Failed: openssl/openssl#37868 (master - 62f27ab)

Travis CI builds at travis-ci.com
Fri Oct 2 08:27:46 UTC 2020


Build Update for openssl/openssl
-------------------------------------

Build: #37868
Status: Failed

Duration: 1 hr, 21 mins, and 6 secs
Commit: 62f27ab (master)
Author: Maxim Masiutin
Message: TLS AEAD ciphers: more bytes for key_block than needed

Fixes #12007
The key_block length was not written to trace, thus it was not obvious
that extra key_bytes were generated for TLS AEAD.

The problem was that EVP_CIPHER_iv_length was called even for AEAD ciphers
to figure out how many bytes from the key_block were needed for the IV.
The correct way was to take cipher mode (GCM, CCM, etc) into
consideration rather than simply callin the general function
EVP_CIPHER_iv_length.

The new function tls_iv_length_within_key_block takes this into
consideration.

Besides that, the order of addendums was counter-intuitive MAC length
was second, but it have to be first to correspond the order given in the RFC.

Reviewed-by: Matt Caswell <matt at openssl.org>
Reviewed-by: Tomas Mraz <tmraz at fedoraproject.org>
(Merged from https://github.com/openssl/openssl/pull/13035)

View the changeset: https://github.com/openssl/openssl/compare/f21c9c64f534...62f27ab9dcf2

View the full build log and details: https://travis-ci.com/github/openssl/openssl/builds/187753237?utm_medium=notification&utm_source=email


--

You can unsubscribe from build emails from the openssl/openssl repository going to https://travis-ci.com/account/preferences/unsubscribe?repository=13885459&utm_medium=notification&utm_source=email.
Or unsubscribe from *all* email updating your settings at https://travis-ci.com/account/preferences/unsubscribe?utm_medium=notification&utm_source=email.
Or configure specific recipients for build notifications in your .travis.yml file. See https://docs.travis-ci.com/user/notifications.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://mta.openssl.org/pipermail/openssl-commits/attachments/20201002/2746ec11/attachment.html>


More information about the openssl-commits mailing list