[jdk17u-dev] Integrated: 8302225: SunJCE Provider doesn't validate key sizes when using 'constrained' transforms for AES/KW and AES/KWP

Goetz Lindenmaier goetz at openjdk.org
Wed Nov 20 09:55:22 UTC 2024


On Mon, 18 Nov 2024 10:28:25 GMT, Goetz Lindenmaier <goetz at openjdk.org> wrote:

> I would like to fix this issue in the sun crypto provider.
> 
> Clean backport except for Copyright, probably recognized clean.

This pull request has now been integrated.

Changeset: 878daefa
Author:    Goetz Lindenmaier <goetz at openjdk.org>
URL:       https://git.openjdk.org/jdk17u-dev/commit/878daefa221e7f4d8198bd81b4868f4eb7bbfada
Stats:     60 lines in 2 files changed: 36 ins; 13 del; 11 mod

8302225: SunJCE Provider doesn't validate key sizes when using 'constrained' transforms for AES/KW and AES/KWP

Backport-of: 4ce493f09ea3a34322462e82fd73b8375be1cba5

-------------

PR: https://git.openjdk.org/jdk17u-dev/pull/3047


More information about the jdk-updates-dev mailing list