6854948 pkcs11_tpm code stomps on memory
6852240 libelfsign should use pkcs11_softtoken instead of OpenSSL for FIPS-140 integrity checking6851814 tools elfsign is unnecessarily linked against pkcs11_softtoken
6837738 ssh and javaws dump core in libsoftcrypto when freeing memory under libumem
6814722 C_Digest() does not unlock session mutex which causes deadlock6847226 session reference counter is not thread safe in pkcs11_kernel
6806387 Move OpenSSL from ON to SFW
6823591 pkcs11_kernel and pkcs11_softtoken object session reference counter must to be handled after fork6828366 pkcs11_kernel/softtoken atfork handler should acquire session objects mutex too
6840408 Cores found when running ef test in tpm:none:amd64 mode
6835006 pkcs11 TPM leaks memory in some cases.6834645 DEBUG tpm driver scares me on boot6829606 TPM failure codes should not be part of the general fail_value message list.
6820466 CKA_PUBLIC_EXPONENT is inconsistently optional for C_GenerateKeyPair for RSA keys6820888 CKA_MODULUS_BITS attribute is sometimes missing in pkcs11_softtoken
6560563 libpkcs11.so should handle premature library calls better
6824612 C_DestroyObject() destroys token key objects during a read only session6824692 C_SeedRandom() should not suceed with null seed6824700 C_DigestInit() should not fail if mech->ulParameterLen
6824612 C_DestroyObject() destroys token key objects during a read only session6824692 C_SeedRandom() should not suceed with null seed6824700 C_DigestInit() should not fail if mech->ulParameterLen != 06824077 C_Login fails because of error codes being returned and incorrect error checking6827617 C_SignRecover() & C_VerifyRecover() with mechanism RSA_PKCS fail in pk11asymmetrictest_test6830264 pkcs11 TPM provider does not load on 64-bit6831335 pkcs11_tpm provider does not handle forks and mutexes correctly.
show more ...
6767618 Need an optimized AES leveraging Intel's AES instructions6747587 Remove redundant code in ccm.c--HG--rename : usr/src/common/crypto/aes/amd64/THIRDPARTYLICENSE => usr/src/common/crypto/ae
6767618 Need an optimized AES leveraging Intel's AES instructions6747587 Remove redundant code in ccm.c--HG--rename : usr/src/common/crypto/aes/amd64/THIRDPARTYLICENSE => usr/src/common/crypto/aes/amd64/THIRDPARTYLICENSE.gladmanrename : usr/src/common/crypto/aes/amd64/THIRDPARTYLICENSE.descrip => usr/src/common/crypto/aes/amd64/THIRDPARTYLICENSE.gladman.descrip
6439989 CKM_CMS_SIG & WTLS missing from pkcs11_mech2str mapping6282064 C_GetSlotInfo returns CKR_SLOT_ID_INVALID when the logical provider is the only slot on the system6177650 Wrong error code ret
6439989 CKM_CMS_SIG & WTLS missing from pkcs11_mech2str mapping6282064 C_GetSlotInfo returns CKR_SLOT_ID_INVALID when the logical provider is the only slot on the system6177650 Wrong error code returned when key does not allow requested operation6437677 C_GenerateKey with missing CKA_VALUE_LEN attr should fail with CKR_TEMPLATE_INCOMPLETE6499687 softDSA.c should use a meaningful #define rather than a hard coded number6773550 Crypto Framework is too strict when checking DSA key parameters6815120 C_Logout with metaslot can leave metaslot object info in memory6606384 SCF consumers crash after mechanisms are disabled using cryptoadm when using libumem6636169 softtoken is confused by .nfs files6636960 C_GetOperationState should fail if there is no active digest operation6627939 functional test failure - got CKR_UNWRAPPING_KEY_TYPE_INCONSISTENT
6666204 meta slot opens and closes /dev/urandom needlessly for every read6722460 finish moving /dev/random and /dev/urandom seeding and usage to libcryptoutil
PSARC 2008/725 TPM Support6771298 Solaris needs a PKCS11 provider for the TPM6771289 Solaris needs TCG support
6812615 64-bit RC4 has poor performance on Intel Nehalem
6799218 RSA using Solaris Kernel Crypto framework lagging behind OpenSSL5016936 bignumimpl:big_mul: potential memory leak6810280 panic from bignum module: vmem_xalloc(): size == 0
6784451 consolidate duplicative looping_read() and looping_write() code into libcryptoutil
6798660 Cadmium .NOT file processing problem with CWD relative file pathsContributed by Richard Lowe6785284 Mapfile versioning rules need to be more visible to gatelings6800164 Standard file exclu
6798660 Cadmium .NOT file processing problem with CWD relative file pathsContributed by Richard Lowe6785284 Mapfile versioning rules need to be more visible to gatelings6800164 Standard file exclusion mechanism needed for Cadmium tools
6796952 bignum sparc not using optimizations in libsoftcrypto6782907 Certificate signing request (CSR) using certutil fails on T1/T2 based systems6609549 Sun Metaslot erroneously reports CKR_SESSIO
6796952 bignum sparc not using optimizations in libsoftcrypto6782907 Certificate signing request (CSR) using certutil fails on T1/T2 based systems6609549 Sun Metaslot erroneously reports CKR_SESSION_READ_ONLY for C_DestroyObject on RW session6728680 T2000 SoftToken slot reports absent but non-removable token when .sunw directory inaccessible
PSARC/2006/684 libsoftcrypto4911870 pkcs11_softtoken crypto should be factored out into a new library to support $PLATFORM & $HWCAP
6638987 soft_delete_session() clears magic_marker too soon for soft_remove_object_from_session()
6720255 soft_digest_init() memory leaks caused by digest operations on a system with HW crypto provider6745244 inconsistent locking of soft_session_t mutex in soft_{get,set}_operationstate()6748371
6720255 soft_digest_init() memory leaks caused by digest operations on a system with HW crypto provider6745244 inconsistent locking of soft_session_t mutex in soft_{get,set}_operationstate()6748371 memcpy() wastes cycles in soft_get_operationstate()/soft_set_operationstate()
6693650 kernel implementation of AES lacks support for >64 bits long AES counter
PSARC/2008/520 SunSSH with the OpenSSL PKCS#11 engine support6445288 ssh needs to be OpenSSL engine aware6709963 SunSSH server leaks memory during initialization6687401 ssh monitor shouldn't try t
PSARC/2008/520 SunSSH with the OpenSSL PKCS#11 engine support6445288 ssh needs to be OpenSSL engine aware6709963 SunSSH server leaks memory during initialization6687401 ssh monitor shouldn't try to log remote IP when child closed the pipe6696629 sshd should remove alarm signal handler after authentication6674088 userland threshold for hw offloading makes it difficult for SSL and SSH protocols6728450 6708125 prevents parent to use the Crypto Framework after the fork(2)6742247 ssh debug output with PACKET_DEBUG code could be more readable
1234567