tag:github.com,2008:https://github.com/FrozenFort/linux-sgx/releases Tags from linux-sgx 2022-12-07T08:45:17Z tag:github.com,2008:Repository/575666285/stdc_ex_1.0 2022-12-07T08:45:17Z stdc_ex_1.0 lzha101 tag:github.com,2008:Repository/575666285/sgx_2.18 2022-11-24T05:48:25Z sgx_2.18: Linux 2.18 Open Source Gold Release <p>Linux 2.18 Open Source Gold Release</p> <p>Along with the latest processor microcode address CVE-2022-21233. <br /> Modified the Switchless library to have mitigations for the associated issue. <br />Added support for the Linux kernel APIs for the Enclave Dynamic Memory <br /> Management (EDMM) features that are available with the Linux kernel v6.0 or <br /> later. Refer to the SGX SDK developer reference for details on new trusted <br /> APIs and enclave configuration for the EDMM features. <br />Enabled C++17 within SGX SDK. <br />Supported AMX (Advanced Matrix Extensions) in Enclave. <br />Replace hardcoded Enclave signing keys in all sample projects with dynamically <br />generated keys. <br />Added a new API to allow user to configure enclave internal cache size in the <br /> Protected File System library. <br />Upgraded to OpenSSL 1.1.1q and upgraded Intel(R) SGX Quote Verification Enclave <br /> to integrate SgxSSL/OpenSSL version 1.1.1q. <br />Supported new OS: Ubuntu* 22.04 LTS 64-bit Server version, CentOS* 8.3 64bits, <br /> Red Hat* Enterprise Linux* Server 8.6 (for x86_64), SUSE* Linux* Enterprise <br /> Server 15.4 64bits, Debian* 10 and Anolis* OS 8.6. <br />Upgraded Intel SGX QE3 to make it backward compatible. <br />Improved ECDSA quote generation and verification performance by caching PCK <br /> certificates and collaterals in memory and disk drive. <br />Added Java support for quote verification library. <br />Added new APIs to unify Intel SGX and TDX quote verification in Quote <br /> Verification Library. <br />Added Advisory ID in ECDSA quote verification supplemental data. <br />Added Intel TDX support in RA-TLS (Remote Attestation based TLS) library. <br />Improved TDX quote generation throughput in vsock mode. <br />Added Rust support for TDX quote generation. <br />Fixed bugs.</p> <p>Signed-off-by: Li, Xun &lt;xun.li@intel.com&gt;</p> llly tag:github.com,2008:Repository/575666285/sgx_2.18_reproducible 2022-11-24T07:05:56Z sgx_2.18_reproducible lzha101 tag:github.com,2008:Repository/575666285/sgx_2.17.1 2022-08-10T00:55:34Z sgx_2.17.1: Linux 2.17.1 Open Source Gold Release <p>Linux 2.17.1 Open Source Gold Release</p> <p>Along with the latest processor microcode address CVE-2022-21233. <br />- Modified the Edger8r to generate code with mitigations for the associated issue. <br />- Modified the API memcpy and memcpy_s to have mitigations for the associated issue.</p> <p>Signed-off-by: Li, Xun &lt;xun.li@intel.com&gt;</p> llly tag:github.com,2008:Repository/575666285/sgx_2.17 2022-06-15T01:34:27Z sgx_2.17: Linux 2.17 Open Source Gold Release <p>Linux 2.17 Open Source Gold Release</p> <p>Along with the latest processor microcode and re-signed all the Intel(R) SGX <br /> Architecture Enclaves (AEs) to address <a title="CVE-2022-21123" href="https://github.com/advisories/GHSA-4jx7-c67v-r2v7">CVE-2022-21123</a>, <a title="CVE-2022-21125" href="https://github.com/advisories/GHSA-wwff-24hj-g6pw">CVE-2022-21125</a> and <br /> CVE-2022-21166. <br />Upgraded to Protobuf 3.20. <br />Upgraded to SgxSSL/OpenSSL 1.1.1o. <br />Added Intel TDX Attestation support. <br />Added Rust support for ECDSA quote verification. <br />Fixed bugs.</p> <p>Signed-off-by: Li, Xun &lt;xun.li@intel.com&gt;</p> llly tag:github.com,2008:Repository/575666285/sgx_2.17_reproducible 2022-06-15T13:43:47Z sgx_2.17_reproducible lzha101 tag:github.com,2008:Repository/575666285/sgx_2.16_reproducible 2022-04-07T09:54:55Z sgx_2.16_reproducible: Updates for SGX 2.16 reproducible build. <p>Updates for SGX 2.16 reproducible build.</p> <p>Signed-off-by: Zhang Lili &lt;lili.z.zhang@intel.com&gt;</p> lzha101 tag:github.com,2008:Repository/575666285/sgx_2.16 2022-04-06T04:06:27Z sgx_2.16: Linux 2.16 Open Source Gold Release <p>Linux 2.16 Open Source Gold Release</p> <p>Upgraded to OpenSSL 1.1.1m. <br />Provided RA-TLS (Remote Attestation based Transport Layer Security) APIs and <br /> Samples. <br />Supported PKRU (Protection Key rights Register) in Enclave. <br />Added APIs of SHA384 and VerifyReport2 to support TDX. <br />Enhanced QPL (Quote Provider Library) to support caching Intel PCK <br /> (Provisioning Certificate Key) certificate chain in local memory, or <br /> retrieving Intel PCK cert chain from local HTTP/S address. <br />Upgraded Intel ECDSA Quote Verification Enclave to integrate SgxSSL/OpenSSL <br /> version 1.1.1m. <br />Introduced Intel ID enclave for QE identity generation. <br />Fixed bugs.</p> <p>Signed-off-by: Li, Xun &lt;xun.li@intel.com&gt;</p> llly tag:github.com,2008:Repository/575666285/sgx_2.15.101_reproducible 2021-11-18T16:20:44Z sgx_2.15.101_reproducible: Updates for SGX 2.15.1 reproducible build. <p>Updates for SGX 2.15.1 reproducible build.</p> <p>Signed-off-by: Zhang Lili &lt;lili.z.zhang@intel.com&gt;</p> lzha101 tag:github.com,2008:Repository/575666285/sgx_2.15.1 2021-11-18T07:30:52Z sgx_2.15.1: Linux 2.15.1 Open Source Gold Release <p>Linux 2.15.1 Open Source Gold Release</p> <p>Upgraded to OpenSSL 1.1.1l</p> <p>Signed-off-by: Li, Xun &lt;xun.li@intel.com&gt;</p> llly