Ashish Sharma
e08eb015e5
fix(esp_prov): fixes sec2 client possible public length truncation
2026-06-16 18:27:36 +08:00
Ashish Sharma
385c1f5d8e
fix(mbedtls): fixes build failure with clang21
...
Closes https://github.com/espressif/esp-idf/issues/18456
2026-06-09 14:04:22 +08:00
Ashish Sharma
1702f33a3a
fix(http_request): fixes failing pytest
2026-05-18 15:12:11 +08:00
Ashish Sharma
029f3617d3
fix(esp_http_server): fixes websocket recv error handling
...
Closes https://github.com/espressif/esp-idf/issues/18483
2026-05-15 14:06:31 +08:00
Ashish Sharma
f5d24a7e91
fix(protocomm): fixes potential issues that can lead to crash during device provisioning
2026-04-29 16:22:24 +08:00
Ashish Sharma
8332e05698
fix(mbedtls): relaxes performance numbers for RSA operations
2026-04-28 14:40:59 +08:00
Ashish Sharma
832fbe67e8
change(mbedtls): adds CVE-2025-66442 to exclude list.
...
The CVE is applicable with Clang using LLVM's select-optimize feature. ESP-IDF uses GCC as default compiler and sets -Os as the default optimisation flag
2026-04-27 14:11:34 +08:00
Ashish Sharma
85f946b38a
fix(esp_srp): reject SRP client public key when A mod N is zero
2026-04-20 11:08:08 +08:00
Ashish Sharma
2279f5c9e5
feat(esp_http_server): adds check for crlf in response creation
2026-04-13 15:22:06 +08:00
Ashish Sharma
a5898a2004
feat(esp_local_ctrl): adds basic test app
2026-04-12 18:19:20 +08:00
Ashish Sharma
1d4b776775
fix(esp_local_ctrl): fixes a potential double free
2026-04-12 18:19:20 +08:00
Ashish Sharma
86bd15ec83
fix(wifi_provisioning): fixes memory leak on OOM
2026-04-10 12:29:12 +08:00
Ashish Sharma
2bda8dfb4e
fix(wifi_provisioning): fixes potential null dereference on malformed packet
2026-04-10 12:29:11 +08:00
Ashish Sharma
8743111955
feat(cjson): update to latest master
2026-04-07 10:33:47 +08:00
Ashish Sharma
6449eaeeab
feat(mbedtls): update to version 3.6.6
2026-04-07 10:31:58 +08:00
Ashish Sharma
5f15240893
fix: fixes memory leak with subprotocols
2026-03-23 18:43:26 +08:00
Ashish Sharma
37508ab911
fix: fixes websocket server possible null dereference
2026-03-23 18:43:26 +08:00
Ashish Sharma
e08f079ce3
feat(http_server): adds example to test server pong response
2026-03-16 16:56:13 +08:00
Ashish Sharma
ee3083b2ca
feat(esp_http_client): adds API to get transport socket
2026-01-27 12:09:51 +08:00
Ashish Sharma
47045dad5f
fix: stop reading ws data when peer closes the connection
...
Closes https://github.com/espressif/esp-idf/issues/17822
2026-01-22 18:16:49 +08:00
Ashish Sharma
b8c3815800
fix: fixes potential ws server deadlock with blocking work queue
...
Closes https://github.com/espressif/esp-idf/issues/17591
2026-01-22 18:13:21 +08:00
Ashish Sharma
5029db20e5
fix(esp_http_client): fix incorrect digest calculation for SHA256 auth digest
...
According to RFC 7616, nonce-prime and cnonce-prime is used for SHA-256-sess only and not for SHA-256.
This commit updates the check and uses nonce only for "-sess" algorithms.
Regression from 66995965e7
2026-01-07 17:33:21 +08:00
Ashish Sharma
0f639a9c8b
feat(mbedtls): update to version 3.6.5
2025-11-11 16:48:46 +08:00
Ashish Sharma
ee5df2ec4e
fix(esp_tls): limit ret code from esp_mbedtls_handshake
2025-09-24 15:55:26 +08:00
Ashish Sharma
66bbe67adc
change(cjson): update cjson version to 1.7.19
2025-09-11 15:36:10 +08:00
Ashish Sharma
b72f3124ba
fix(esp_http_client): fix possible double memory free
2025-08-01 15:09:44 +08:00
Ashish Sharma
cfcf66f0b4
fix(esp_http_client): fix memory leak in current_header_value buffer
...
Fixed memory leak in esp_http_client_cleanup() where current_header_value
buffer was not being freed when ESP_ERR_HTTP_FETCH_HEADER is returned
during header parsing failures.
2025-07-18 12:00:11 +08:00
Ashish Sharma
89fa1559d9
feat(mbedtls): adds support for RSA decryption with DS peripheral
2025-07-10 11:29:44 +08:00
Ashish Sharma
98fa9a3829
feat(mbedtls): update to version 3.6.4
2025-07-04 17:36:08 +08:00
Ashish Sharma
974b70a8cf
docs(system/esp_https_ota): adds ECIES-256 to pre-enc ota design doc
2025-07-04 17:31:15 +08:00
Ashish Sharma
14a41c29c9
feat(cjson): update to latest upstream
2025-05-26 17:39:50 +08:00
Ashish Sharma
02a0db1dc4
change: adds CVE-2023-53154 to cJSON sbom exclude list
2025-05-26 17:31:11 +08:00
Ashish Sharma
605206b69f
feat(mbedtls): new config to allow weak cert verification
2025-04-16 09:50:24 +08:00
Ashish Sharma
7578913742
feat(mbedtls): update to version 3.6.3
2025-04-16 09:50:24 +08:00
Ashish Sharma
a83a0ab02b
fix(component/mbedtls): Adds github root cert to cmn_crt_authorities.csv
2025-03-18 14:36:18 +08:00