• Nikos Mavrogiannopoulos's avatar
    x509: corrected issue in the algorithm parameters comparison · d9ba6041
    Nikos Mavrogiannopoulos authored
    Each certificate has two fields to set the signature algorithm
    and parameters used for the digital signature. One of the fields is
    authenticated and the other is not. It is required from RFC5280 to
    enforce the equality of these fields, but currently due to an issue
    we wouldn't enforce the equality of the parameters fields. This
    fix corrects the issue.
    
    We also move an RSA-PSS certificate in chainverify that was relying
    on invalid parameters, to this set of invalid certificates.
    
    Resolves: #698Signed-off-by: Nikos Mavrogiannopoulos's avatarNikos Mavrogiannopoulos <nmav@redhat.com>
    d9ba6041
Name
Last commit
Last update
..
Makefile.am Loading commit data...
attributes.c Loading commit data...
attributes.h Loading commit data...
common.c Loading commit data...
common.h Loading commit data...
crl.c Loading commit data...
crl_write.c Loading commit data...
crq.c Loading commit data...
dn.c Loading commit data...
email-verify.c Loading commit data...
extensions.c Loading commit data...
hostname-verify.c Loading commit data...
ip-in-cidr.h Loading commit data...
ip.c Loading commit data...
ip.h Loading commit data...
key_decode.c Loading commit data...
key_encode.c Loading commit data...
krb5.c Loading commit data...
krb5.h Loading commit data...
mpi.c Loading commit data...
name_constraints.c Loading commit data...
ocsp.c Loading commit data...
ocsp.h Loading commit data...
ocsp_output.c Loading commit data...
output.c Loading commit data...
pkcs12.c Loading commit data...
pkcs12_bag.c Loading commit data...
pkcs12_encr.c Loading commit data...
pkcs7-attrs.c Loading commit data...
pkcs7-crypt.c Loading commit data...
pkcs7-output.c Loading commit data...
pkcs7.c Loading commit data...
pkcs7_int.h Loading commit data...
privkey.c Loading commit data...
privkey_openssl.c Loading commit data...
privkey_pkcs8.c Loading commit data...
privkey_pkcs8_pbes1.c Loading commit data...
prov-seed.c Loading commit data...
prov-seed.h Loading commit data...
sign.c Loading commit data...
spki.c Loading commit data...
supported_exts.gperf Loading commit data...
time.c Loading commit data...
tls_features.c Loading commit data...
verify-high.c Loading commit data...
verify-high.h Loading commit data...
verify-high2.c Loading commit data...
verify.c Loading commit data...
virt-san.c Loading commit data...
virt-san.h Loading commit data...
x509.c Loading commit data...
x509_dn.c Loading commit data...
x509_ext.c Loading commit data...
x509_ext_int.h Loading commit data...
x509_int.h Loading commit data...
x509_write.c Loading commit data...