You can subscribe to this list here.
| 2013 |
Jan
(18) |
Feb
(20) |
Mar
(15) |
Apr
(5) |
May
(7) |
Jun
(3) |
Jul
(4) |
Aug
(20) |
Sep
(10) |
Oct
(12) |
Nov
(12) |
Dec
(7) |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 2014 |
Jan
(12) |
Feb
(8) |
Mar
(3) |
Apr
(7) |
May
(12) |
Jun
(19) |
Jul
(1) |
Aug
(5) |
Sep
(9) |
Oct
(11) |
Nov
(13) |
Dec
(20) |
| 2015 |
Jan
(12) |
Feb
(25) |
Mar
(33) |
Apr
(37) |
May
(36) |
Jun
(2) |
Jul
(18) |
Aug
(31) |
Sep
(98) |
Oct
(50) |
Nov
(25) |
Dec
(34) |
| 2016 |
Jan
(95) |
Feb
(35) |
Mar
(78) |
Apr
(12) |
May
(11) |
Jun
(20) |
Jul
(28) |
Aug
(21) |
Sep
(30) |
Oct
(29) |
Nov
(15) |
Dec
(15) |
| 2017 |
Jan
(29) |
Feb
(17) |
Mar
(34) |
Apr
(28) |
May
(12) |
Jun
(25) |
Jul
(39) |
Aug
(14) |
Sep
(12) |
Oct
(38) |
Nov
(28) |
Dec
(6) |
| 2018 |
Jan
(15) |
Feb
(22) |
Mar
(27) |
Apr
(71) |
May
(78) |
Jun
(47) |
Jul
(24) |
Aug
(63) |
Sep
(43) |
Oct
(34) |
Nov
(27) |
Dec
(18) |
| 2019 |
Jan
(51) |
Feb
(17) |
Mar
(48) |
Apr
(46) |
May
(25) |
Jun
(9) |
Jul
(14) |
Aug
(46) |
Sep
(18) |
Oct
(25) |
Nov
(26) |
Dec
(25) |
| 2020 |
Jan
(28) |
Feb
(30) |
Mar
(20) |
Apr
(69) |
May
(40) |
Jun
(16) |
Jul
(13) |
Aug
(9) |
Sep
(17) |
Oct
(40) |
Nov
(55) |
Dec
(6) |
| 2021 |
Jan
(44) |
Feb
(13) |
Mar
(33) |
Apr
(31) |
May
(32) |
Jun
(10) |
Jul
(9) |
Aug
(27) |
Sep
(33) |
Oct
(7) |
Nov
(14) |
Dec
(17) |
| 2022 |
Jan
(25) |
Feb
(11) |
Mar
(42) |
Apr
(14) |
May
(18) |
Jun
(3) |
Jul
(10) |
Aug
(41) |
Sep
(12) |
Oct
(13) |
Nov
(18) |
Dec
(9) |
| 2023 |
Jan
(10) |
Feb
(18) |
Mar
(25) |
Apr
(27) |
May
(16) |
Jun
(26) |
Jul
(9) |
Aug
(29) |
Sep
(17) |
Oct
(24) |
Nov
(18) |
Dec
(16) |
| 2024 |
Jan
(23) |
Feb
(55) |
Mar
(40) |
Apr
(17) |
May
(15) |
Jun
(12) |
Jul
(12) |
Aug
(6) |
Sep
(15) |
Oct
(16) |
Nov
(29) |
Dec
(26) |
| 2025 |
Jan
(29) |
Feb
(37) |
Mar
(24) |
Apr
(35) |
May
(38) |
Jun
(20) |
Jul
(7) |
Aug
(13) |
Sep
(4) |
Oct
(9) |
Nov
(30) |
Dec
(7) |
| 2026 |
Jan
(41) |
Feb
(23) |
Mar
(34) |
Apr
(46) |
May
|
Jun
|
Jul
|
Aug
|
Sep
|
Oct
|
Nov
|
Dec
|
|
From: Małgorzata O. <no...@gi...> - 2026-04-23 10:36:21
|
Branch: refs/heads/master Home: https://github.com/OpenSC/libp11 Commit: 078b7ee79544eea2c3f6a5aeb84150a278827115 https://github.com/OpenSC/libp11/commit/078b7ee79544eea2c3f6a5aeb84150a278827115 Author: olszomal <Mal...@st...> Date: 2026-04-23 (Thu, 23 Apr 2026) Changed paths: M .github/workflows/ci.yml M .github/workflows/ci.yml.in Log Message: ----------- CI: add OpenSSL 4 support (cached build on Ubuntu and Homebrew on macOS) To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/libp11/settings/notifications |
|
From: Shawn C <no...@gi...> - 2026-04-23 07:59:50
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: a060894610945a4c297b04122b94c51fb224bcc3 https://github.com/OpenSC/OpenSC/commit/a060894610945a4c297b04122b94c51fb224bcc3 Author: Shawn C <ci...@ha...> Date: 2026-04-23 (Thu, 23 Apr 2026) Changed paths: M src/pkcs11/mechanism.c Log Message: ----------- Add a NULL check at the entry of `sc_pkcs11_find_mechanism`. This ensures that callers who pass `slot->p11card` (which may be NULL if no card is present in the slot) do not trigger a crash. Signed-off-by: Shawn C <ci...@ha...> To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-23 07:53:17
|
Branch: refs/heads/dependabot/github_actions/actions/download-artifact-8 Home: https://github.com/OpenSC/OpenSC To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-23 07:53:06
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: 6c101a4cb4ade7be74a618b47bb2b5d7558e60f1 https://github.com/OpenSC/OpenSC/commit/6c101a4cb4ade7be74a618b47bb2b5d7558e60f1 Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Date: 2026-04-23 (Thu, 23 Apr 2026) Changed paths: M .github/workflows/linux.yml M .github/workflows/macos.yml Log Message: ----------- build(deps): bump actions/download-artifact from 7 to 8 Bumps [actions/download-artifact](https://github.com/actions/download-artifact) from 7 to 8. - [Release notes](https://github.com/actions/download-artifact/releases) - [Commits](https://github.com/actions/download-artifact/compare/v7...v8) --- updated-dependencies: - dependency-name: actions/download-artifact dependency-version: '8' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <su...@gi...> To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: Frank M. <no...@gi...> - 2026-04-22 15:27:38
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: 09c15aaddfb3d0a0bcd92a325325372e5bdd4ea7 https://github.com/OpenSC/OpenSC/commit/09c15aaddfb3d0a0bcd92a325325372e5bdd4ea7 Author: Frank Morgner <fra...@gm...> Date: 2026-04-22 (Wed, 22 Apr 2026) Changed paths: R .appveyor.yml M README.md Log Message: ----------- CI: removed AppVeyor provider AppVeyor is flaky and slower than GH actions, unfortunately. All functionality is now also available via the Windows CI run in GH actions. To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-22 15:10:35
|
Branch: refs/heads/dependabot/github_actions/actions/upload-artifact-7 Home: https://github.com/OpenSC/OpenSC To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-22 15:10:19
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: adc68845963976584ae517fffb8b1396e533ba85 https://github.com/OpenSC/OpenSC/commit/adc68845963976584ae517fffb8b1396e533ba85 Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Date: 2026-04-22 (Wed, 22 Apr 2026) Changed paths: M .github/workflows/centos.yml M .github/workflows/cifuzz.yml M .github/workflows/codeql.yml M .github/workflows/fedora.yml M .github/workflows/linux-strict.yml M .github/workflows/linux.yml M .github/workflows/macos.yml M .github/workflows/windows.yml Log Message: ----------- build(deps): bump actions/upload-artifact from 6 to 7 Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 6 to 7. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](https://github.com/actions/upload-artifact/compare/v6...v7) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <su...@gi...> To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-22 15:09:51
|
Branch: refs/heads/dependabot/github_actions/actions/setup-java-5 Home: https://github.com/OpenSC/OpenSC To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-22 15:09:39
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: de11c271f30b81cfe86f1510f5f0ec4914cc2cea https://github.com/OpenSC/OpenSC/commit/de11c271f30b81cfe86f1510f5f0ec4914cc2cea Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Date: 2026-04-22 (Wed, 22 Apr 2026) Changed paths: M .github/workflows/linux.yml Log Message: ----------- build(deps): bump actions/setup-java from 4 to 5 Bumps [actions/setup-java](https://github.com/actions/setup-java) from 4 to 5. - [Release notes](https://github.com/actions/setup-java/releases) - [Commits](https://github.com/actions/setup-java/compare/v4...v5) --- updated-dependencies: - dependency-name: actions/setup-java dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <su...@gi...> To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: Jakub J. <no...@gi...> - 2026-04-22 09:51:57
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: ed8575062d6093290087061cdf7d5b1e5b4e606a https://github.com/OpenSC/OpenSC/commit/ed8575062d6093290087061cdf7d5b1e5b4e606a Author: Jakub Jelen <jj...@re...> Date: 2026-04-22 (Wed, 22 Apr 2026) Changed paths: M src/pkcs11/mechanism.c Log Message: ----------- pkcs11: Improve logging message when registering mechanism Commit: efe2e91dfb8291fbe031357fef57195974b628cf https://github.com/OpenSC/OpenSC/commit/efe2e91dfb8291fbe031357fef57195974b628cf Author: Jakub Jelen <jj...@re...> Date: 2026-04-22 (Wed, 22 Apr 2026) Changed paths: M src/pkcs11/openssl.c Log Message: ----------- Revert "Do not register SHA1-based mechanisms in FIPS mode" This reverts commit 91e61b9a7667ce0bf62e4b0e872e39a34295eb89. Not registering SHA1 in the OpenSSL module fails later on when registering hash + sign mechanisms, leading to unexpected issues. Alternative solution was to not register the compound mechanisms, but reverting this change looks cleaner. When we will really have FIPS provider without SHA1, it can be resurrected. Compare: https://github.com/OpenSC/OpenSC/compare/95ae550858fc...efe2e91dfb82 To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: Michael L. <no...@gi...> - 2026-04-22 07:09:27
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: 95ae550858fc0a808e4f6d6d3c6007cc9f15cc11 https://github.com/OpenSC/OpenSC/commit/95ae550858fc0a808e4f6d6d3c6007cc9f15cc11 Author: Michael Litvine <130...@us...> Date: 2026-04-22 (Wed, 22 Apr 2026) Changed paths: M src/libopensc/pkcs15-gemsafeV1.c M src/libopensc/pkcs15-pubkey.c M src/pkcs15init/pkcs15-lib.c M src/pkcs15init/pkcs15-myeid.c M src/pkcs15init/pkcs15-setcos.c Log Message: ----------- Added missing null checks after dynamic memory allocation (#3664) --------- Co-authored-by: Litvine <mli...@tu...> To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: Małgorzata O. <no...@gi...> - 2026-04-21 13:44:37
|
Branch: refs/heads/master Home: https://github.com/OpenSC/libp11 Commit: 75ffcd4c9bca2a324cf40874d4403fc00832d604 https://github.com/OpenSC/libp11/commit/75ffcd4c9bca2a324cf40874d4403fc00832d604 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M tests/rsa-oaep-prov.c Log Message: ----------- rsa-oaep-prov test: improve error handling and length validation Commit: 78076c9ad7cb7afaa7222fcb7ea4b570b582bc21 https://github.com/OpenSC/libp11/commit/78076c9ad7cb7afaa7222fcb7ea4b570b582bc21 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M src/Makefile.am M src/Makefile.mak M src/libp11-int.h M src/libp11.exports M src/libp11.h M src/p11_front.c M src/p11_key.c M src/p11_pkey.c M src/provider.c A src/provider_helpers.c A src/provider_helpers.h A tests/ed25519-check-privkey.softhsm A tests/ed448-check-privkey.softhsm Log Message: ----------- Add KEYMGMT, SIGNATURE and ASYM_CIPHER for PKCS#11 provider Commit: 08378e0d4d4847d08ee8d03ea74c4a6b8079d9e6 https://github.com/OpenSC/libp11/commit/08378e0d4d4847d08ee8d03ea74c4a6b8079d9e6 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M src/eng_back.c M src/libp11-int.h M src/libp11.exports M src/libp11.h M src/p11_eddsa.c M src/p11_front.c M src/p11_load.c M src/p11_rsa.c M src/provider_helpers.c M src/util.h M src/util_uri.c Log Message: ----------- Disable custom EVP_PKEY methods in provider mode Commit: 31dfc11299661a9cd8d3eb86fbfe3849b93161b1 https://github.com/OpenSC/libp11/commit/31dfc11299661a9cd8d3eb86fbfe3849b93161b1 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M src/p11_eddsa.c Log Message: ----------- Use ASN1_STRING API instead of direct struct access Commit: c427c55761df5888913d8a428fb53a129a50ea89 https://github.com/OpenSC/libp11/commit/c427c55761df5888913d8a428fb53a129a50ea89 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M tests/check-all-prov.c M tests/check-privkey-prov.c M tests/dup-key-prov.c M tests/ed25519-keygen-prov.c M tests/ed448-keygen-prov.c M tests/evp-sign-prov.c M tests/fork-change-slot-prov.c M tests/helpers_prov.c M tests/helpers_prov.h M tests/provider-pkcs11-uri-without-token.softhsm M tests/rsa-oaep-prov.c M tests/rsa-pss-sign-prov.c Log Message: ----------- tests: use optional propquery for pkcs11prov to allow fallback to default provider Commit: f07b63a933161c1fc5b81e2dafec5eccbd4aaad2 https://github.com/OpenSC/libp11/commit/f07b63a933161c1fc5b81e2dafec5eccbd4aaad2 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M src/libp11-int.h M src/p11_key.c M src/p11_load.c M src/p11_rsa.c Log Message: ----------- correct PKCS11_OBJECT_private reference handling Commit: 786116130771d7e50416c49b0ca84ecf43656ff4 https://github.com/OpenSC/libp11/commit/786116130771d7e50416c49b0ca84ecf43656ff4 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M src/p11_key.c Log Message: ----------- Replace EVP_PKEY_up_ref() with EVP_PKEY_dup() for EdDSA keys. Using up_ref() shared the same EVP_PKEY instance and unnecessarily increased the reference count of the underlying engine-backed key, leading to incorrect lifetime management. Commit: d982f0f9bf7e77217e1d0173117739cef66c920e https://github.com/OpenSC/libp11/commit/d982f0f9bf7e77217e1d0173117739cef66c920e Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M tests/rsa-testlistkeys_ext.softhsm Log Message: ----------- tests: fix listkeys_ext invocation in rsa-testlistkeys_ext.softhsm Commit: cac3ebd80a292358baf92e018a66cf80af943962 https://github.com/OpenSC/libp11/commit/cac3ebd80a292358baf92e018a66cf80af943962 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M tests/ed25519-keygen-prov.c M tests/ed448-keygen-prov.c Log Message: ----------- Cleanup PKCS#11 resources in EdDSA tests Commit: 87e034d39a6340339a6a53c9f118f31e2838b035 https://github.com/OpenSC/libp11/commit/87e034d39a6340339a6a53c9f118f31e2838b035 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M tests/helpers_prov.c Log Message: ----------- tests: call OPENSSL_cleanup() during provider cleanup Commit: 55b7ad2277072c15afdda4942b61310521b8c1e7 https://github.com/OpenSC/libp11/commit/55b7ad2277072c15afdda4942b61310521b8c1e7 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M tests/pkcs11-uri-without-token.softhsm M tests/provider-pkcs11-uri-without-token.softhsm Log Message: ----------- tests: add RSA-PSS raw sign/verify tests for engine and provider Commit: 72af41db8faa0e8c04f380fdca5c4e18a5d4fd68 https://github.com/OpenSC/libp11/commit/72af41db8faa0e8c04f380fdca5c4e18a5d4fd68 Author: olszomal <Mal...@st...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M src/libp11-int.h M src/p11_eddsa.c M src/p11_front.c M src/p11_key.c M src/p11_load.c M src/p11_pkey.c M tests/check-privkey-prov.c M tests/ed25519-keygen-prov.c M tests/ed25519-keygen.c M tests/ed448-keygen-prov.c M tests/ed448-keygen.c M tests/provider-ed25519-check-privkey.softhsm Log Message: ----------- Fix EdDSA guards to use OPENSSL_NO_ECX instead of OPENSSL_NO_EC Compare: https://github.com/OpenSC/libp11/compare/ed6d2d2cfca9...72af41db8faa To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/libp11/settings/notifications |
|
From: hirashix0 <no...@gi...> - 2026-04-21 09:23:35
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: 7d5d10ef37806d408cc8871026faec7f8c069991 https://github.com/OpenSC/OpenSC/commit/7d5d10ef37806d408cc8871026faec7f8c069991 Author: hirashix0 <hir...@pr...> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M src/libopensc/card-srbeid.c Log Message: ----------- srbeid: match by ATR whitelist, drop AID fallback The old fallback selected the PKCS#15 AID (A0 00 00 00 63 50 4B 43 53 2D 31 35) whenever ATR didn't match. That is the standard PKCS#15 AID defined in ISO/IEC 7816-15, hosted by every compliant applet — which caused the false match on a Lithuanian eID reported in #3663. Replace the fallback with a 15-entry ATR whitelist covering all Serbian CardEdge deployments (citizen eID, foreigner eID, PKS Chamber of Commerce, health insurance). After ATR match, select the applet AID to confirm it's there — same pattern as card-esteid2018. Fixes #3663. To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-21 08:28:43
|
Branch: refs/heads/dependabot/github_actions/actions/upload-artifact-7 Home: https://github.com/OpenSC/OpenSC Commit: edc657ebe637e0b980b406a9737be465270fac35 https://github.com/OpenSC/OpenSC/commit/edc657ebe637e0b980b406a9737be465270fac35 Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Date: 2026-04-21 (Tue, 21 Apr 2026) Changed paths: M .github/workflows/centos.yml M .github/workflows/cifuzz.yml M .github/workflows/codeql.yml M .github/workflows/fedora.yml M .github/workflows/linux-strict.yml M .github/workflows/linux.yml M .github/workflows/macos.yml M .github/workflows/windows.yml Log Message: ----------- build(deps): bump actions/upload-artifact from 6 to 7 Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 6 to 7. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](https://github.com/actions/upload-artifact/compare/v6...v7) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <su...@gi...> To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-20 17:37:42
|
Branch: refs/heads/dependabot/github_actions/actions/cache-5 Home: https://github.com/OpenSC/OpenSC To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-20 17:37:28
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: d9cea5646972595c7658bd5c4a3cc5b32fe64c73 https://github.com/OpenSC/OpenSC/commit/d9cea5646972595c7658bd5c4a3cc5b32fe64c73 Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M .github/workflows/rpmbuild.yaml Log Message: ----------- build(deps): bump actions/cache from 4 to 5 Bumps [actions/cache](https://github.com/actions/cache) from 4 to 5. - [Release notes](https://github.com/actions/cache/releases) - [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md) - [Commits](https://github.com/actions/cache/compare/v4...v5) --- updated-dependencies: - dependency-name: actions/cache dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <su...@gi...> To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-20 17:36:18
|
Branch: refs/heads/dependabot/github_actions/actions/checkout-6 Home: https://github.com/OpenSC/OpenSC To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-20 17:36:06
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: ca789c786bb853224dce483087f253c93326a2f4 https://github.com/OpenSC/OpenSC/commit/ca789c786bb853224dce483087f253c93326a2f4 Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M .github/workflows/external-pkcs11.yaml Log Message: ----------- build(deps): bump actions/checkout from 4 to 6 Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 6. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](https://github.com/actions/checkout/compare/v4...v6) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <su...@gi...> To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: dependabot[bot] <no...@gi...> - 2026-04-20 17:35:32
|
Branch: refs/heads/dependabot/github_actions/actions/download-artifact-8 Home: https://github.com/OpenSC/OpenSC Commit: f20c084a3b7e68d2700e1586910a29d077429907 https://github.com/OpenSC/OpenSC/commit/f20c084a3b7e68d2700e1586910a29d077429907 Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M .github/workflows/linux.yml M .github/workflows/macos.yml Log Message: ----------- build(deps): bump actions/download-artifact from 7 to 8 Bumps [actions/download-artifact](https://github.com/actions/download-artifact) from 7 to 8. - [Release notes](https://github.com/actions/download-artifact/releases) - [Commits](https://github.com/actions/download-artifact/compare/v7...v8) --- updated-dependencies: - dependency-name: actions/download-artifact dependency-version: '8' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <su...@gi...> To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: Jakub J. <no...@gi...> - 2026-04-20 17:30:56
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: a5f0dde0282201fd287bb645d79e90f42f3cc040 https://github.com/OpenSC/OpenSC/commit/a5f0dde0282201fd287bb645d79e90f42f3cc040 Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-coolkey.c Log Message: ----------- coolkey: Avoid reading uninitialized memory from response buffer Reported by Alex Kelchin (@Medoedus) Commit: ef53bbee1d29c616eea4dc52004951ef5d17d4b9 https://github.com/OpenSC/OpenSC/commit/ef53bbee1d29c616eea4dc52004951ef5d17d4b9 Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-coolkey.c Log Message: ----------- coolkey: Verify datalen is not too large Commit: 43a5a936eb4e6aa804a5aafbd28a09dbe15c4855 https://github.com/OpenSC/OpenSC/commit/43a5a936eb4e6aa804a5aafbd28a09dbe15c4855 Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/pkcs15-tccardos.c Log Message: ----------- sccardos: Avoid integer overflow and buffer overrun during cardinfo parsing Reported by @qp-x-qp Fixes: https://github.com/OpenSC/OpenSC/security/advisories/GHSA-mr9x-jw5q-hr3w Signed-off-by: Jakub Jelen <jj...@re...> Commit: 46c26ef3ffc24e6491e66eca644e26d31555e24b https://github.com/OpenSC/OpenSC/commit/46c26ef3ffc24e6491e66eca644e26d31555e24b Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M .github/workflows/windows.yml M bootstrap.ci Log Message: ----------- build: Use delimiter character less likely appearing in branch name Commit: 6c5dde6577f6fd441bf0d4ecd3a40e889a374f99 https://github.com/OpenSC/OpenSC/commit/6c5dde6577f6fd441bf0d4ecd3a40e889a374f99 Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-entersafe.c Log Message: ----------- entersafe: Avoid write buffer overrun on long input Signed-off-by: Jakub Jelen <jj...@re...> Commit: 8ceb8ae8bc50362658b5a14ac3a7d667f751e6ff https://github.com/OpenSC/OpenSC/commit/8ceb8ae8bc50362658b5a14ac3a7d667f751e6ff Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-entersafe.c Log Message: ----------- entersafe: Check bounds when encoding RSA keys Signed-off-by: Jakub Jelen <jj...@re...> Commit: fc3a8eee37ca5df4fb9eafa25bbf9cd9b432c58f https://github.com/OpenSC/OpenSC/commit/fc3a8eee37ca5df4fb9eafa25bbf9cd9b432c58f Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-entersafe.c Log Message: ----------- entersafe: Avoid buffer overrun while copying MAC Signed-off-by: Jakub Jelen <jj...@re...> Commit: ed4e53c5839abdddc8db8adfe45178b80eccad2a https://github.com/OpenSC/OpenSC/commit/ed4e53c5839abdddc8db8adfe45178b80eccad2a Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-authentic.c Log Message: ----------- authentic: Avoid pointer leaving the scope of a block Defining the pin_buff in the block and assigning the pointer to the buffer to apdu leaves dangling pointer and causes likely unexpected behavior. Signed-off-by: Jakub Jelen <jj...@re...> Commit: 4d81d00b9c84d87e665024422c88d1f08d811054 https://github.com/OpenSC/OpenSC/commit/4d81d00b9c84d87e665024422c88d1f08d811054 Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-authentic.c Log Message: ----------- authetnic: Avoid buffer overrun for long PIN Signed-off-by: Jakub Jelen <jj...@re...> Commit: d6d62c63572a79868ccc42f17198f88cdc4d61e1 https://github.com/OpenSC/OpenSC/commit/d6d62c63572a79868ccc42f17198f88cdc4d61e1 Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-entersafe.c Log Message: ----------- entersafe: Avoid buffer overrun with too long PINs Reported by Alex Kelchin (Medoedus) Signed-off-by: Jakub Jelen <jj...@re...> Commit: 97c514e86d6da9e11a4b405f7e4d7f1babdca26f https://github.com/OpenSC/OpenSC/commit/97c514e86d6da9e11a4b405f7e4d7f1babdca26f Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-authentic.c Log Message: ----------- authentic: Avoid unsigned integer underflow Reported by Alex Kelchin (Medoedus) Signed-off-by: Jakub Jelen <jj...@re...> Commit: 2dcfa4ac92c4f8be8ec59d03751595f8fddc9aac https://github.com/OpenSC/OpenSC/commit/2dcfa4ac92c4f8be8ec59d03751595f8fddc9aac Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-authentic.c Log Message: ----------- authentic: Avoid buffer overrun when accessing pins_sha1 Reported by Alex Kelchin (Medoedus) Signed-off-by: Jakub Jelen <jj...@re...> Commit: 14f81d3728b8ee98b1c57aecd8d02dce19b2dfd0 https://github.com/OpenSC/OpenSC/commit/14f81d3728b8ee98b1c57aecd8d02dce19b2dfd0 Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-authentic.c Log Message: ----------- authentic: Avoid buffer overrun when constructing PIN change buffer Reported by Alex Kelchin (Medoedus) Signed-off-by: Jakub Jelen <jj...@re...> Commit: 64b760cc620707ae1380500388cc2bc9329b8c69 https://github.com/OpenSC/OpenSC/commit/64b760cc620707ae1380500388cc2bc9329b8c69 Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-coolkey.c Log Message: ----------- coolkey: Check ECC input length bounds Reported by Alex Kelchin (Medoedus) Signed-off-by: Jakub Jelen <jj...@re...> Commit: fc7afff8ff1f7f249bb2532d46ffcee088e9483e https://github.com/OpenSC/OpenSC/commit/fc7afff8ff1f7f249bb2532d46ffcee088e9483e Author: Jakub Jelen <jj...@re...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/card-gids.c Log Message: ----------- gids: Avoid heap buffer over-read Reported by Alex Kelchin (Medoedus) Signed-off-by: Jakub Jelen <jj...@re...> Compare: https://github.com/OpenSC/OpenSC/compare/c1b5267e8861...fc7afff8ff1f To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: hirashix0 <no...@gi...> - 2026-04-20 09:14:47
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: c1b5267e886177517df0a12c004ff2c3fb720086 https://github.com/OpenSC/OpenSC/commit/c1b5267e886177517df0a12c004ff2c3fb720086 Author: hirashix0 <hir...@pr...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/pkcs15-srbeid.c Log Message: ----------- srbeid: bound CardEdge dir entry count before allocation The entry count is read from card data and used as a calloc() size, which Coverity (CID 503167) flagged as a tainted allocation. Validate count against the available buffer length before allocating; this makes the per-iteration offset check in the parse loop redundant. To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: Doug E. <no...@gi...> - 2026-04-20 08:55:02
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: 8ad96adc5fea0cef923a2a679600f3a5c4c5bfce https://github.com/OpenSC/OpenSC/commit/8ad96adc5fea0cef923a2a679600f3a5c4c5bfce Author: Doug Engert <dee...@gm...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M src/libopensc/cwa-dnie.c M src/pkcs11/openssl.c M src/pkcs15init/pkcs15-oberthur-awp.c M src/tests/p11test/p11test_case_common.c M src/tools/netkey-tool.c M src/tools/pkcs11-tool.c M src/tools/pkcs15-init.c Log Message: ----------- Changes for OpenSSL-4.0.0 Changes to get OpenSC to compile with OpenSSl-4.0.0 OpenSSL says: "Opaque Structures: ASN1_STRING has been made opaque, and further work has been done to make X509 structures more memory-efficient and const-correct." ASN1_STRING was made opaque thus requiring the use of ASN1_STRING_get0_data, and ASN1_STRING_length. These routines have been in OpenSSL since 1.1.1 and are also in libressl. ASN1_STRING_get0_data returns a const pointer, so the data can not be changed. There are a number of reverse() functions one of which was reversing the bytes in a EC pubkey. Changes not addressed: "Global Cleanup: libcrypto no longer uses atexit() for cleanup; OPENSSL_cleanup() now runs in a global destructor." On branch OpenSSL-4.0.0 Changes to be committed: modified: src/libopensc/cwa-dnie.c modified: src/pkcs11/openssl.c modified: src/pkcs15init/pkcs15-oberthur-awp.c modified: src/tests/p11test/p11test_case_common.c modified: src/tools/netkey-tool.c modified: src/tools/pkcs11-tool.c modified: src/tools/pkcs15-init.c To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: Frank M. <no...@gi...> - 2026-04-20 08:53:29
|
Branch: refs/heads/master Home: https://github.com/OpenSC/OpenSC Commit: 2690f6aaeba5ea54cf211e36ac54dc0513cf269b https://github.com/OpenSC/OpenSC/commit/2690f6aaeba5ea54cf211e36ac54dc0513cf269b Author: Frank Morgner <fra...@gm...> Date: 2026-04-20 (Mon, 20 Apr 2026) Changed paths: M SECURITY.md Log Message: ----------- Specify what types of bugs are expected for private reporting To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: Frank M. <no...@gi...> - 2026-04-15 13:30:48
|
Branch: refs/heads/tries_left Home: https://github.com/OpenSC/OpenSC To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |
|
From: Frank M. <no...@gi...> - 2026-04-15 13:30:42
|
Branch: refs/heads/signpath Home: https://github.com/OpenSC/OpenSC To unsubscribe from these emails, change your notification settings at https://github.com/OpenSC/OpenSC/settings/notifications |