Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-70825

Support for hybrid ML-KEM key exchange in libssh

Linking RHIVOS CVEs to...Migration: Automation ...Sync from "Extern...XMLWordPrintable

    • libssh-0.12.0-1.el10
    • No
    • Important
    • rhel-security-crypto-diamonds
    • ssg_security
    • 26
    • 0
    • QE ack, Dev ack
    • False
    • False
    • Hide

      None

      Show
      None
    • Yes
    • None
    • Hide

      AC1) passing the upstream testsĀ 

      AC2) creating and passing the downstream test

      Show
      AC1) passing the upstream testsĀ  AC2) creating and passing the downstream test
    • Pass
    • Needed
    • Automated
    • Feature
    • Hide
      The new libssh release adds support of all three hybrid ML-KEM key exchange methods defined by draft-ietf-sshm-mlkem-hybrid-kex:
      - mlkem768nistp256-sha256
      - mlkem768x25519-sha256
      - mlkem1024nistp384-sha384
      The new KEX methods are not yet supported in FIPS mode.
      Show
      The new libssh release adds support of all three hybrid ML-KEM key exchange methods defined by draft-ietf-sshm-mlkem-hybrid-kex: - mlkem768nistp256-sha256 - mlkem768x25519-sha256 - mlkem1024nistp384-sha384 The new KEX methods are not yet supported in FIPS mode.
    • Proposed
    • None

      We should have support for all three key exchange groups defined in draft-kampanakis-curdle-ssh-pq-ke-03

              pzacik@redhat.com Pavol Zacik
              hkario@redhat.com Alicja Kario
              Pavol Zacik Pavol Zacik
              Ganna Starovoytova Ganna Starovoytova
              Mirek Jahoda Mirek Jahoda
              Votes:
              0 Vote for this issue
              Watchers:
              10 Start watching this issue

                Created:
                Updated: