JDK-8347596 : Update HSS/LMS public key encoding
  • Type: Bug
  • Component: security-libs
  • Sub-Component: java.security
  • Affected Version: 21,24
  • Priority: P3
  • Status: Resolved
  • Resolution: Fixed
  • Submitted: 2025-01-13
  • Updated: 2025-04-28
  • Resolved: 2025-01-14
The Version table provides details related to the release that this issue/RFE will be addressed.

Unresolved : Release in which this issue/RFE will be addressed.
Resolved: Release in which this issue/RFE has been resolved.
Fixed : Release in which this issue/RFE has been fixed. The release containing this fix may be available for download as an Early Access Release or a General Availability Release.

To download the current JDK release, click here.
JDK 21 JDK 23 JDK 24 JDK 25
21.0.8-oracleFixed 23-poolUnresolved 24Fixed 25 b06Fixed
Related Reports
Relates :  
Sub Tasks
JDK-8347612 :  
Description
https://www.rfc-editor.org/rfc/rfc9708.html#name-changes-since-rfc-8708:

The pk-HSS-LMS-HashSig definition is updated to reflect no ASN.1 wrapping for the public key. 

We still have the wrapping.
Comments
A pull request was submitted for review. Branch: master URL: https://git.openjdk.org/jdk21u-dev/pull/1719 Date: 2025-04-25 21:50:11 +0000
25-04-2025

A pull request was submitted for review. Branch: master URL: https://git.openjdk.org/jdk21u-dev/pull/1704 Date: 2025-04-24 14:56:52 +0000
24-04-2025

Fix request [21u] I backport this for parity with 21.0.8-oracle. Low to medium risk. Brings implementation closer to standard, but change in important component. I omitted coding as JDK-8302233 is not in 21. Test passes and fails wihtout the fix.
24-04-2025

A pull request was submitted for review. Branch: jdk24 URL: https://git.openjdk.org/jdk/pull/23119 Date: 2025-01-14 23:10:36 +0000
14-01-2025

Changeset: 0ee6ba9c Branch: master Author: Weijun Wang <weijun@openjdk.org> Date: 2025-01-14 23:06:45 +0000 URL: https://git.openjdk.org/jdk/commit/0ee6ba9c4c998baeb733363d00db138864f49406
14-01-2025

A pull request was submitted for review. Branch: master URL: https://git.openjdk.org/jdk/pull/23083 Date: 2025-01-13 17:42:12 +0000
13-01-2025