[lamps] Fwd: [Errata Verified] RFC5652 (6250)

Russ Housley <[email protected]> Fri, 7 Aug 2020 08:15:20 -0400
Newsgroups gmane.ietf.smime
Message-ID <[email protected]>
--===============2749920850071795345==
Content-Type: multipart/alternative;
 boundary="Apple-Mail=_93F060D0-28E3-474C-9468-153BA797B334"


--Apple-Mail=_93F060D0-28E3-474C-9468-153BA797B334
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain;
	charset=us-ascii



> From: RFC Errata System <[email protected] =
<mailto:[email protected]>>
> Subject: [Errata Verified] RFC5652 (6250)
> Date: August 7, 2020 at 1:00:34 AM EDT
> To: [email protected] <mailto:[email protected]>, =
[email protected] <mailto:[email protected]>
> Cc: [email protected] <mailto:[email protected]>, [email protected] =
<mailto:[email protected]>, [email protected] <mailto:[email protected]>, =
[email protected] <mailto:[email protected]>
>=20
> The following errata report has been verified for RFC5652,
> "Cryptographic Message Syntax (CMS)".=20
>=20
> --------------------------------------
> You may review the report below and at:
> https://www.rfc-editor.org/errata/eid6250 =
<https://www.rfc-editor.org/errata/eid6250>
>=20
> --------------------------------------
> Status: Verified
> Type: Technical
>=20
> Reported by: Russ Housley <[email protected]>
> Date Reported: 2020-08-06
> Verified by: Benjamin Kaduk (IESG)
>=20
> Section: 9.2
>=20
> Original Text
> -------------
>   If the authAttrs field is present, the content-type attribute (as
>   described in Section 11.1) and the message-digest attribute (as
>   described in Section 11.2) MUST be included, and the input to the =
MAC
>   calculation process is the DER encoding of authAttrs.  A separate
>   encoding of the authAttrs field is performed for message digest
>   calculation.  The IMPLICIT [2] tag in the authAttrs field is not =
used
>   for the DER encoding, rather an EXPLICIT SET OF tag is used.  That
>   is, the DER encoding of the SET OF tag, rather than of the IMPLICIT
>   [2] tag, is to be included in the message digest calculation along
>   with the length and content octets of the authAttrs value.
>=20
> Corrected Text
> --------------
>   If the authAttrs field is present, the content-type attribute (as
>   described in Section 11.1) and the message-digest attribute (as
>   described in Section 11.2) MUST be included, and the input to the =
MAC
>   calculation process is the DER encoding of authAttrs.  A separate
>   encoding of the authAttrs field is performed for message digest
>   calculation.  The IMPLICIT [2] tag in the authAttrs field is not =
used
>   for the DER encoding, rather an EXPLICIT SET OF tag is used.  That
>   is, the DER encoding of the SET OF tag, rather than of the IMPLICIT
>   [2] tag, is to be included in the MAC calculation along
>   with the length and content octets of the authAttrs value.
>=20
> Notes
> -----
> The paragraph is talking about the input to a MAC calculation, not the =
input to message digest calculation.
>=20
> --------------------------------------
> RFC5652 (draft-ietf-smime-rfc3852bis-00)
> --------------------------------------
> Title               : Cryptographic Message Syntax (CMS)
> Publication Date    : September 2009
> Author(s)           : R. Housley
> Category            : DRAFT STANDARD
> Source              : S/MIME Mail Security
> Area                : Security
> Stream              : IETF
> Verifying Party     : IESG



--Apple-Mail=_93F060D0-28E3-474C-9468-153BA797B334
Content-Transfer-Encoding: quoted-printable
Content-Type: text/html;
	charset=us-ascii

<html><head><meta http-equiv=3D"Content-Type" content=3D"text/html; =
charset=3Dus-ascii"></head><body style=3D"word-wrap: break-word; =
-webkit-nbsp-mode: space; line-break: after-white-space;" class=3D""><meta=
 http-equiv=3D"Content-Type" content=3D"text/html; charset=3Dus-ascii" =
class=3D""><div style=3D"word-wrap: break-word; -webkit-nbsp-mode: =
space; line-break: after-white-space;" class=3D""><br class=3D""><div =
class=3D""><br class=3D""><blockquote type=3D"cite" class=3D""><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px;" class=3D""><span style=3D"font-family: =
-webkit-system-font, Helvetica Neue, Helvetica, sans-serif; =
color:rgba(0, 0, 0, 1.0);" class=3D""><b class=3D"">From: =
</b></span><span style=3D"font-family: -webkit-system-font, Helvetica =
Neue, Helvetica, sans-serif;" class=3D"">RFC Errata System &lt;<a =
href=3D"mailto:[email protected]" =
class=3D"">[email protected]</a>&gt;<br =
class=3D""></span></div><div style=3D"margin-top: 0px; margin-right: =
0px; margin-bottom: 0px; margin-left: 0px;" class=3D""><span =
style=3D"font-family: -webkit-system-font, Helvetica Neue, Helvetica, =
sans-serif; color:rgba(0, 0, 0, 1.0);" class=3D""><b class=3D"">Subject: =
</b></span><span style=3D"font-family: -webkit-system-font, Helvetica =
Neue, Helvetica, sans-serif;" class=3D""><b class=3D"">[Errata Verified] =
RFC5652 (6250)</b><br class=3D""></span></div><div style=3D"margin-top: =
0px; margin-right: 0px; margin-bottom: 0px; margin-left: 0px;" =
class=3D""><span style=3D"font-family: -webkit-system-font, Helvetica =
Neue, Helvetica, sans-serif; color:rgba(0, 0, 0, 1.0);" class=3D""><b =
class=3D"">Date: </b></span><span style=3D"font-family: =
-webkit-system-font, Helvetica Neue, Helvetica, sans-serif;" =
class=3D"">August 7, 2020 at 1:00:34 AM EDT<br =
class=3D""></span></div><div style=3D"margin-top: 0px; margin-right: =
0px; margin-bottom: 0px; margin-left: 0px;" class=3D""><span =
style=3D"font-family: -webkit-system-font, Helvetica Neue, Helvetica, =
sans-serif; color:rgba(0, 0, 0, 1.0);" class=3D""><b class=3D"">To: =
</b></span><span style=3D"font-family: -webkit-system-font, Helvetica =
Neue, Helvetica, sans-serif;" class=3D""><a =
href=3D"mailto:[email protected]" class=3D"">[email protected]</a>, =
<a href=3D"mailto:[email protected]" =
class=3D"">[email protected]</a><br class=3D""></span></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px;" class=3D""><span style=3D"font-family: =
-webkit-system-font, Helvetica Neue, Helvetica, sans-serif; =
color:rgba(0, 0, 0, 1.0);" class=3D""><b class=3D"">Cc: </b></span><span =
style=3D"font-family: -webkit-system-font, Helvetica Neue, Helvetica, =
sans-serif;" class=3D""><a href=3D"mailto:[email protected]" =
class=3D"">[email protected]</a>, <a href=3D"mailto:[email protected]" =
class=3D"">[email protected]</a>, <a href=3D"mailto:[email protected]" =
class=3D"">[email protected]</a>, <a =
href=3D"mailto:[email protected]" =
class=3D"">[email protected]</a><br class=3D""></span></div><br =
class=3D""><div class=3D""><div class=3D"">The following errata report =
has been verified for RFC5652,<br class=3D"">"Cryptographic Message =
Syntax (CMS)". <br class=3D""><br =
class=3D"">--------------------------------------<br class=3D"">You may =
review the report below and at:<br class=3D""><a =
href=3D"https://www.rfc-editor.org/errata/eid6250" =
class=3D"">https://www.rfc-editor.org/errata/eid6250</a><br class=3D""><br=
 class=3D"">--------------------------------------<br class=3D"">Status: =
Verified<br class=3D"">Type: Technical<br class=3D""><br =
class=3D"">Reported by: Russ Housley &lt;<a =
href=3D"mailto:[email protected]" =
class=3D"">[email protected]</a>&gt;<br class=3D"">Date Reported: =
2020-08-06<br class=3D"">Verified by: Benjamin Kaduk (IESG)<br =
class=3D""><br class=3D"">Section: 9.2<br class=3D""><br =
class=3D"">Original Text<br class=3D"">-------------<br class=3D""> =
&nbsp;&nbsp;If the authAttrs field is present, the content-type =
attribute (as<br class=3D""> &nbsp;&nbsp;described in Section 11.1) and =
the message-digest attribute (as<br class=3D""> &nbsp;&nbsp;described in =
Section 11.2) MUST be included, and the input to the MAC<br class=3D""> =
&nbsp;&nbsp;calculation process is the DER encoding of authAttrs. =
&nbsp;A separate<br class=3D""> &nbsp;&nbsp;encoding of the authAttrs =
field is performed for message digest<br class=3D""> =
&nbsp;&nbsp;calculation. &nbsp;The IMPLICIT [2] tag in the authAttrs =
field is not used<br class=3D""> &nbsp;&nbsp;for the DER encoding, =
rather an EXPLICIT SET OF tag is used. &nbsp;That<br class=3D""> =
&nbsp;&nbsp;is, the DER encoding of the SET OF tag, rather than of the =
IMPLICIT<br class=3D""> &nbsp;&nbsp;[2] tag, is to be included in the =
message digest calculation along<br class=3D""> &nbsp;&nbsp;with the =
length and content octets of the authAttrs value.<br class=3D""><br =
class=3D"">Corrected Text<br class=3D"">--------------<br class=3D""> =
&nbsp;&nbsp;If the authAttrs field is present, the content-type =
attribute (as<br class=3D""> &nbsp;&nbsp;described in Section 11.1) and =
the message-digest attribute (as<br class=3D""> &nbsp;&nbsp;described in =
Section 11.2) MUST be included, and the input to the MAC<br class=3D""> =
&nbsp;&nbsp;calculation process is the DER encoding of authAttrs. =
&nbsp;A separate<br class=3D""> &nbsp;&nbsp;encoding of the authAttrs =
field is performed for message digest<br class=3D""> =
&nbsp;&nbsp;calculation. &nbsp;The IMPLICIT [2] tag in the authAttrs =
field is not used<br class=3D""> &nbsp;&nbsp;for the DER encoding, =
rather an EXPLICIT SET OF tag is used. &nbsp;That<br class=3D""> =
&nbsp;&nbsp;is, the DER encoding of the SET OF tag, rather than of the =
IMPLICIT<br class=3D""> &nbsp;&nbsp;[2] tag, is to be included in the =
MAC calculation along<br class=3D""> &nbsp;&nbsp;with the length and =
content octets of the authAttrs value.<br class=3D""><br =
class=3D"">Notes<br class=3D"">-----<br class=3D"">The paragraph is =
talking about the input to a MAC calculation, not the input to message =
digest calculation.<br class=3D""><br =
class=3D"">--------------------------------------<br class=3D"">RFC5652 =
(draft-ietf-smime-rfc3852bis-00)<br =
class=3D"">--------------------------------------<br class=3D"">Title =
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;&nbsp;: Cryptographic Message Syntax (CMS)<br class=3D"">Publication =
Date &nbsp;&nbsp;&nbsp;: September 2009<br class=3D"">Author(s) =
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;: R. =
Housley<br class=3D"">Category =
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;: =
DRAFT STANDARD<br class=3D"">Source =
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;: S/MIME Mail Security<br class=3D"">Area =
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;&nbsp;&nbsp;: Security<br class=3D"">Stream =
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;: IETF<br class=3D"">Verifying Party &nbsp;&nbsp;&nbsp;&nbsp;: =
IESG<br class=3D""></div></div></blockquote></div><br class=3D""></div><br=
 class=3D""></body></html>=

--Apple-Mail=_93F060D0-28E3-474C-9468-153BA797B334--


--===============2749920850071795345==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
smime mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/smime

--===============2749920850071795345==--