[ubuntu/noble-proposed] openssl 3.0.13-0ubuntu2 (Accepted)

Adrien Nader adrien.nader at canonical.com
Mon Mar 18 09:53:12 UTC 2024


openssl (3.0.13-0ubuntu2) noble; urgency=medium

  [ Tobias Heider ]
  * Add fips-mode detection and adjust defaults when running in fips mode
    (LP: #2056593):
    - d/p/fips/crypto-Add-kernel-FIPS-mode-detection.patch:
      Detect if kernel fips mode is enabled
    - d/p/fips/crypto-Automatically-use-the-FIPS-provider-when-the-kerne.patch:
      Load FIPS provider if running in FIPS mode
    - d/p/fips/apps-speed-Omit-unavailable-algorithms-in-FIPS-mode.patch:
      Limit openssl-speed to FIPS compliant algorithms when running in FIPS mode
    - d/p/fips/apps-pass-propquery-arg-to-the-libctx-DRBG-fetches.patch
      Make sure DRBG respects query properties
    - d/p/fips/test-Ensure-encoding-runs-with-the-correct-context-during.patch:
      Make sure encoding runs with correct library context and provider

  [ Adrien Nader ]
  * Re-enable intel/0002-AES-GCM-enabled-with-AVX512-vAES-and-vPCLMULQDQ.patch
    (LP: #2030784)
    Thanks Bun K Tan and Dan Zimmerman
  * Disable LTO with which the codebase is generally incompatible (LP: #2058017)

Date: Fri, 15 Mar 2024 09:46:33 +0100
Changed-By: Adrien Nader <adrien.nader at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Simon Chopin <simon.chopin at canonical.com>
https://launchpad.net/ubuntu/+source/openssl/3.0.13-0ubuntu2
-------------- next part --------------
Format: 1.8
Date: Fri, 15 Mar 2024 09:46:33 +0100
Source: openssl
Built-For-Profiles: noudeb
Architecture: source
Version: 3.0.13-0ubuntu2
Distribution: noble
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Adrien Nader <adrien.nader at canonical.com>
Launchpad-Bugs-Fixed: 2030784 2056593 2058017
Changes:
 openssl (3.0.13-0ubuntu2) noble; urgency=medium
 .
   [ Tobias Heider ]
   * Add fips-mode detection and adjust defaults when running in fips mode
     (LP: #2056593):
     - d/p/fips/crypto-Add-kernel-FIPS-mode-detection.patch:
       Detect if kernel fips mode is enabled
     - d/p/fips/crypto-Automatically-use-the-FIPS-provider-when-the-kerne.patch:
       Load FIPS provider if running in FIPS mode
     - d/p/fips/apps-speed-Omit-unavailable-algorithms-in-FIPS-mode.patch:
       Limit openssl-speed to FIPS compliant algorithms when running in FIPS mode
     - d/p/fips/apps-pass-propquery-arg-to-the-libctx-DRBG-fetches.patch
       Make sure DRBG respects query properties
     - d/p/fips/test-Ensure-encoding-runs-with-the-correct-context-during.patch:
       Make sure encoding runs with correct library context and provider
 .
   [ Adrien Nader ]
   * Re-enable intel/0002-AES-GCM-enabled-with-AVX512-vAES-and-vPCLMULQDQ.patch
     (LP: #2030784)
     Thanks Bun K Tan and Dan Zimmerman
   * Disable LTO with which the codebase is generally incompatible (LP: #2058017)
Checksums-Sha1:
 e1c4501eb5185a7386eb149f307908ea694486bc 2330 openssl_3.0.13-0ubuntu2.dsc
 18b985dcd3fc0bab54cc4bfc10fa9a80ce9e345d 15294843 openssl_3.0.13.orig.tar.gz
 b1161f5c001920a7a9163aabeee2431a433c72bb 127124 openssl_3.0.13-0ubuntu2.debian.tar.xz
 d24039ca8b6bd7f2ca361415a1dd48a35f641495 8086 openssl_3.0.13-0ubuntu2_source.buildinfo
Checksums-Sha256:
 7c4f23199435ef1e2de3851f9ea2b6e1fc131d6b9234cfe6c811049360749010 2330 openssl_3.0.13-0ubuntu2.dsc
 88525753f79d3bec27d2fa7c66aa0b92b3aa9498dafd93d7cfa4b3780cdae313 15294843 openssl_3.0.13.orig.tar.gz
 d9b7c270603d39812834c79666e507a62b36e50ed0befe5a5d643fbecb74646c 127124 openssl_3.0.13-0ubuntu2.debian.tar.xz
 49406f04cd94770e52d460d742e82eae22e4b313d6f81a7c475b1bea155adefa 8086 openssl_3.0.13-0ubuntu2_source.buildinfo
Files:
 408f9ea90b5500e35cb6a29518aa6d4d 2330 utils optional openssl_3.0.13-0ubuntu2.dsc
 c15e53a62711002901d3515ac8b30b86 15294843 utils optional openssl_3.0.13.orig.tar.gz
 6aa7b8b5707777cf25305bd2fae44d01 127124 utils optional openssl_3.0.13-0ubuntu2.debian.tar.xz
 17410bcfd03879c1f594b7c46e8ea1d0 8086 utils optional openssl_3.0.13-0ubuntu2_source.buildinfo
Original-Maintainer: Debian OpenSSL Team <pkg-openssl-devel at alioth-lists.debian.net>
Vcs-Git: https://git.launchpad.net/~schopin/ubuntu/+source/openssl
Vcs-Git-Commit: a2a5d54c1db408a105144425cc6e0349e0c0ab27
Vcs-Git-Ref: refs/heads/fips-avx512-and-lto


More information about the noble-changes mailing list