swtpm 0.6.0 released

8 views
Skip to first unread message

Stefan Berger

unread,
Jun 7, 2021, 9:28:06 AM6/7/21
to swtpm-a...@googlegroups.com
Hi!

  I just released swtpm v0.6.0. It contains the following changes and
extensions:

version 0.6.0:
  - swtpm:
    - Fix --print-capabilities for 'swtpm chardev'
    - Various cleanups and fixes (coverity)
    - Addressed potential symlink attack issue (CVE-2020-28407)
  - swtpm_setup:
    - Rewritten in 'C'; needs json-glib
    - Addressed potential symlink attack issue (CVE-2020-28407)
  - swtpm_ioctl:
    - Use timeouts for communicating with swtpm (Unix socket)
  - swtpm-localca:
    - Rewritten in 'C'
  - tests:
    - Use the IBM TSS2 v1.6.0's test suite
    - Store and also restore the volatile state at every step when running
      IBM TSS2 test suite
    - Various cleanup
  - build-sys:
    - Add HARDENING_CFLAGS and _LDFLAGS to all C programs

Cheers!

   Stefan

Reply all
Reply to author
Forward
0 new messages