Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

openssl-fips-provider-3.5.1-5.el10.alma.1 RPM for x86_64_v2

From AlmaLinux Kitten 10 BaseOS for x86_64_v2

Name: openssl-fips-provider Distribution: AlmaLinux
Version: 3.5.1 Vendor: AlmaLinux
Release: 5.el10.alma.1 Build date: Wed Sep 17 08:17:29 2025
Group: Unspecified Build host: x64-builder04.almalinux.org
Size: 2489250 Source RPM: openssl-3.5.1-5.el10.alma.1.src.rpm
Packager: AlmaLinux Packaging Team <packager@almalinux.org>
Url: http://www.openssl.org/
Summary: The FIPS Provider module
OpenSSL is a toolkit for supporting cryptography. The openssl-fips-provider
package provides the fips.so provider, a cryptography provider that follows
FIPS requirements and provides FIPS approved algorithms.

Provides

Requires

License

Apache-2.0

Changelog

* Sat Sep 06 2025 Eduard Abdullin <eabdullin@almalinux.org> - 1:3.5.1-5.alma.1
  - Redefine sslarch for x86_64_v2 arch
* Fri Sep 05 2025 Pavol Žáčik <pzacik@redhat.com> - 1:3.5.1-5
  - Fix globally disabled LTO
    Related: RHEL-111634
  - Initialize reserved and unused memory in aes-s390x.pl
    Resolves: RHEL-107479
* Thu Aug 28 2025 Pavol Žáčik <pzacik@redhat.com> - 1:3.5.1-4
  - Make openssl speed test signatures without errors
    Resolves: RHEL-95182
  - Build tests in check and without LTO
    Resolves: RHEL-111634
* Thu Jul 24 2025 Simo Sorce <simo@redhat.com> - 1:3.5.1-3
  - Add custom define to disable symbol versioning in downstream patched code
    Also add stricter Suggests for openssl-fips-provider
    Resolves: RHEL-101548
  - Fix Requires/Provider to fix default install of fips providers
    Resolves: RHEL-105010
* Thu Jul 24 2025 Simo Sorce <simo@redhat.com> - 1:3.5.1-2
  - Move fips.so to a seprate subpackage
    Reverts FIPS self test for SLH-DSA
    Add Suggests to try to prefer the openssl-fips-provider package
    over the fips-provider-next package by default
    Revolves: RHEL-102408
    Related: RHEL-80811
* Tue Jul 01 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.5.1-1
  - Rebasing to OpenSSL 3.5.1
    Resolves: RHEL-90350
    Resolves: RHEL-95613
    Resolves: RHEL-97796
    Resolves: RHEL-99353
    Resolves: RHEL-100168
* Thu Jun 05 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.5.0-8
  - rebuilt
    Related: RHEL-80811
* Thu Jun 05 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.5.0-7
  - rebuilt
    Related: RHEL-80811
* Wed Jun 04 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.5.0-6
  - rebuilt
    Related: RHEL-80811
* Mon Jun 02 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.5.0-5
  - Compact patches for better maintainability
    Related: RHEL-80811
  - Make hybrid MLKEM work with our FIPS provider (3.0.7)
    Resolves: RHEL-94614
* Thu May 22 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.5.0-4
  - Fix regressions caused by rebase to OpenSSL 3.5
    Related: RHEL-80811
  - Fix UEFI builds on double function definitions
    Resolves: RHEL-93168
* Wed May 14 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.5.0-3
  - Fix `openssl speed` running in FIPS mode
    Resolves: RHEL-88908
  - pkeyutl ecdsa signature with sha1 shouldn't work by default
    Resolves: RHEL-88911
  - Expose settable params for EVP_SKEY
    Resolves: RHEL-88913
  - Restore RHEL9-style indicators defines
    Resolves: RHEL-88906
  - Enable sslkeylog support
    Resolves: RHEL-90853
  - Fix UEFI builds
    Resolves: RHEL-89137
* Thu Apr 17 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.5.0-2
  - Update depencency on crypto-policies
    Related: RHEL-80811
* Wed Apr 09 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.5.0-1
  - Rebasing OpenSSL to 3.5
    Resolves: RHEL-80811
    Resolves: RHEL-57022
    Resolves: RHEL-24098
    Resolves: RHEL-24097
    Resolves: RHEL-86865
* Wed Jan 29 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-16
  - Fix timing side-channel in ECDSA signature computation (CVE-2024-13176)
    Resolves: RHEL-70879
  - Load system default cipher string from crypto-policies configuration file
    should ignore errors.
    Related: RHEL-71132
  - RFC7250 handshakes with unauthenticated servers don't abort as expected (CVE-2024-12797)
    Resolves: RHEL-76754
  - Fix segfault on printing the temp key from s_client when connection is not established
    Resolves: RHEL-79045
* Thu Jan 02 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-15
  - Fix providers no_cache behavior
    Resolves: RHEL-71903
  - Fix pkcs12 command line segfault
    Resolves: RHEL-70878
  - Print key exchange group for hybrid PQC
    Resolves: RHEL-66163
  - Ensure correct fips.so checksum calculation
    Resolves: RHEL-73170
  - Locally configured providers should not interfere with openssl build-time tests
    Resolves: RHEL-76182
  - Load system default cipher string from crypto-policies configuration file
    include /etc/crypto-policies/back-ends/opensslcnf.config and remove
    /etc/crypto-policies/back-ends/openssl.config.
    Resolves: RHEL-71132
* Tue Oct 29 2024 Troy Dawson <tdawson@redhat.com> - 1:3.2.2-14
  - Bump release for October 2024 mass rebuild:
    Resolves: RHEL-64018
* Thu Oct 17 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-13
  - Ship dummy(empty) openssl/engine.h
    Resolves: RHEL-58178
* Wed Sep 04 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-12
  - Fix CVE-2024-6119: Possible denial of service in X.509 name checks
    Resolves: RHEL-55303
* Wed Aug 21 2024 Clemens Lang <cllang@redhat.com> - 1:3.2.2-11
  - Fix CVE-2024-5535: SSL_select_next_proto buffer overread
    Resolves: RHEL-45692
* Wed Aug 14 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-10
  - Use PBMAC1 by default when creating PKCS#12 files in FIPS mode
    Related: RHEL-36659
  - Support key encapsulation/decapsulation in openssl pkeyutl command
    Resolves: RHEL-54156
  - Fix typo in the patch numeration
    Related: RHEL-41261
  - Enable KTLS, temporary disable KTLS tests
    Related: RHEL-47335
  - Speedup SSL_add_{file,dir}_cert_subjects_to_stack
    Resolves: RHEL-54232
  - Resolve SAST package scan results
    Resolves: RHEL-37561
* Fri Aug 09 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-9
  - An interface to create PKCS #12 files in FIPS compliant way
    Related: RHEL-36659
* Wed Aug 07 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-8
  - An interface to create PKCS #12 files in FIPS compliant way
    Resolves: RHEL-36659
* Wed Jul 10 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-7
  - Disallow SHA1 at SECLEVEL2 in OpenSSL
    Resolves: RHEL-39962
  - SHA-1 signature shouldn't work in normal mode
    Resolves: RHEL-36677
* Mon Jul 01 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-6
  - Do not install ENGINE headers, man pages, and define OPENSSL_NO_ENGINE
    Resolves: RHEL-45704
* Mon Jul 01 2024 Daiki Ueno <dueno@redhat.com> - 1:3.2.2-5
  - Replace HKDF backward compatibility patch with the official one
    Related: RHEL-41261
* Mon Jun 24 2024 Troy Dawson <tdawson@redhat.com> - 1:3.2.2-4
  - Bump release for June 2024 mass rebuild
* Sat Jun 15 2024 Daiki Ueno <dueno@redhat.com> - 1:3.2.2-3
  - Add workaround for EVP_PKEY_CTX_add1_hkdf_info with older providers
    Resolves: RHEL-41261
* Wed Jun 12 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-2
  - Build openssl with no-atexit
    Resolves: RHEL-40408
* Wed Jun 05 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.2.2-1
  - Rebase to OpenSSL 3.2.2.
    Related: RHEL-31762
* Mon Jun 03 2024 Sahana Prasad <sahana@redhat.com> - 1:3.2.1-4
  - Synchronize patches from c9s and Fedora
  - Resolves: RHEL-31762
* Tue Feb 13 2024 Sahana Prasad <sahana@redhat.com> - 1:3.2.1-3
  - Temporarily disable ktls to  unblock c10s builds
  - Resolves: RHEL-25259
* Fri Feb 09 2024 Sahana Prasad <sahana@redhat.com> - 1:3.2.1-2
  - Fix version aliasing issue
  - https://github.com/openssl/openssl/issues/23534
* Tue Feb 06 2024 Sahana Prasad <sahana@redhat.com> - 1:3.2.1-1
  - Rebase to upstream version 3.2.1
* Thu Jan 25 2024 Fedora Release Engineering <releng@fedoraproject.org> - 1:3.1.4-4
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Sun Jan 21 2024 Fedora Release Engineering <releng@fedoraproject.org> - 1:3.1.4-3
  - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Wed Jan 10 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 1:3.1.4-2
  - We don't want to ship openssl-pkcs11 in RHEL10/Centos 10
* Thu Oct 26 2023 Sahana Prasad <sahana@redhat.com> - 1:3.1.4-1
  - Rebase to upstream version 3.1.4
* Thu Oct 19 2023 Sahana Prasad <sahana@redhat.com> - 1:3.1.3-1
  - Rebase to upstream version 3.1.3

Files

/usr/lib/.build-id
/usr/lib/.build-id/d4
/usr/lib/.build-id/d4/ba5149da5c528e944b1955498295e1f9aea341
/usr/lib64/ossl-modules/fips.so


Generated by rpm2html 1.8.1

Fabrice Bellet, Fri Oct 24 06:19:54 2025