Commit Graph
100 Commits
Author SHA1 Message Date
Ashish Sharma 5fb2dc6c74 fix(esp_tee): ensure hal assert is enabled for tee builds 2026-07-17 18:14:38 +05:30
Ashish Sharma 2fcdb164a1 fix(esp_tee): enforce MMU-map vaddr validity at the REE->TEE boundary 2026-07-17 18:14:37 +05:30
Ashish Sharma c146cb5322 fix(esp_tee): fixes IV length check for TEE AEAD operations 2026-07-17 18:14:37 +05:30
Ashish Sharma 8d8068aee3 fix(esp_tee): fix DS-lock leak, intr-matrix OOB, calloc overflow, attestation leak 2026-07-13 14:40:44 +08:00
Ashish Sharma 2a63a05a85 fix(esp-tls): reject NULL host/url in plain-TCP and async HTTP connect 2026-07-13 14:40:44 +08:00
Ashish Sharma e4304fab76 fix(mbedtls): validate crypto input lengths (TEE OOB, auth-bypass, overflows) 2026-07-13 14:40:44 +08:00
Ashish Sharma e382f878cc fix(esp_https_server): free TLS session on transport_ctx OOM in httpd_ssl_open 2026-07-13 14:40:44 +08:00
Ashish Sharma 35227e41e9 fix(esp_hal_security): clamp tag_len in aes_hal_gcm_read_tag to prevent OOB 2026-07-13 14:40:44 +08:00
Ashish Sharma bcfb0407f9 fix(bootloader_support): guard NULL efuse digest slot in secure-boot verify 2026-07-13 14:40:44 +08:00
Ashish Sharma ef4ecd0591 fix(esp_http_client): fix digest-auth leaks and credential/handle use-after-free 2026-07-13 14:40:44 +08:00
Ashish Sharma b589180b8b fix(esp_http_server): close UAF/double-free, buffer underflows, and OOB read 2026-07-13 14:40:44 +08:00
Ashish Sharma 9843bcc8dc fix(app_update): close OOB read, rollback-guard gap, and length underflow 2026-07-13 14:40:44 +08:00
Ashish Sharma 1041b69131 feat(esp_http_client): detect oversized headers in tx buffer while sending request 2026-07-07 18:22:08 +08:00
Ashish Sharma 8ca83a0fa9 fix(mbedtls): fixes TLS1.3 server failing with dynamic buffer 2026-07-06 15:18:23 +08:00
Ashish Sharma 3a511492a7 fix(esp_security): harden crypto peripheral error handling 2026-07-03 11:42:46 +08:00
Ashish Sharma 5d299793cf fix(esp-tls): guard against NULL PSK hint to prevent crash 2026-07-03 11:36:11 +08:00
Ashish Sharma a3398cb629 fix(esp_tee): fixes double panic when ESP-TEE panics 2026-07-03 11:29:55 +08:00
Ashish Sharma 298d763003 fix(esp_tee): release SHA held by HMAC after crypto peripheral reset 2026-07-03 11:29:55 +08:00
Ashish Sharma 33cb603e02 fix(mbedtls/port): add additional hardening for PSA drivers 2026-07-01 17:41:48 +08:00
Ashish Sharma 41b09acfe8 fix(rsa_ds): make RSA-OAEP unpadding constant-time 2026-06-25 10:40:37 +08:00
Ashish Sharma 9a703650cd fix(rsa_ds): make PKCS#1 v1.5 unpadding constant-time 2026-06-25 10:40:37 +08:00
Ashish Sharma 39e1740417 fix(protocomm): null output buffer pointer on crypto failure 2026-06-16 14:47:10 +08:00
Ashish Sharma 28622375bc fix(esp_http_server): take ctrl_sock_semaphore on shutdown and async wake
httpd_stop() and httpd_req_async_handler_complete() both pushed
messages onto the control mbox via cs_send_to_ctrl_sock() without
reserving a slot in ctrl_sock_semaphore. Once the silent-drop fix
made the semaphore unconditional, the bypass became a real bug:
when the mbox is saturated by pending httpd_queue_work() items the
unguarded sendto() can return ENOBUFS, and even when it succeeds it
leaves the semaphore overstating free slots until the consumer
drains the message — a window during which a concurrent
httpd_queue_work() can take a slot but still find the mbox full.

Acquire the semaphore (portMAX_DELAY) before both sends and give it
back on send failure so the take/give invariant is preserved. The
httpd task is the consumer in both paths, so blocking is bounded
and deadlock-free. Reword the stale "no-op give on full" comment in
httpd_process_ctrl_msg() to reflect that only the recv-error path
relies on the cap behavior now.
2026-06-05 17:34:30 +08:00
Ashish Sharma 70faf553a4 fix(esp_http_server): prevent silent message drop in httpd_queue_work
Closes https://github.com/espressif/esp-idf/issues/18563
2026-06-05 17:34:30 +08:00
Ashish Sharma 1eabc57dc3 fix(esp-tls): fixes DS peripheral use case with tf-psa-crypto 1.1 2026-06-05 17:32:09 +08:00
Ashish Sharma d7ec6e0db0 feat(esp_http_client_mutual_auth): add mutual TLS example
Closes https://github.com/espressif/esp-idf/issues/18393
2026-06-05 17:32:09 +08:00
Ashish Sharma 9c15f8e7d9 docs(esp_http_server): adds doc and migration entry for ws server post handshake cb
Closes https://github.com/espressif/esp-idf/issues/18539
2026-06-05 17:31:32 +08:00
Ashish Sharma b2a614569d fix(mbedtls): fixes missing check before ecdsa verify 2026-05-27 11:37:48 +05:30
Ashish Sharma 96d8dbd781 docs(vulnerabilities): sync vulnerability list for 5 advisories 2026-05-19 17:42:56 +08:00
Ashish Sharma 881dc4193a fix(mbedtls): bring back deprecated config MBEDTLS_ECJPAKE_C 2026-05-13 14:25:28 +08:00
Ashish Sharma a2ba1bc18c fix(mbedtls): keep psa crypto storage enabled with ITS backend
Closes https://github.com/espressif/esp-idf/issues/18555
2026-05-12 17:00:14 +08:00
Ashish Sharma 0e03327f69 fix(esp_crt_bundle): fixes verification with cross signed cert 2026-05-11 17:44:16 +08:00
Ashish Sharma 54915f72ed fix(http_request): shifts to HTTP/1.1 in example pytest 2026-05-11 17:41:45 +08:00
Ashish Sharma 737e97340b fix(esp_crt_bundle): fixes a potential memory leak with cross signed certificates
Closes https://github.com/espressif/esp-idf/issues/18512
Closes https://github.com/espressif/esp-idf/issues/18550
2026-05-11 17:41:45 +08:00
Ashish Sharma 0fb8ad002a fix(esp_http_server): fixes websocket recv error handling
Closes https://github.com/espressif/esp-idf/issues/18483
2026-05-06 14:26:31 +08:00
Ashish Sharma cd38d68bd1 feat(bootloader_support): remove P192 curve support 2026-04-30 18:04:00 +08:00
Ashish Sharma bd27c398e8 fix(esp_tee): optimise build size by removing unused configs 2026-04-30 18:02:07 +08:00
Ashish Sharma 8c0e41afed fix(wpa_supplicant): replace deprecated APIs and relax dpp test 2026-04-30 18:02:07 +08:00
Ashish Sharma 306639c690 fix(esp-tls): replace deprecated pk_ctx with PSA equivalent 2026-04-30 18:02:06 +08:00
Ashish Sharma 3b3372df18 fix(mbedtls): remove deprecated configs and migrate to PSA 2026-04-30 18:02:06 +08:00
Ashish Sharma 7a1ba8f4ca feat(mbedtls): update to version 4.1.1 2026-04-30 18:02:06 +08:00
Ashish Sharma ad713295a0 fix(https_request): enforce tls version for supported ciphersuite example 2026-04-27 16:07:20 +08:00
Ashish Sharma 5fc46ba652 fix(https_server): fixes failing example build for linux target 2026-04-21 19:54:46 +08:00
Ashish Sharma bcf0acdead fix(mbedtls): remove not required MBEDTLS_TLS_DISABLED config
Closes https://github.com/espressif/esp-idf/issues/18458
2026-04-21 17:48:48 +08:00
Ashish Sharma 14731c19f0 fix(esp_srp): reject SRP client public key when A mod N is zero 2026-04-10 17:12:53 +08:00
Ashish Sharma 9fa73b1d89 fix(esp_http_client): fix broken connection reuse
Closes https://github.com/espressif/esp-idf/issues/18430
2026-04-10 11:47:45 +08:00
Ashish Sharma f3238ec7d5 feat(esp_tls): extends esp-tls test apps 2026-04-09 14:09:31 +08:00
Ashish Sharma 25c0c9da24 fix(esp_tls): check tls connection finished before read/write operation 2026-04-09 14:09:31 +08:00
Ashish Sharma 9172b31d56 Merge branch 'feat/reenable_rsa_4096_key_perf_test' into 'master'
fix(mbedtls): reenable RSA 4096 bit key performance test

See merge request espressif/esp-idf!47228
2026-04-09 10:14:27 +08:00
Ashish Sharma a858f1683d fix(mbedtls): reenable RSA 4096 bit key performance test 2026-04-08 14:54:04 +08:00
Ashish Sharma 3c2f81c6a8 feat(esp_http_server): adds check for crlf in response creation 2026-04-08 10:59:56 +08:00
Ashish Sharma 1ebb75e598 feat(esp_local_ctrl): adds basic test app 2026-04-02 10:38:46 +08:00
Ashish Sharma 544e71e263 fix(esp_local_ctrl): fixes a potential double free 2026-04-02 09:57:23 +08:00
Ashish Sharma a2f4554f10 fix(protocomm): fixes potential issues that can lead to crash during device provisioning 2026-04-01 10:08:00 +08:00
Ashish Sharma 6966661fae Merge branch 'fix/fix_esp32p4_key_mgr_efuse_key_rev_le_3' into 'master'
fix(esp_hal_security): fixes failing hmac_hal_configure with efuse_key for p4 rev < 3

Closes IDFGH-17405

See merge request espressif/esp-idf!46875
2026-03-25 10:22:04 +08:00
Ashish Sharma dc7843b954 fix(esp_hal_security): fixes failing hmac_hal_configure with efuse_key for p4 rev < 3
Closes https://github.com/espressif/esp-idf/issues/18370
2026-03-24 15:23:23 +05:30
Ashish Sharma 7e2e09c15c feat(esp_http_server): Adds support to bind an interface to server
Closes https://github.com/espressif/esp-idf/issues/17859
2026-03-24 17:38:01 +08:00
Ashish Sharma b64c70acda fix: fixes memory leak with subprotocols 2026-03-23 18:37:21 +08:00
Ashish Sharma 9fc0ca13b3 fix: fixes websocket server possible null dereference 2026-03-23 18:37:21 +08:00
Ashish Sharma 2a22a22fd4 Merge branch 'fix/migration_guide_secure_boot_192_curve_deprecation' into 'master'
fix(secure_boot): marks 192 bit support curve legacy

See merge request espressif/esp-idf!46255
2026-03-17 15:32:58 +08:00
Ashish Sharma eb3922dd12 fix(mbedtls): fixes incorrect macro checks in PSA SHA driver
Closes https://github.com/espressif/esp-idf/issues/18354
2026-03-17 13:18:28 +08:00
Ashish Sharma 26d295ac94 Merge branch 'feat/delete_content_length_header_with_transfer_encoding' into 'master'
fix(esp_http_client): delete Content-Length header when using Transfer-Encoding

Closes IDFGH-17249

See merge request espressif/esp-idf!46658
2026-03-17 12:19:03 +08:00
Ashish Sharma 22c384ca9f Merge branch 'docs/add_psa_drivers_guide' into 'master'
doc: adds RSA DS docs for PSA Migration

Closes IDF-15242

See merge request espressif/esp-idf!45517
2026-03-17 10:27:02 +08:00
Ashish Sharma d8b02883dc fix(secure_boot): marks 192 bit support curve legacy 2026-03-17 10:25:44 +08:00
Ashish Sharma 795f0466b6 fix(esp_http_client): delete Content-Length header when using Transfer-Encoding
Closes https://github.com/espressif/esp-idf/issues/18242
2026-03-16 17:31:07 +08:00
Ashish Sharma 727c638645 Merge branch 'contrib/github_pr_18310' into 'master'
fix(esp_http_server): Dispatch PONG frames to WebSocket handler (GitHub PR)

Closes IDFGH-17331

See merge request espressif/esp-idf!46375
2026-03-16 16:45:10 +08:00
Ashish Sharma 5edf434f2e docs: adds RSA DS docs for PSA Migration 2026-03-16 16:38:26 +08:00
Ashish Sharma 4971424986 feat(http_server): adds example to test server pong response 2026-03-13 17:42:10 +08:00
Ashish Sharma abe0d37d94 docs(security): adds data partition verification docs 2026-03-04 10:22:33 +08:00
Ashish Sharma f93575a622 feat(secure_boot): adds api to verify data partition integrity
Closes https://github.com/espressif/esp-idf/issues/17482
2026-03-04 10:22:33 +08:00
Ashish Sharma 20a6888b41 feat(esp-tls): adds per ssl context state management 2026-03-03 11:21:56 +08:00
Ashish Sharma f0f8183281 fix: removes deprecated http_crypto sources 2026-03-03 11:16:49 +08:00
Ashish Sharma b5c3e27a38 fix: fixes failing dynamic buffer tests 2026-03-03 11:16:49 +08:00
Ashish Sharma a67686bc55 feat(blufi): update to AES-CTR 2026-03-03 10:16:21 +08:00
Ashish Sharma 4d3e40d7be fix: enable HARDWARE_MPI by default 2026-03-03 10:16:21 +08:00
Ashish Sharma 56d2fd6757 fix(esp_http_server): remove http server unused psa migration 2026-03-02 14:48:41 +08:00
Ashish Sharma 7aa56f8d68 fix(esp_http_server): fix ws server subprotocol match 2026-03-02 14:47:27 +08:00
Ashish Sharma 4bec0bc5c2 fix(bleprph): skip using tls configs for bt examples 2026-03-02 10:48:10 +08:00
Ashish Sharma 5028b6230f feat(http_server): improve websocket server handling
1. Adds post handshake callback
2. Removes requirement to handle HTTP_GET message in websocket handler

Closes https://github.com/espressif/esp-idf/issues/18215
2026-02-27 09:59:05 +08:00
Ashish Sharma c9df1df830 Merge branch 'contrib/github_pr_18241' into 'master'
fix(esp_https_server): SSL context leak when HTTPS server fails to start (GitHub PR)

Closes IDFGH-17248

See merge request espressif/esp-idf!45983
2026-02-23 17:00:40 +08:00
Ashish Sharma 0b6843f2ed fix(mbedtls): updates crypto performance numbers 2026-02-11 23:35:59 +08:00
Ashish Sharma 8a8c4c175e fix(mbedtls): enable pthread threading by default 2026-02-11 17:59:04 +08:00
Ashish Sharma b3e1c03d97 fix(mbedtls): revert struct member name change esp_rsa_ds_data to esp_ds_data 2026-02-06 17:33:17 +08:00
Ashish Sharma 6f5b078ed6 feat: adds DS Sign capabilities for ESP32S2 2026-02-05 10:12:25 +08:00
Ashish Sharma e06a7dd791 feat: adds new Kconfig variable for DS peripheral 2026-02-05 10:12:25 +08:00
Ashish Sharma 1d185a6548 feat: adds PSA DS driver support 2026-02-05 10:12:25 +08:00
Ashish Sharma 470964ffdd fix: make the PSA compile definitions public 2026-02-03 14:55:44 +08:00
Ashish Sharma 523194465b change(mbedtls): rename builtin to mbed-builtin 2026-02-03 14:55:44 +08:00
Ashish Sharma 08f02b0faa change(mbedtls): update mbedTLS default configs
1. Disables MBEDTLS_ARIA_C by default
2. SECP192R1 support is disabled by default
2026-02-03 14:55:44 +08:00
Ashish Sharma 1db7fac8da feat(esp_http_client): adds support to save response headers
Closes https://github.com/espressif/esp-idf/issues/17695
2026-01-28 10:20:47 +08:00
Ashish Sharma c0a224bffc fix: Skip writing to esp-idf directory when tfpsacrypto is built
Closes https://github.com/espressif/esp-idf/issues/18163
2026-01-27 11:25:27 +08:00
Ashish Sharma a7abc3b8e8 feat(esp_http_client): adds API to get transport socket 2026-01-21 17:04:13 +08:00
Ashish Sharma 1a0da0c8b5 fix: stop reading ws data when peer closes the connection
Closes https://github.com/espressif/esp-idf/issues/17822
2026-01-19 13:29:41 +08:00
Ashish Sharma ba25e86b82 fix: fixes potential ws server deadlock with blocking work queue
Closes https://github.com/espressif/esp-idf/issues/17591
2026-01-14 11:17:33 +08:00
Ashish Sharma 22f0d73d51 Merge branch 'fix/file_serving_pytest_failure' into 'master'
fix(file_server): File servering example pytest failure

Closes IDFCI-2392

See merge request espressif/esp-idf!44704
2026-01-08 14:27:35 +08:00
Ashish Sharma 22d7c20b31 feat(esp_https_server): adds support for user callback on handshake failure
Closes https://github.com/espressif/esp-idf/issues/18053
2026-01-07 17:26:00 +08:00
Ashish Sharma 3d5775e22b feat: adds PSA MD5 driver support 2026-01-07 10:41:33 +08:00
Ashish Sharma 7093db9f10 fix(esp_http_client): fix incorrect digest calculation for SHA256 auth digest
According to RFC 7616, nonce-prime and cnonce-prime is used for SHA-256-sess only and not for SHA-256.
This commit updates the check and uses nonce only for "-sess" algorithms.

Regression from 66995965e7
2026-01-06 17:16:11 +08:00
Ashish Sharma 5f8570ef00 fix: fixes failing tee_basic example build 2026-01-06 16:15:54 +08:00
Ashish Sharma cf24bf97f6 fix: fixes failing pipeline with internal wifi mbedtls client 2026-01-05 15:04:03 +08:00