mirror of
https://github.com/stefanberger/libtpms
synced 2026-08-12 18:28:32 +00:00
50 lines
1.8 KiB
Plaintext
50 lines
1.8 KiB
Plaintext
CHANGES - changes for libtpms
|
|
|
|
version 0.8.0
|
|
- NOTE: Downgrade to previous versions is not possible. See below.
|
|
- Update to TPM 2 code release 159
|
|
- X509 support is enabled
|
|
- SM2 signing of ceritificates is NOT supported
|
|
- Authenticated timers are disabled
|
|
- Due to fixes in the TPM 2 prime number generation code in rev155 it is not
|
|
possible to downgrade from libtpms version 0.8.0 to some previous version.
|
|
The seeds are now associated with an age so that older seeds use the old
|
|
TPM 2 prime number generation code while newer seed use the newer code.
|
|
- Update to TPM 2 code relase 162
|
|
- ECC encryption / decryption is disabled
|
|
- Fix support for elliptic curve due to missing unmarshalling code
|
|
- Runtime filter supported elliptic curves supported by OpenSSL
|
|
- Fix output buffer parameter and size for RSA decryption that could cause
|
|
stack corruption under certain circumstances
|
|
- Set the RSA PSS salt length to the digest length rathern than max. possible
|
|
- Fixes to symmetric decrytion related to input size check,
|
|
defer padding to the user [EVP_CIPHER_CTX_set_padding(ctx, 0)] and
|
|
to always use a temporary malloc'ed buffer for decryption
|
|
|
|
version 0.7.0
|
|
- use OpenSSL crypto for AES, TDES, EC, and RSA operations when possible
|
|
|
|
version 0.6.0
|
|
- added TPM 2 support (revision 150)
|
|
|
|
- New API calls:
|
|
- TPMLIB_CancelCommand
|
|
- TPMLIB_ChooseTPMVersion
|
|
- TPMLIB_SetDebugFD
|
|
- TPMLIB_SetDebugLevel
|
|
- TPMLIB_SetDebugPrefix
|
|
- TPMLIB_SetBufferSize
|
|
- TPMLIB_ValidateState
|
|
- TPMLIB_SetState
|
|
- TPMLIB_GetState
|
|
|
|
version 0.5.1
|
|
first public release
|
|
|
|
- release 7 increased NVRAM area for being able to store more data in
|
|
the TPM's NVRAM areas, i.e., X.509 certificates
|
|
|
|
- release 9 added two more APIs:
|
|
- TPM_Free
|
|
- TPMLIB_DecodeBlob
|