From: Veronika H. <vha...@re...> - 2024-03-06 12:41:52
|
Hello all, We are happy to announce the latest release of OpenSC 0.25.0. You can find the full summary of changes, release tarballs, and binaries on Github: https://github.com/OpenSC/OpenSC/releases/tag/0.25.0 The notable changes include removing the time side-channel leakage related to RSA PKCS#1 v1.5 padding removal after decryption and new configuration option for disabling PKCS#1 v1.5 depadding on the card. We also implemented a fix for a potential memory security issue in the AuthentIC driver discovered by OSS-Fuzz, added support for RSA D-Trust signature cards, and removed support for some old card drivers. For the full changelog, please refer to the NEWS file: https://github.com/OpenSC/OpenSC/blob/master/NEWS The Windows binaries contain signed installers provided by Signpath.io. The macOS installer is signed by Tim Wilbrink, as in previous releases. You can find SHA-256 hashes of the release artifacts below (calculated with `openssl sha256 $file`): OpenSC-0.25.0.dmg 5417186cf88a50931b6186f2c3ade95525b683e55b418eae9d56d728c76d2e51 OpenSC-0.25.0_win32-Debug.zip 533368751a484c308fab41c794cf192d21506e824245b7729f92097c039902bb OpenSC-0.25.0_win32-Light-Debug.zip 01012f075e97898d29f8d2ffe11656dc523be7e1f9f26ebdb8bfe0777f69dea6 OpenSC-0.25.0_win32-Light.msi 4a3fff1ece26d04032b2a16fc697c365705d820bbdfbfb0faf8e6e58f77c7844 OpenSC-0.25.0_win32.msi e6542c5f56f0bedef9ab71dc0f9af0ae68d1b11b73762a9478040497ab61fae6 OpenSC-0.25.0_win64-Debug.zip 5b227438c3fb89bc57a986b240cef440809a79de2f05adcd36e295404d1117be OpenSC-0.25.0_win64-Light-Debug.zip 989a7e03aa6a2f9b874c1b8a12868901b7ea8ad0cec2b3fd4a581a3b5cb0f010 OpenSC-0.25.0_win64-Light.msi a757e3bb75d8a71279f80219a1b8fe88116d012f17d115251e91e63f7e1d0d31 OpenSC-0.25.0_win64.msi 2461ed78953e0e08cfef0cc88d6aaf01a2a5c0cf8e9b3d807a8e30e63c2c7fd7 opensc-0.25.0.tar.gz e6d7b66e2a508a377ac9d67aa463025d3c54277227be10bd08872e3407d6622f Regards, Veronika Hanulíková and the OpenSC team |