tag:github.com,2008:https://github.com/FrozenFort/linux-sgx/releasesTags from linux-sgx2022-12-07T08:45:17Ztag:github.com,2008:Repository/575666285/stdc_ex_1.02022-12-07T08:45:17Zstdc_ex_1.0lzha101tag:github.com,2008:Repository/575666285/sgx_2.182022-11-24T05:48:25Zsgx_2.18: Linux 2.18 Open Source Gold Release<p>Linux 2.18 Open Source Gold Release</p>
<p>Along with the latest processor microcode address CVE-2022-21233.
<br /> Modified the Switchless library to have mitigations for the associated issue.
<br />Added support for the Linux kernel APIs for the Enclave Dynamic Memory
<br /> Management (EDMM) features that are available with the Linux kernel v6.0 or
<br /> later. Refer to the SGX SDK developer reference for details on new trusted
<br /> APIs and enclave configuration for the EDMM features.
<br />Enabled C++17 within SGX SDK.
<br />Supported AMX (Advanced Matrix Extensions) in Enclave.
<br />Replace hardcoded Enclave signing keys in all sample projects with dynamically
<br />generated keys.
<br />Added a new API to allow user to configure enclave internal cache size in the
<br /> Protected File System library.
<br />Upgraded to OpenSSL 1.1.1q and upgraded Intel(R) SGX Quote Verification Enclave
<br /> to integrate SgxSSL/OpenSSL version 1.1.1q.
<br />Supported new OS: Ubuntu* 22.04 LTS 64-bit Server version, CentOS* 8.3 64bits,
<br /> Red Hat* Enterprise Linux* Server 8.6 (for x86_64), SUSE* Linux* Enterprise
<br /> Server 15.4 64bits, Debian* 10 and Anolis* OS 8.6.
<br />Upgraded Intel SGX QE3 to make it backward compatible.
<br />Improved ECDSA quote generation and verification performance by caching PCK
<br /> certificates and collaterals in memory and disk drive.
<br />Added Java support for quote verification library.
<br />Added new APIs to unify Intel SGX and TDX quote verification in Quote
<br /> Verification Library.
<br />Added Advisory ID in ECDSA quote verification supplemental data.
<br />Added Intel TDX support in RA-TLS (Remote Attestation based TLS) library.
<br />Improved TDX quote generation throughput in vsock mode.
<br />Added Rust support for TDX quote generation.
<br />Fixed bugs.</p>
<p>Signed-off-by: Li, Xun <xun.li@intel.com></p>lllytag:github.com,2008:Repository/575666285/sgx_2.18_reproducible2022-11-24T07:05:56Zsgx_2.18_reproduciblelzha101tag:github.com,2008:Repository/575666285/sgx_2.17.12022-08-10T00:55:34Zsgx_2.17.1: Linux 2.17.1 Open Source Gold Release<p>Linux 2.17.1 Open Source Gold Release</p>
<p>Along with the latest processor microcode address CVE-2022-21233.
<br />- Modified the Edger8r to generate code with mitigations for the associated issue.
<br />- Modified the API memcpy and memcpy_s to have mitigations for the associated issue.</p>
<p>Signed-off-by: Li, Xun <xun.li@intel.com></p>lllytag:github.com,2008:Repository/575666285/sgx_2.172022-06-15T01:34:27Zsgx_2.17: Linux 2.17 Open Source Gold Release<p>Linux 2.17 Open Source Gold Release</p>
<p>Along with the latest processor microcode and re-signed all the Intel(R) SGX
<br /> Architecture Enclaves (AEs) to address <a title="CVE-2022-21123" href="https://github.com/advisories/GHSA-4jx7-c67v-r2v7">CVE-2022-21123</a>, <a title="CVE-2022-21125" href="https://github.com/advisories/GHSA-wwff-24hj-g6pw">CVE-2022-21125</a> and
<br /> CVE-2022-21166.
<br />Upgraded to Protobuf 3.20.
<br />Upgraded to SgxSSL/OpenSSL 1.1.1o.
<br />Added Intel TDX Attestation support.
<br />Added Rust support for ECDSA quote verification.
<br />Fixed bugs.</p>
<p>Signed-off-by: Li, Xun <xun.li@intel.com></p>lllytag:github.com,2008:Repository/575666285/sgx_2.17_reproducible2022-06-15T13:43:47Zsgx_2.17_reproduciblelzha101tag:github.com,2008:Repository/575666285/sgx_2.16_reproducible2022-04-07T09:54:55Zsgx_2.16_reproducible: Updates for SGX 2.16 reproducible build.<p>Updates for SGX 2.16 reproducible build.</p>
<p>Signed-off-by: Zhang Lili <lili.z.zhang@intel.com></p>lzha101tag:github.com,2008:Repository/575666285/sgx_2.162022-04-06T04:06:27Zsgx_2.16: Linux 2.16 Open Source Gold Release<p>Linux 2.16 Open Source Gold Release</p>
<p>Upgraded to OpenSSL 1.1.1m.
<br />Provided RA-TLS (Remote Attestation based Transport Layer Security) APIs and
<br /> Samples.
<br />Supported PKRU (Protection Key rights Register) in Enclave.
<br />Added APIs of SHA384 and VerifyReport2 to support TDX.
<br />Enhanced QPL (Quote Provider Library) to support caching Intel PCK
<br /> (Provisioning Certificate Key) certificate chain in local memory, or
<br /> retrieving Intel PCK cert chain from local HTTP/S address.
<br />Upgraded Intel ECDSA Quote Verification Enclave to integrate SgxSSL/OpenSSL
<br /> version 1.1.1m.
<br />Introduced Intel ID enclave for QE identity generation.
<br />Fixed bugs.</p>
<p>Signed-off-by: Li, Xun <xun.li@intel.com></p>lllytag:github.com,2008:Repository/575666285/sgx_2.15.101_reproducible2021-11-18T16:20:44Zsgx_2.15.101_reproducible: Updates for SGX 2.15.1 reproducible build.<p>Updates for SGX 2.15.1 reproducible build.</p>
<p>Signed-off-by: Zhang Lili <lili.z.zhang@intel.com></p>lzha101tag:github.com,2008:Repository/575666285/sgx_2.15.12021-11-18T07:30:52Zsgx_2.15.1: Linux 2.15.1 Open Source Gold Release<p>Linux 2.15.1 Open Source Gold Release</p>
<p>Upgraded to OpenSSL 1.1.1l</p>
<p>Signed-off-by: Li, Xun <xun.li@intel.com></p>llly