICENSE_FILES 2025-07-12 23:28:03 +02:00
openssl openssl: update to 3.5.4 2025-10-04 16:22:43 +02:00
pcre2 pcre2: bump to 10.46 2025-08-31 12:23:24 +02:00
popt treewide: Add extra CPE identifier 2023-09-25 23:06:33 +02:00
readline readline: update to 8.3 2025-07-07 15:43:07 +02:00
sysfsutils treewide: Add extra CPE identifier 2023-09-25 23:06:33 +02:00
toolchain toolchain: bump PKG_RELEASE 2025-07-19 18:54:05 +02:00
uclient uclient: update to Git HEAD (2025-10-03) 2025-10-04 00:00:52 +02:00
udebug udebug: update to Git HEAD (2025-09-28) 2025-10-04 00:00:52 +02:00
ustream-ssl ustream-ssl: update to Git HEAD (2025-10-03) 2025-10-04 00:00:52 +02:00
wolfssl wolfssl: Update to version 5.7.6 2025-01-27 23:28:05 +01:00
xcrypt xcrypt: work-around broken use of VARIANT with BUILDONLY 2025-07-09 10:34:12 +02:00
zlib zlib: switch to git source 2025-02-24 12:44:02 +01:00