2 All notable changes to this project will be documented in this file.
4 ## [unreleased] - (? 2023 - [unreleased changes])
6 ## [4.5.3] - (December 2022 - [4.5.3 changes])
7 - Updates baseline to upstream SQLite 3.39.4
9 ## [4.5.2] - (August 2022 - [4.5.2 changes])
10 - Updates source code baseline to upstream SQLite 3.39.2
11 - Simplifies OpenSSL version conditional code
12 - Fixes issue where PRAGMA cipher_memory_security could report OFF when it was actually ON
13 - Fixes fix unfreed OpenSSL allocation when compiled against version 3
14 - Fixes support for building against recent versions of BoringSSL
16 ## [4.5.1] - (March 2022 - [4.5.1 changes])
17 - Updates source code baseline to upstream SQLite 3.37.2
18 - Adds PRAGMA cipher_log and cipher_log_level features to allow logging of TRACE, DEBUG, INFO, WARN, and ERROR messages to stdout, stderr, file, or logcat
19 - Modifies PRAGMA cipher_profile to use sqlite3_trace_v2 and adds logcat target for Android
20 - Updates OpenSSL provider to use EVP_MAC API with version 3+
21 - Adds new PRAGMA cipher_test_on, cipher_test_off, and cipher_test_rand (available when compiled with -DSQLCIPHER_TEST) to facilitate simulation of error conditions
22 - Fixes PRAGMA cipher_integrity_check to work properly with databases larger that 2GB
23 - Fixes missing munlock before free for context internal buffer (thanks to Fedor Indutny)
25 ## [4.5.0] - (October 2021 - [4.5.0 changes])
26 - Updates baseline to upstream SQLite 3.36.0
27 - Changes the enhanced memory security feature to be DISABLED by default; once enabled by PRAGMA cipher_memory_security = ON, it can't be turned off for the lifetime of the process
28 - Changes PRAGMA cipher_migrate to permanently enter an error state if a migration fails
29 - Fixes memory locking/unlocking issue with realloc implementation on hardened runtimes when memory security is enabled
30 - Fixes cipher_migrate to cleanup the temporary database if a migration fails
31 - Removes logging of non-string pointers when compiling with trace level logging
33 ## [4.4.3] - (February 2021 - [4.4.3 changes])
34 - Updates baseline to ustream SQLite 3.34.1
35 - Fixes sqlcipher_export handling of NULL parameters
36 - Removes randomization of rekey-delete tests to avoid false test failures
37 - Changes internal usage of sqlite_master to sqlite_schema
38 - Omits unusued profiling function under certain defines to avoid compiler warnings
40 ## [4.4.2] - (November 2020 - [4.4.2 changes])
41 - Improve error handling to resolve potential corruption if an encryption operation failed while operating in WAL mode
42 - Changes to OpenSSL library cryptographic provider to reduce initialization complexity
43 - Adjust cipher_integrity_check to skip locking page to avoid a spurious error report for very large databases
44 - Miscellaneous code and comment cleanup
46 ## [4.4.1] - (October 2020 - [4.4.1 changes])
47 - Updates baseline to upstream SQLite 3.33.0
48 - Fixes double-free bug in cipher_default_plaintext_header_size
49 - Changes SQLCipher tests to use suite runner
50 - Improvement to cipher_integrity_check tests to minimize false negatives
51 - Deprecates PRAGMA cipher_store_pass
53 ## [4.4.0] - (May 2020 - [4.4.0 changes])
54 - Updates baseline to upstream SQLite 3.31.0
55 - Adjusts shell to report SQLCipher version alongside SQLite version
56 - Fixes various build warnings under several compilers
57 - Removes unused id and status functions from provider interface
59 ## [4.3.0] - (November 2019 - [4.3.0 changes])
60 - Updates baseline to upstream SQLite 3.30.1
61 - PRAGMA key now returns text result value "ok" after execution
62 - Adjusts backup API so that encrypted to encrypted backups are permitted
63 - Adds NSS crypto provider implementation
64 - Fixes OpenSSL provider compatibility with BoringSSL
65 - Separates memory related traces to reduce verbosity of logging
66 - Fixes output of PRAGMA cipher_integrity_check on big endian platforms
67 - Cryptograpic provider interface cleanup
68 - Rework of mutex allocation and management
69 - Resolves miscellaneous build warnings
70 - Force error state at database pager level if SQLCipher initialization fails
72 ## [4.2.0] - (May 2019 - [4.2.0 changes])
73 - Adds PRAGMA cipher_integrity_check to perform independent verification of page HMACs
74 - Updates baseline to upstream SQLite 3.28.0
75 - Improves PRAGMA cipher_migrate to handle keys containing non-terminating zero bytes
77 ## [4.1.0] - (March 2019 - [4.1.0 changes])
78 - Defer reading salt from header until key derivation is triggered
79 - Clarify usage of sqlite3_rekey for plaintext databases in header
80 - Normalize attach behavior when key is not yet derived
81 - Adds PRAGMA cipher_settings to query current database codec settings
82 - Adds PRAGMA cipher_default_settings to query current default SQLCipher options
83 - PRAGMA cipher_hmac_pgno is now deprecated
84 - PRAGMA cipher_hmac_salt_mask is now deprecated
85 - PRAGMA fast_kdf_iter is now deprecated
86 - Improve sqlcipher_export routine and restore all database flags
87 - Clear codec data buffers if a crypographic provider operation fails
88 - Disable backup API for encrypted databases (this was previously documented as not-working and non-supported, but will now explicitly error out on initialization)
89 - Updates baseline to upstream SQLite 3.27.2
91 ## [4.0.1] - (December 2018 - [4.0.1 changes])
92 - Based on upstream SQLite 3.26.0 (addresses SQLite “Magellan” issue)
93 - Adds PRAGMA cipher_compatibility and cipher_default_compatibility which take automatcially configure appropriate compatibility settings for the specified SQLCipher major version number
94 - Filters attach statements with KEY parameters from readline history
95 - Fixes crash in command line shell with empty input (i.e. ^D)
96 - Fixes warnings when compiled with strict-prototypes
98 ## [4.0.0] - (November 2018 - [4.0.0 changes])
100 - Default page size for databases increased to 4096 bytes (up from 1024) *
101 - Default PBKDF2 iterations increased to 256,000 (up from 64,000) *
102 - Default KDF algorithm is now PBKDF2-HMAC-SHA512 (from PBKDF2-HMAC-SHA1) *
103 - Default HMAC algorithm is now HMAC-SHA512 (from HMAC-SHA1) *
104 - PRAGMA cipher is now disabled and no longer supported (after multi-year deprecation) *
105 - PRAGMA rekey_cipher is now disabled and no longer supported *
106 - PRAGMA rekey_kdf_iter is now disabled and no longer supported *
107 - By default all memory allocated internally by SQLite before the memory is wiped before it is freed
108 - PRAGMA cipher_memory_security: allows full memory wiping to be disabled for performance when the feature is not required
109 - PRAGMA cipher_kdf_algorithm, cipher_default_kdf_algorithm to control KDF algorithm selection between PBKDF2-HMAC-SHA1, PBKDF2-HMAC-SHA256 and PBKDF2-HMAC-SHA512
110 - PRAGMA cipher_hmac_algorithm, cipher_default_hmac_algorithm to control HMAC algorithm selection between HMAC-SHA1, HMAC-SHA256 and PBKDF2-HMAC-SHA512
111 - Based on upstream SQLite 3.25.2
112 - When compiled with readline support, PRAGMA key and rekey lines will no longer be
114 - Adds second optional parameter to sqlcipher_export to specify source database to
115 support bidirectional exports
116 - Fixes compatibility with LibreSSL 2.7.0+
117 - Fixes compatibility with OpenSSL 1.1.x
118 - Simplified and improved performance for PRAGMA cipher_migrate when migrating older database versions
119 - Refactoring of SQLCipher tests into separate files by test type
120 - PRAGMA cipher_plaintext_header_size and cipher_default_plaintext_header_size: allocates a portion of the database header which will not be encrypted to allow identification as a SQLite database
121 - PRAGMA cipher_salt: retrieve or set the salt value for the database
122 - Adds Podspec for using tagged versions of SQLCipher
123 - Define SQLCIPHER_PROFILE_USE_FOPEN for WinXP support
124 - Improved error handling for cryptographic providers
125 - Improved memory handling for PRAGMA commands that return values
126 - Improved version reporting to assist with identification of distribution
127 - Major rewrite and simplification of internal codec and pager extension
128 - Fixes compilation with --disable-amalgamation
129 - Removes sqlcipher.xcodeproj build support
131 ## [3.4.2] - (December 2017 - [3.4.2 changes])
133 - Added support for building with LibreSSL
136 - Merge upstream SQLite 3.20.1
137 - Text strings for `SQLITE_ERROR` and `SQLITE_NOTADB` changed to match upstream SQLite
138 - Remove static modifier for codec password functions
139 - Page alignment for `mlock`
140 - Fix segfault in `sqlcipher_cipher_ctx_cmp` during rekey operation
141 - Fix `sqlcipher_export` and `cipher_migrate` when tracing API in use
142 - Validate codec page size when setting
143 - Guard OpenSSL initialization and cleanup routines
144 - Allow additional linker options to be passed via command line for Windows platforms
146 ## [3.4.1] - (December 2016 - [3.4.1 changes])
148 - Added support for OpenSSL 1.1.0
151 - Merged upstream SQLite 3.15.2
153 ## [3.4.0] - (April 2016 - [3.4.0 changes])
155 - Added `PRAGMA cipher_provider_version`
158 - Merged upstream SQLite 3.11.0
161 - Deprecated `PRAGMA cipher` command
163 ## [3.3.1] - (July 2015 - [3.3.1 changes])
165 - Merge upstream SQLite 3.8.10.2
166 - Fixed segfault when provided an invalid cipher name
167 - Check for codec context when performing `PRAGMA cipher_store_pass`
168 - Remove extraneous null check in `PRAGMA cipher_migrate`
170 ## [3.3.0] - (March 2015 - [3.3.0 changes])
172 - Added FIPS API calls within the OpenSSL crypto provider
173 - `PRAGMA cipher_default_page_size` - support for attaching non-default page sizes
176 - Merged upstream SQLite 3.8.8.3
178 ## [3.2.0] - (September 2014 - [3.2.0 changes])
180 - Added `PRAGMA cipher_store_pass`
183 - Merged upstream SQLite 3.8.6
184 - Renmed README to README.md
186 ## [3.1.0] - (April 2014 - [3.1.0 changes])
188 - Added `PRAGMA cipher_profile`
191 - Merged upstream SQLite 3.8.4.3
193 ## [3.0.1] - (December 2013 - [3.0.1 changes])
195 - Added `PRAGMA cipher_add_random` to source external entropy
198 - Fix `PRAGMA cipher_migrate` to handle passphrases longer than 64 characters & raw keys
199 - Improvements to the libtomcrypt provider
201 ## [3.0.0] - (November 2013 - [3.0.0 changes])
203 - Added `PRAGMA cipher_migrate` to migrate older database file formats
206 - Merged upstream SQLite 3.8.0.2
207 - Remove usage of VirtualLock/Unlock on WinRT and Windows Phone
208 - Ignore HMAC read during Btree file copy
209 - Fix lib naming for pkg-config
210 - Use _v2 version of `sqlite3_key` and `sqlite3_rekey`
211 - Update xcodeproj file
214 - Change KDF iteration length from 4,000 to 64,000
216 [unreleased]: https://github.com/sqlcipher/sqlcipher/compare/v4.5.3...prerelease
217 [4.5.3]: https://github.com/sqlcipher/sqlcipher/tree/v4.5.3
218 [4.5.3 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.5.2...v4.5.3
219 [4.5.2]: https://github.com/sqlcipher/sqlcipher/tree/v4.5.2
220 [4.5.2 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.5.1...v4.5.2
221 [4.5.1]: https://github.com/sqlcipher/sqlcipher/tree/v4.5.1
222 [4.5.1 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.5.0...v4.5.1
223 [4.5.0]: https://github.com/sqlcipher/sqlcipher/tree/v4.5.0
224 [4.5.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.4.3...v4.5.0
225 [4.4.3]: https://github.com/sqlcipher/sqlcipher/tree/v4.4.3
226 [4.4.3 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.4.2...v4.4.3
227 [4.4.2]: https://github.com/sqlcipher/sqlcipher/tree/v4.4.2
228 [4.4.2 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.4.1...v4.4.2
229 [4.4.1]: https://github.com/sqlcipher/sqlcipher/tree/v4.4.1
230 [4.4.1 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.4.0...v4.4.1
231 [4.4.0]: https://github.com/sqlcipher/sqlcipher/tree/v4.4.0
232 [4.4.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.3.0...v4.4.0
233 [4.3.0]: https://github.com/sqlcipher/sqlcipher/tree/v4.3.0
234 [4.3.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.2.0...v4.3.0
235 [4.2.0]: https://github.com/sqlcipher/sqlcipher/tree/v4.2.0
236 [4.2.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.1.0...v4.2.0
237 [4.1.0]: https://github.com/sqlcipher/sqlcipher/tree/v4.1.0
238 [4.1.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.0.1...v4.1.0
239 [4.0.1]: https://github.com/sqlcipher/sqlcipher/tree/v4.0.1
240 [4.0.1 changes]: https://github.com/sqlcipher/sqlcipher/compare/v4.0.0...v4.0.1
241 [4.0.0]: https://github.com/sqlcipher/sqlcipher/tree/v4.0.0
242 [4.0.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v3.4.2...v4.0.0
243 [3.4.2]: https://github.com/sqlcipher/sqlcipher/tree/v3.4.2
244 [3.4.2 changes]: https://github.com/sqlcipher/sqlcipher/compare/v3.4.1...v3.4.2
245 [3.4.1]: https://github.com/sqlcipher/sqlcipher/tree/v3.4.1
246 [3.4.1 changes]: https://github.com/sqlcipher/sqlcipher/compare/v3.4.0...v3.4.1
247 [3.4.0]: https://github.com/sqlcipher/sqlcipher/tree/v3.4.0
248 [3.4.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v3.3.1...v3.4.0
249 [3.3.1]: https://github.com/sqlcipher/sqlcipher/tree/v3.3.1
250 [3.3.1 changes]: https://github.com/sqlcipher/sqlcipher/compare/v3.3.0...v3.3.1
251 [3.3.0]: https://github.com/sqlcipher/sqlcipher/tree/v3.3.0
252 [3.3.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v3.2.0...v3.3.0
253 [3.2.0]: https://github.com/sqlcipher/sqlcipher/tree/v3.2.0
254 [3.2.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v3.1.0...v3.2.0
255 [3.1.0]: https://github.com/sqlcipher/sqlcipher/tree/v3.1.0
256 [3.1.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v3.0.1...v3.1.0
257 [3.0.1]: https://github.com/sqlcipher/sqlcipher/tree/v3.0.1
258 [3.0.1 changes]: https://github.com/sqlcipher/sqlcipher/compare/v3.0.0...v3.0.1
259 [3.0.0]: https://github.com/sqlcipher/sqlcipher/tree/v3.0.0
260 [3.0.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v2.2.0...v3.0.0
261 [2.2.0]: https://github.com/sqlcipher/sqlcipher/tree/v2.2.0
262 [2.2.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v2.1.1...v2.2.0
263 [2.1.1]: https://github.com/sqlcipher/sqlcipher/tree/v2.1.1
264 [2.1.1 changes]: https://github.com/sqlcipher/sqlcipher/compare/v2.1.0...v2.1.1
265 [2.1.0]: https://github.com/sqlcipher/sqlcipher/tree/v2.1.0
266 [2.1.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v2.0.6...v2.1.0
267 [2.0.6]: https://github.com/sqlcipher/sqlcipher/tree/v2.0.6
268 [2.0.6 changes]: https://github.com/sqlcipher/sqlcipher/compare/v2.0.5...v2.0.6
269 [2.0.5]: https://github.com/sqlcipher/sqlcipher/tree/v2.0.5
270 [2.0.5 changes]: https://github.com/sqlcipher/sqlcipher/compare/v2.0.3...v2.0.5
271 [2.0.3]: https://github.com/sqlcipher/sqlcipher/tree/v2.0.3
272 [2.0.3 changes]: https://github.com/sqlcipher/sqlcipher/compare/v2.0.0...v2.0.3
273 [2.0.0]: https://github.com/sqlcipher/sqlcipher/tree/v2.0.0
274 [2.0.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.10...v2.0.0
275 [1.1.10]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.10
276 [1.1.10 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.9...v1.1.10
277 [1.1.9]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.9
278 [1.1.9 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.8...v1.1.9
279 [1.1.8]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.8
280 [1.1.8 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.7...v1.1.8
281 [1.1.7]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.7
282 [1.1.7 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.6...v1.1.7
283 [1.1.6]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.6
284 [1.1.6 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.5...v1.1.6
285 [1.1.5]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.5
286 [1.1.5 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.4...v1.1.5
287 [1.1.4]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.4
288 [1.1.4 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.3...v1.1.4
289 [1.1.3]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.3
290 [1.1.3 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.2...v1.1.3
291 [1.1.2]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.2
292 [1.1.2 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.1...v1.1.1
293 [1.1.1]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.1
294 [1.1.1 changes]: https://github.com/sqlcipher/sqlcipher/compare/v1.1.0...v1.1.1
295 [1.1.0]: https://github.com/sqlcipher/sqlcipher/tree/v1.1.0
296 [1.1.0 changes]: https://github.com/sqlcipher/sqlcipher/compare/617ed01...v1.1.0