Format: 1.8 Date: Wed, 27 May 2020 15:15:54 -0400 Source: openssl Binary: openssl libssl1.1 libcrypto1.1-udeb libssl1.1-udeb libssl-dev libssl-doc Architecture: i386 i386_translations Version: 1.1.1-1ubuntu2.1~18.04.6 Distribution: bionic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.1-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl-doc - Secure Sockets Layer toolkit - development documentation libssl1.1 - Secure Sockets Layer toolkit - shared libraries libssl1.1-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (1.1.1-1ubuntu2.1~18.04.6) bionic-security; urgency=medium . * SECURITY UPDATE: ECDSA remote timing attack - debian/patches/CVE-2019-1547.patch: for ECC parameters with NULL or zero cofactor, compute it in crypto/ec/ec_lib.c. - CVE-2019-1547 * SECURITY UPDATE: Fork Protection - debian/patches/CVE-2019-1549.patch: ensure fork-safety without using a pthread_atfork handler in crypto/include/internal/rand_int.h, crypto/init.c, crypto/rand/drbg_lib.c, crypto/rand/rand_lcl.h, crypto/rand/rand_lib.c, crypto/threads_none.c, crypto/threads_pthread.c, crypto/threads_win.c, include/internal/cryptlib.h, test/drbgtest.c. - CVE-2019-1549 * SECURITY UPDATE: rsaz_512_sqr overflow bug on x86_64 - debian/patches/CVE-2019-1551.patch: fix an overflow bug in rsaz_512_sqr in crypto/bn/asm/rsaz-x86_64.pl. - CVE-2019-1551 * SECURITY UPDATE: Padding Oracle issue - debian/patches/CVE-2019-1563.patch: fix a padding oracle in PKCS7_dataDecode and CMS_decrypt_set1_pkey in crypto/cms/cms_env.c, crypto/cms/cms_lcl.h, crypto/cms/cms_smime.c, crypto/pkcs7/pk7_doit.c. - CVE-2019-1563 Checksums-Sha1: f7f240c84eefb2f3adf47c45edb4012102610a5a 1057428 libcrypto1.1-udeb_1.1.1-1ubuntu2.1~18.04.6_i386.udeb 9beb740a94f5cbfa9678d1ee5a84f62fe7ae303a 1597328 libssl-dev_1.1.1-1ubuntu2.1~18.04.6_i386.deb 22412f17927c67b91cfd8461f2854caba8403eba 2748180 libssl1.1-dbgsym_1.1.1-1ubuntu2.1~18.04.6_i386.ddeb 17c53ee398d53ca2af659d5fa6ea477296f7400c 208740 libssl1.1-udeb_1.1.1-1ubuntu2.1~18.04.6_i386.udeb 9f48df3dc015621fb11486aeccf10c9fe5ac9637 1301960 libssl1.1_1.1.1-1ubuntu2.1~18.04.6_i386.deb 4ee62d0cc317119f2b7db48cc2d05c0d4cb9a375 489440 openssl-dbgsym_1.1.1-1ubuntu2.1~18.04.6_i386.ddeb f9ba69d8f15bb6921b9150d52237110735f732c7 7431 openssl_1.1.1-1ubuntu2.1~18.04.6_i386.buildinfo 6a38f2ce299cd245e6a20feb00ef218e84258bff 624396 openssl_1.1.1-1ubuntu2.1~18.04.6_i386.deb f91682d0732143bd6700c30a4cc10988c9e9bec2 26504 openssl_1.1.1-1ubuntu2.1~18.04.6_i386_translations.tar.gz Checksums-Sha256: d05a201d6edddd6d6474059c804f89c88a103194706e93e0e2eb6c1222d1139e 1057428 libcrypto1.1-udeb_1.1.1-1ubuntu2.1~18.04.6_i386.udeb 93ea2d77995503245abd0627d67313f198fd7aaf49a26bb9d99e59676f254a7d 1597328 libssl-dev_1.1.1-1ubuntu2.1~18.04.6_i386.deb bf509b0a91c271314842f5a5717f9c853acfc657f55c303ee54a9bcdbee1d275 2748180 libssl1.1-dbgsym_1.1.1-1ubuntu2.1~18.04.6_i386.ddeb df9713f703a0142b1f014f76fc92ae8522623da18140c60fbb4c94697e89b566 208740 libssl1.1-udeb_1.1.1-1ubuntu2.1~18.04.6_i386.udeb 7958be3120203d7ca1cd4890b80903842d45124e7a16d6722998bbcad61fc210 1301960 libssl1.1_1.1.1-1ubuntu2.1~18.04.6_i386.deb 17b42afb0860d1abb36d064307ab4ef7ddfb81bfeddbb5e3d98f5e676b7b1027 489440 openssl-dbgsym_1.1.1-1ubuntu2.1~18.04.6_i386.ddeb 74ef5e713edef9f245b61202c2292f6311a363f1047a0e7c03c7e29e8b362f31 7431 openssl_1.1.1-1ubuntu2.1~18.04.6_i386.buildinfo 4c475aae53ba9be405a22a90eb6824c19bedf889b048038cfa84b3f32aae3323 624396 openssl_1.1.1-1ubuntu2.1~18.04.6_i386.deb cfe2deddd5360622b3320399e3e0113efe358302edde1bfdf57b20b1f652e335 26504 openssl_1.1.1-1ubuntu2.1~18.04.6_i386_translations.tar.gz Files: 361513b1fd9686a57438311f5d1abf86 1057428 debian-installer optional libcrypto1.1-udeb_1.1.1-1ubuntu2.1~18.04.6_i386.udeb ceb76f59093a6cb6b161d040f63b82e5 1597328 libdevel optional libssl-dev_1.1.1-1ubuntu2.1~18.04.6_i386.deb 23827d77da77c7bfdc559149ff13dde1 2748180 debug optional libssl1.1-dbgsym_1.1.1-1ubuntu2.1~18.04.6_i386.ddeb c137dccd1f3fe97e05ae4fd4c3c3148f 208740 debian-installer optional libssl1.1-udeb_1.1.1-1ubuntu2.1~18.04.6_i386.udeb 99c4701efbc95d71fd438d88e84ca90b 1301960 libs optional libssl1.1_1.1.1-1ubuntu2.1~18.04.6_i386.deb d2cb66db946ad5f1ffa4abfc06f023af 489440 debug optional openssl-dbgsym_1.1.1-1ubuntu2.1~18.04.6_i386.ddeb 7f57746f4f4e94282b241d1635723318 7431 utils optional openssl_1.1.1-1ubuntu2.1~18.04.6_i386.buildinfo ebd07bf82e89cf710e23f21153c1fbe1 624396 utils optional openssl_1.1.1-1ubuntu2.1~18.04.6_i386.deb 7e4da33903908bf5adb498eb5ceeff84 26504 raw-translations - openssl_1.1.1-1ubuntu2.1~18.04.6_i386_translations.tar.gz Original-Maintainer: Debian OpenSSL Team