Format: 1.8 Date: Tue, 28 May 2019 13:32:56 -0400 Source: gnutls28 Binary: libgnutls-dev libgnutls28-dev libgnutls30 gnutls-bin gnutls-doc guile-gnutls libgnutlsxx28 libgnutls-openssl27 Architecture: i386 i386_translations Version: 3.4.10-4ubuntu1.5 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: gnutls-bin - GNU TLS library - commandline utilities gnutls-doc - GNU TLS library - documentation and examples guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dev - GNU TLS library - development files libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls28-dev - dummy transitional package for GNU TLS library - development file libgnutls30 - GNU TLS library - main runtime library libgnutlsxx28 - GNU TLS library - C++ runtime library Changes: gnutls28 (3.4.10-4ubuntu1.5) xenial-security; urgency=medium . * SECURITY UPDATE: Lucky-13 issues - debian/patches/CVE-2018-1084x-1.patch: correctly account the length field in SHA384 HMAC in lib/algorithms/mac.c, lib/gnutls_cipher.c. - debian/patches/CVE-2018-1084x-2.patch: always hash the same amount of blocks that would have been on minimum pad in lib/gnutls_cipher.c. - debian/patches/CVE-2018-1084x-3.patch: require minimum padding under SSL3.0 in lib/gnutls_cipher.c. - debian/patches/CVE-2018-1084x-4.patch: hmac-sha384 and sha256 ciphersuites were removed from defaults in lib/gnutls_priority.c, tests/priorities.c. - debian/patches/CVE-2018-1084x-5.patch: fix test for SHA512 in tests/pkcs12_encode.c. - CVE-2018-10844 - CVE-2018-10845 - CVE-2018-10846 Checksums-Sha1: ec97d4706f55a139000cbf806b1f8767c038c315 279954 gnutls-bin-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb fc411dc72f62d88b764848591da6089c378b6c95 197174 gnutls-bin_3.4.10-4ubuntu1.5_i386.deb 7b665a046a2ea8fd372395bc00c3df78ec18e92b 236296 gnutls28_3.4.10-4ubuntu1.5_i386_translations.tar.gz 6609e1c7f8e1acb2a2830e30631687f1b827c9ea 122914 guile-gnutls-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 56e6a285e7aca0f03a613d1a8a9596e49f850a4f 55022 guile-gnutls_3.4.10-4ubuntu1.5_i386.deb d239bca3081392cadf6afc7a0590248a83f5a417 604108 libgnutls-dev_3.4.10-4ubuntu1.5_i386.deb 8af53d981cb9f1a035de0dcebd64eaddf9964374 35498 libgnutls-openssl27-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 2fb7eda01d9a6f7dbb8be70e1c8aaed73ad09910 22932 libgnutls-openssl27_3.4.10-4ubuntu1.5_i386.deb 47938352301e42a3d63ab7a68d3edaa85ce6c4e2 8154 libgnutls28-dev_3.4.10-4ubuntu1.5_i386.deb ababc25f9bbdb44687739a3fba110c4dc01391b2 923810 libgnutls30-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 8ade3aa17d7a20ba5d0e096b9388f4d7d3c9385b 568868 libgnutls30_3.4.10-4ubuntu1.5_i386.deb 28db3063adfcf1af4e55a0bb3ec5add2ec23cb94 30686 libgnutlsxx28-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb c94c137b0b9379fa88492e03d23aed8ec9067246 14266 libgnutlsxx28_3.4.10-4ubuntu1.5_i386.deb Checksums-Sha256: db9620d5df1180479d267ca22923f4cebad99518dc46fe7131bd9eec7f9d738e 279954 gnutls-bin-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 5b0dc7c742b151eded8bc925c32bee81312101f6926a6cd3804fb7a2110f7afb 197174 gnutls-bin_3.4.10-4ubuntu1.5_i386.deb f42d4c40981b915368219fcbc00def8c113b599e0b585b5dec1cac510730b88d 236296 gnutls28_3.4.10-4ubuntu1.5_i386_translations.tar.gz 10c5f536afe929d7efe7573651e3f00c824f8be5ac712531be97481ad19a39fa 122914 guile-gnutls-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb df062f6267bd063d665fb01acf83cc1595c5ffc3f141f7587ad5e2d1960518b6 55022 guile-gnutls_3.4.10-4ubuntu1.5_i386.deb 4e4a77593f1dfcc366371f9eb3d47c0e6e12a9bad8fe236aba92d4d1c90fe6e2 604108 libgnutls-dev_3.4.10-4ubuntu1.5_i386.deb f9e4c4e11e65aabb32571157bb5caea7d7453084931c802cff21160978a9627b 35498 libgnutls-openssl27-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb f0d3329800c0476514553fe3a4395a71a9a662b0978fe75f48ff03246c4f4496 22932 libgnutls-openssl27_3.4.10-4ubuntu1.5_i386.deb cf48fba95b37b9089ba2364fbca48ba03ef3d64c3f20d8ca748d8bacf793af1d 8154 libgnutls28-dev_3.4.10-4ubuntu1.5_i386.deb f196c83733b97160c9e8244023f6ded90819f43abf1a8fcbe60f63e70b55c0f6 923810 libgnutls30-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 5268311adf30baaf01425491238d677d0a32caac14ee68624535237d426e1b15 568868 libgnutls30_3.4.10-4ubuntu1.5_i386.deb e5e7a8ef9a3bff89dddb8a2e2ade59f33ddf9ba4878271d35d8869e810c721a3 30686 libgnutlsxx28-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 5defdff33de748dc11ccb5ad870f2f6483c7ae742cdd0495c67900682aca5dfd 14266 libgnutlsxx28_3.4.10-4ubuntu1.5_i386.deb Files: 54df189845038ce287cd287e1f4a5473 279954 net extra gnutls-bin-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 8afd834ca86232c705a5fc74cf8724c6 197174 net optional gnutls-bin_3.4.10-4ubuntu1.5_i386.deb 1f5beef4da693204283df476854d5720 236296 raw-translations - gnutls28_3.4.10-4ubuntu1.5_i386_translations.tar.gz 8539e8b0ae8753b4d7e7062e996bbd57 122914 lisp extra guile-gnutls-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 84ff369657c50542462576c3858961b0 55022 lisp optional guile-gnutls_3.4.10-4ubuntu1.5_i386.deb c275316340cbc503b424828929d488ab 604108 libdevel optional libgnutls-dev_3.4.10-4ubuntu1.5_i386.deb c12454cef97839d199e8deb726d9473f 35498 libs extra libgnutls-openssl27-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 64df942957f053d6a3cd0e2ea8e8031c 22932 libs standard libgnutls-openssl27_3.4.10-4ubuntu1.5_i386.deb 018463f6b3635408b798726d002e8c2d 8154 libdevel optional libgnutls28-dev_3.4.10-4ubuntu1.5_i386.deb eaad3450ae528a2c8ea65c9592ba04d8 923810 libs extra libgnutls30-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 6a062cc7c4a56d5fd58b8f11f5dcc970 568868 libs standard libgnutls30_3.4.10-4ubuntu1.5_i386.deb b8e5a9368ed389f0aa791c30fabcbe81 30686 libs extra libgnutlsxx28-dbgsym_3.4.10-4ubuntu1.5_i386.ddeb 26096e1b8c4341c7b04654e3df068ac3 14266 libs extra libgnutlsxx28_3.4.10-4ubuntu1.5_i386.deb Original-Maintainer: Debian GnuTLS Maintainers