Opened 8 months ago

Closed 8 months ago

Last modified 8 months ago

#22719 closed enhancement (fixed)

libgcrypt-1.12.0

Reported by: Bruce Dubbs Owned by: Joe Locash
Priority: normal Milestone: 13.0
Component: BOOK Version: git
Severity: medium Keywords:
Cc:

Description

New minor version.

Change History (3)

comment:1 by Joe Locash, 8 months ago

Owner: changed from blfs-book to Joe Locash
Status: new → assigned

comment:2 by Joe Locash, 8 months ago

Resolution: → fixed
Status: assigned → closed
Noteworthy changes in version 1.12.0 (2026-01-29)
-------------------------------------------------

 * New and extended interfaces:

   - Allow access to the FIPS service indicator via the new
     GCRYCTL_FIPS_SERVICE_INDICATOR control code.
     [T7338,rCd0db6a5abf,rCf51f4e9893]

   - Add GCRYCTL_FIPS_REJECT_NON_FIPS control code.  [T7338,rCe52adf0948]

   - Add GCRY_FIPS_FLAG_REJECT_PK_FLAGS constant.  [T7338,rC0414e126b9]

   - Make SHA-1 non-FIPS internally for the 1.12 API.  This introduces
     the GCRY_FIPS_FLAG_REJECT_MD_SHA1 constant.  [rC4ee91a94bc]

   - Add GCRY_FIPS_FLAG_REJECT_PK_FLAGS.  [rC0414e126b9]

   - Provide macros for each KEM enum constant.  [rCe9b1c3ec91]

   - Add Dilithium (ML-DSA) support.  [T7640]

   - Support optional random-override and support byte string data.
     [rCcbefff5fca,rC3bb4a54f43]

 * Performance:

   - Add VAES/AVX512 accelerated implementation for AES which boosts
     OCB performance by about 2 times on AMD Zen5.  [rC9e3af928ee]

   - Avoid AVX512/AVX2/SSSE3 for single block processing with Zen5 for
     ChaCha20.  [rCc1d9fff3b2]

   - Avoid AVX/AVX2/AVX512 when CPU has high vector inst latency like
     Zen5 for Blake2.  [rCe5bc3b2826]

   - Various optimizations for Camellia.
     [rCf5848080d4,rCb9bafd6c6c,rC8b538a8c76]

   - Add POLYVAL acceleration for RISC-V and GCM-SIV.  [rC00815c4207]

   - Add RISC-V Zbb+Zbc implementation of CRC.  [rCab4fa2a19c]

   - Add RISC-V vector cryptography implementation of GHASH.
     [rCcc2a4b6388]

   - Add RISC-V vector cryptography implementation of AES.
     [rCb000ab6025]

   - Add RISC-V vector cryptography implementations of SHA256 and
     SHA512.  [rCcc1d5b0b5e]

   - Add AVX2 and AVX512 code paths to improve CRC.  [rCc30788969d]

 * Bug fixes:

   - Use secure MPI in _gcry_mpi_assign_limb_space.  [rC6e77b09cff]

   - Use CSIDL_COMMON_APPDATA instead of /etc on Windows.  [rCd5e3cbfd88]

   - Apply a Kyber patch from upstream.  [rCbdc3724d72]

   - Fix an edge case in Jent initialization.  [rC0ceca9993f]

   - mceliece6688128f: Fix stack overflow crash on win64/wine
     [rC5bd9320171]

 * Other:

  - Add support for IBM z/OS, fixing -lpthread check with glibc.
    [rC5af59d8454]

  - Introduce mpi_tfr and use it for point_tfr to decrease EM signal
    and increase EM noise.  [rC4e65996bb8]

  - Handle HAVE_BROKEN_MLOCK for the case of building with ASAN.
    [T7889]

  - Harden mask generation against branch optimization for several
    algorithms.  [e.g. rC4012e9a037,rCbf7546c502,rC052b03fb0c]

  - Improve constant-time operation for ECDSA.  [T7519,rC0bd4c77be6]

Fixed at aae3f8429b.

comment:3 by Bruce Dubbs, 8 months ago

Milestone: 12.5 → 13.0

Milestone renamed

Note: See TracTickets for help on using tickets.