rpm/debian: Add 0.10.2 entry in changelog

Signed-off-by: Stefan Berger <stefanb@linux.ibm.com>
This commit is contained in:
Stefan Berger 2026-01-02 10:28:04 -05:00 committed by Stefan Berger
parent fdfb621058
commit 03ff2481e1
3 changed files with 15 additions and 0 deletions

7
debian/changelog vendored
View File

@ -1,3 +1,10 @@
libtpms (0.10.2) RELEASED; urgency=high
* tpm2: Fix memory leak by freeing KDF context
* tpm2: Fix retrieval of updated IV when using OpenSSL >= 3.0 (CVE-2026-21444)
-- Stefan Berger <stefanb@linux.ibm.com> Tue, 2 Jan 2026 09:00:00 -0500
libtpms (0.10.1) RELEASED; urgency=high
* tpm2: Fix potential out-of-bound access & abort due to HMAC signing issue (CVE-2025-49133)

4
dist/libtpms.spec vendored
View File

@ -112,6 +112,10 @@ rm -f $RPM_BUILD_ROOT%{_libdir}/libtpms.la
%postun -p /sbin/ldconfig
%changelog
* Fri Jan 02 2026 Stefan Berger - 0.10.2-1
- tpm2: Fix memory leak by freeing KDF context
- tpm2: Fix retrieval of updated IV when using OpenSSL >= 3.0 (CVE-2026-21444)
* Tue Jun 10 2025 Stefan Berger - 0.10.1-1
- tpm2: Fix potential out-of-bound access & abort due to HMAC signing issue (CVE-2025-49133)
- tpm2: fix build for LibreSSL 4.1.0

View File

@ -112,6 +112,10 @@ rm -f $RPM_BUILD_ROOT%{_libdir}/libtpms.la
%postun -p /sbin/ldconfig
%changelog
* Fri Jan 02 2026 Stefan Berger - 0.10.2-1
- tpm2: Fix memory leak by freeing KDF context
- tpm2: Fix retrieval of updated IV when using OpenSSL >= 3.0 (CVE-2026-21444)
* Tue Jun 10 2025 Stefan Berger - 0.10.1-1
- tpm2: Fix potential out-of-bound access & abort due to HMAC signing issue (CVE-2025-49133)
- tpm2: fix build for LibreSSL 4.1.0