Skip to content

Releases: aws/aws-lc

AWS-LC FIPS-NETOS v1.29.1

04 Dec 00:35
9f3de9b

Choose a tag to compare

What's Changed

Full Changelog: v1.65.1...AWS-LC-FIPS-NETOS-v1.29.1

AWS-LC FIPS v3.1.0

03 Dec 19:33
ae0cd62

Choose a tag to compare

What's Changed

  • Cherry-pick BORINGSSL_bcm_text_hash Go utility by @skmcgrail in #2221
  • Cherry-pick: Fix out-of-bound (OOB) input read in AES-XTS Decrypt in AVX-512 implementation by @nebeid in #2228
  • Cherry-pick support for CMake 4.0 to fips-2024-09-27 by @justsmth in #2277
  • Cherry-pick to fips-2024-09-27 by @skmcgrail in #2254
  • Cherrypick SSL_CTX_use_cert_and_key for Librdkafka 2.8.0 support by @smittals2 in #2292
  • [fips-2024-09-27][cherry-pick] FIPS Integrity Hash Tooling (#2296) by @skmcgrail in #2300
  • Cherry-pick: Harden bound checking tests of AES-XTS and replace SSE instructions that degraded performance for certain input lengths by @nebeid in #2319
  • [FIPS - Cherry-pick] Support allowing specific unknown critical extensions (#2377) by @justsmth in #2473
  • [cherry-pick] Add back X509_STORE_get_verify_cb and X509_STORE_set_lookup_crls_cb by @skmcgrail in #2587
  • Cherry-pick TLS transfer serialization changes to FIPS 3.x branch by @skmcgrail in #2672
  • [cherry-pick for 2024 fips] Fix RSAZABI test and enable IFMA based RSA on Windows (#1869) by @torben-hansen in #2689
  • [FIPS 2024 - CHERRY_PICK] Offer P521 for signature_algorithms in client Hello (#2572) by @justsmth in #2731
  • Add CTR-DRBG derivation function by @torben-hansen in #2863
  • Prepare FIPS 3.1.0 release by @torben-hansen in #2878

Full Changelog: AWS-LC-FIPS-3.0.0...AWS-LC-FIPS-3.1.0

v1.65.1

01 Dec 18:51
b5e2f86

Choose a tag to compare

What's Changed

Full Changelog: v1.65.0...v1.65.1

v1.65.0

19 Nov 20:54
7b62792

Choose a tag to compare

What's Changed

Full Changelog: v1.64.0...v1.65.0

v1.64.0

11 Nov 14:56
7187ab5

Choose a tag to compare

What's Changed

Full Changelog: v1.63.0...v1.64.0

v1.63.0

31 Oct 00:52
ab37578

Choose a tag to compare

What's Changed

Bug fixes

  • Fixed a bug in the AES-XTS-256 aarch64 architecture implementation. For input lengths of 17-31 bytes there was a 50% probability that an encryption operation would result in corrupted ciphertext. The resulting ciphertext would result in corrupted plaintext when performing a decrypt operation.

Full Changelog: v1.62.1...v1.63.0

v1.62.1

27 Oct 19:29
e0ee14e

Choose a tag to compare

Post release edit

  • This release contains a bug in the AES-XTS implementation on aarch64 platforms affecting input lengths of 17 to 31 bytes.

What's Changed

New Contributors

Full Changelog: v1.62.0...v1.62.1

v1.62.0

13 Oct 20:14
5a9df21

Choose a tag to compare

Post release edit

  • This release contains a bug in the AES-XTS implementation on aarch64 platforms affecting input lengths of 17 to 31 bytes.

What's Changed

New Contributors

Full Changelog: v1.61.4...v1.62.0

v1.61.4

26 Sep 20:16
8ca0b29

Choose a tag to compare

What's Changed

Full Changelog: v1.61.3...v1.61.4

v1.61.3

22 Sep 22:07
c3605ae

Choose a tag to compare

What's Changed

Full Changelog: v1.61.2...v1.61.3