<feed xmlns='http://www.w3.org/2005/Atom'>
<title>Tianocore/edk2.git/CryptoPkg/Library, branch dependabot/github_actions/actions/github-script-9</title>
<subtitle>EDK II (mirror)</subtitle>
<id>https://git.radix-linux.su/Tianocore/edk2.git/atom?h=dependabot%2Fgithub_actions%2Factions%2Fgithub-script-9</id>
<link rel='self' href='https://git.radix-linux.su/Tianocore/edk2.git/atom?h=dependabot%2Fgithub_actions%2Factions%2Fgithub-script-9'/>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/'/>
<updated>2026-04-27T02:11:29+00:00</updated>
<entry>
<title>CryptoPkg/Library/MbedTlsLib: Update mbedtls submodule to v3.6.6</title>
<updated>2026-04-27T02:11:29+00:00</updated>
<author>
<name>Richard Lyu</name>
<email>richard.lyu@suse.com</email>
</author>
<published>2026-04-23T06:54:19+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=7e9eb04d71adc622a3c5d34ebf2ca05ff25d684f'/>
<id>urn:sha1:7e9eb04d71adc622a3c5d34ebf2ca05ff25d684f</id>
<content type='text'>
Update the mbedtls submodule from v3.6.5 to v3.6.6 to mitigate
the CVEs CVE-2026-25833, CVE-2026-25834, CVE-2026-25835
CVE-2026-34874.

Signed-off-by: Richard Lyu &lt;richard.lyu@suse.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: Add digest-based RSA-PSS sign and verify APIs</title>
<updated>2026-04-07T12:26:54+00:00</updated>
<author>
<name>Baraneedharan Anbazhagan</name>
<email>anbazhagan@hp.com</email>
</author>
<published>2026-03-17T12:19:12+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=b3fdc0994db62b72a8b56ea25ffd024ab5e4e017'/>
<id>urn:sha1:b3fdc0994db62b72a8b56ea25ffd024ab5e4e017</id>
<content type='text'>
Add RsaPssSignDigest() and RsaPssVerifyDigest() to BaseCryptLib for
signing/verifying precomputed digests. Provide OpenSSL/MbedTLS/Null
implementations, expose via EDKII_CRYPTO_PROTOCOL (v24), and add PCD
controls for independent service enabling. Include unit tests.

Signed-off-by: Anbazhagan Baraneedharan &lt;anbazhagan@hp.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: BaseCryptLib: Reject empty X.509 cert when retrieving public key</title>
<updated>2026-03-10T06:33:40+00:00</updated>
<author>
<name>Kun Qin</name>
<email>kuqin@microsoft.com</email>
</author>
<published>2026-02-03T00:27:08+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=d6f41c4ff25bd277e9e67b9c9fea0172763aa367'/>
<id>urn:sha1:d6f41c4ff25bd277e9e67b9c9fea0172763aa367</id>
<content type='text'>
Explicitly reject zero-length X.509 certificate buffers when retrieving a
public key. For this invalid case, the input context pointer is set to
NULL as a defensive measure.

Signed-off-by: Kun Qin &lt;kun.qin@microsoft.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg/Library/OpensslLib: Remove GCC5 build options</title>
<updated>2026-02-26T15:30:52+00:00</updated>
<author>
<name>Mike Beaton</name>
<email>mjsbeaton@gmail.com</email>
</author>
<published>2026-01-24T17:34:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=645344ec90aa293f691d771914503d4d307528de'/>
<id>urn:sha1:645344ec90aa293f691d771914503d4d307528de</id>
<content type='text'>
Signed-off-by: Mike Beaton &lt;mjsbeaton@gmail.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: add EC algorithm for SmmCryptLib</title>
<updated>2026-02-24T13:49:35+00:00</updated>
<author>
<name>Levi Yun</name>
<email>yeoreum.yun@arm.com</email>
</author>
<published>2025-12-21T08:04:07+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=31d7cb91c16120f7932a181ffe8a7c6ab4fa13db'/>
<id>urn:sha1:31d7cb91c16120f7932a181ffe8a7c6ab4fa13db</id>
<content type='text'>
This patch prepares the build infrastructure for
the TCG TPM 2.0 implementation [0].

By default, it uses the OpenSSL EC_* APIs.
When the TCG TPM 2.0 implementation [0] is used in StandaloneMm,
EC algorithm support is required in SmmCryptLib.

Link: https://github.com/TrustedComputingGroup/TPM [0]
Signed-off-by: Yeoreum Yun &lt;yeoreum.yun@arm.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: add/modify EC interfaces for TPM TCG library</title>
<updated>2026-02-24T13:49:35+00:00</updated>
<author>
<name>Levi Yun</name>
<email>yeoreum.yun@arm.com</email>
</author>
<published>2025-12-19T18:58:16+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=d0bc8c541b450164dd168b966dbe9dd022dfe359'/>
<id>urn:sha1:d0bc8c541b450164dd168b966dbe9dd022dfe359</id>
<content type='text'>
This is prepartion patch to build TCG TPM v2.0 Reference Library[0].

TCG TPM v2.0 implementation[0] uses below additional interfaces:

  - EC_GROUP_new_curve_GFp()
  - EC_GROUP_set_generator()
  - EC_POINTs_mul()

and require EC_POINT_mul()'s n arguments
(Scalar multiplier for the generator G) but EDKII's
EcPointMul() interface always fix this value as NULL.

For TCG TPM v2.0 implementation, add new interfaces.

Link: https://github.com/TrustedComputingGroup/TPM [0]
Signed-off-by: Yeoreum Yun &lt;yeoreum.yun@arm.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: add some Bn interfaces to build TCG TPM library</title>
<updated>2026-02-24T13:49:35+00:00</updated>
<author>
<name>Levi Yun</name>
<email>yeoreum.yun@arm.com</email>
</author>
<published>2025-12-19T18:01:18+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=4cc6026cb45a344269d8ab18ee6240e48ad5247d'/>
<id>urn:sha1:4cc6026cb45a344269d8ab18ee6240e48ad5247d</id>
<content type='text'>
This is preparation patch for build TCG TPM v2.0 implementation[0].

To build TCG TPM v2.0 implementation[0],
below Bn interfaces are required:

  - BN_CTX_start() -&gt; BigNumContextStart()
  - BN_CTX_end()   -&gt; BigNumContextEnd()
  - BN_CTX_get()   -&gt; BigNumContextGet()
  - BN_mul()       -&gt; BigNumMul()
  - BN_Gcd()       -&gt; BigNumGcd()

and add BigNumDiv2() to receive remain too.

Link: https://github.com/TrustedComputingGroup/TPM[0]
Signed-off-by: Yeoreum Yun &lt;yeoreum.yun@arm.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: add CAMELLIA APIs for TCG TPM reference library</title>
<updated>2026-02-24T13:49:35+00:00</updated>
<author>
<name>Levi Yun</name>
<email>yeoreum.yun@arm.com</email>
</author>
<published>2025-12-26T20:37:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=ab021465cbd6d5c77cfe02104078fae5fb6cdc06'/>
<id>urn:sha1:ab021465cbd6d5c77cfe02104078fae5fb6cdc06</id>
<content type='text'>
This is preparation patch to build TCG TPM v2.0 implementation [0].
TCG TPM v2.0 uses below Camellia APIs:
  - Camellia_set_key()
  - Camellia_encrypt()
  - Camellia_decrypt()

To support these CAMELLIA interfaces,
add related wrapper in BaseCryptLib.

Link: https://github.com/TrustedComputingGroup/TPM [0]
Signed-off-by: Yeoreum Yun &lt;yeoreum.yun@arm.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: add AES_encrypt/AES_decrpyt for TPM reference library</title>
<updated>2026-02-24T13:49:35+00:00</updated>
<author>
<name>Levi Yun</name>
<email>yeoreum.yun@arm.com</email>
</author>
<published>2025-12-19T13:39:03+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=11d93e980c8b34e67dbcd32e45eda210cbe18969'/>
<id>urn:sha1:11d93e980c8b34e67dbcd32e45eda210cbe18969</id>
<content type='text'>
This is preparation patch to build TCG TPM v2.0 implementation [0].
TCG TPM v2.0 uses AES_encrypt()/AES_decrpyt() in openssl library to
implement its crypto operation.

For this, add wrapper for AES_encrypt()/AES_decrpyt().

Link: https://github.com/TrustedComputingGroup/TPM[0]
Signed-off-by: Yeoreum Yun &lt;yeoreum.yun@arm.com&gt;
</content>
</entry>
<entry>
<title>CryptoPkg: preparation to build TPM reference library</title>
<updated>2026-02-24T13:49:35+00:00</updated>
<author>
<name>Levi Yun</name>
<email>yeoreum.yun@arm.com</email>
</author>
<published>2025-03-12T11:20:31+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/Tianocore/edk2.git/commit/?id=b3e693dbeb902d04d393df0d9b6281b93a74355b'/>
<id>urn:sha1:b3e693dbeb902d04d393df0d9b6281b93a74355b</id>
<content type='text'>
To build TPM reference library[0] with CryptoPkg,
belows are required:

    - define memcpy as a function instead of a macro because
      memcpy is used as a function pointer in TPM reference library

    - definitions of INT16_MAX/UINT16_MAX

Link: https://github.com/TrustedComputingGroup/TPM [0]
Signed-off-by: Yeoreum Yun &lt;yeoreum.yun@arm.com&gt;
</content>
</entry>
</feed>
