-
Bug
-
Resolution: Done
-
Normal
-
None
-
rhel-8.10, rhel-9.4, rhel-10.0.beta
-
Low
-
None
-
None
-
False
-
False
-
-
None
-
None
-
None
-
Unspecified
-
Unspecified
-
Unspecified
This specific note is incorrect and should be removed from the release notes:
"To improve security, the built-in hashlib implementations of the SHA1, SHA3, SHA2-384, SHA2-512, and MD5 cryptographic algorithms have been replaced with formally verified code from the HACL* project. The built-in implementations remain available as fallback if OpenSSL does not provide them. "
While it's a highlight for the upstream release of Python 3.12, it doesn't apply to RHEL as we do not compile the HACL cryptographic algorithms there and we rely solely on OpenSSL.