Format: 1.8 Date: Wed, 15 Oct 2014 12:56:03 -0400 Source: openssl Binary: openssl libssl1.0.0 libcrypto1.0.0-udeb libssl1.0.0-udeb libssl-dev libssl-doc libssl1.0.0-dbg Architecture: ppc64el ppc64el_translations Version: 1.0.1f-1ubuntu2.7 Distribution: trusty Urgency: medium Maintainer: Ubuntu Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.0.0-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl-doc - Secure Sockets Layer toolkit - development documentation libssl1.0.0 - Secure Sockets Layer toolkit - shared libraries libssl1.0.0-dbg - Secure Sockets Layer toolkit - debug information libssl1.0.0-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (1.0.1f-1ubuntu2.7) trusty-security; urgency=medium . * SECURITY UPDATE: denial of service via DTLS SRTP memory leak - debian/patches/CVE-2014-3513.patch: fix logic in ssl/d1_srtp.c, ssl/srtp.h, ssl/t1_lib.c, util/mk1mf.pl, util/mkdef.pl, util/ssleay.num. - CVE-2014-3513 * SECURITY UPDATE: denial of service via session ticket integrity check memory leak - debian/patches/CVE-2014-3567.patch: perform cleanup in ssl/t1_lib.c. - CVE-2014-3567 * SECURITY UPDATE: fix the no-ssl3 build option - debian/patches/CVE-2014-3568.patch: fix conditional code in ssl/s23_clnt.c, ssl/s23_srvr.c. - CVE-2014-3568 * SECURITY IMPROVEMENT: Added TLS_FALLBACK_SCSV support to mitigate a protocol downgrade attack to SSLv3 that exposes the POODLE attack. - debian/patches/tls_fallback_scsv_support.patch: added support for TLS_FALLBACK_SCSV in apps/s_client.c, crypto/err/openssl.ec, ssl/d1_lib.c, ssl/dtls1.h, ssl/s23_clnt.c, ssl/s23_srvr.c, ssl/s2_lib.c, ssl/s3_enc.c, ssl/s3_lib.c, ssl/ssl.h, ssl/ssl3.h, ssl/ssl_err.c, ssl/ssl_lib.c, ssl/t1_enc.c, ssl/tls1.h, doc/apps/s_client.pod, doc/ssl/SSL_CTX_set_mode.pod. Checksums-Sha1: f577e66fa0e272a6100e713be4ab7373cef14b7e 478752 openssl_1.0.1f-1ubuntu2.7_ppc64el.deb 7f3bf2db0e3a54b2b2ee1245d62db0b200bd258a 763586 libssl1.0.0_1.0.1f-1ubuntu2.7_ppc64el.deb 40d6bbdc80f7cb1252898cfbe14d7f4cf03a2284 560056 libcrypto1.0.0-udeb_1.0.1f-1ubuntu2.7_ppc64el.udeb b054d847c88f5ad5a490fcf07b0075eaf5b5474b 116932 libssl1.0.0-udeb_1.0.1f-1ubuntu2.7_ppc64el.udeb bd1956b9c6aa10db73bd61cf9144960ef36d5cf3 1104380 libssl-dev_1.0.1f-1ubuntu2.7_ppc64el.deb c1169194914c63cb50d665fa684fe8db99a62a85 2856204 libssl1.0.0-dbg_1.0.1f-1ubuntu2.7_ppc64el.deb 03d823527a9597f6bcc36333d19a921a0200a802 20443 openssl_1.0.1f-1ubuntu2.7_ppc64el_translations.tar.gz Checksums-Sha256: 008f49eba7dcbeb277e9d2998327f253dcd397fda235f4402c8f32a8b0cc5c6a 478752 openssl_1.0.1f-1ubuntu2.7_ppc64el.deb 3a6b729e277209c67d26f485005fd7179ee7a962bbc89581714ab9d894229d55 763586 libssl1.0.0_1.0.1f-1ubuntu2.7_ppc64el.deb 81a909668c7ab9fd9504c6b6921a74128709834105a2e8b36c59e39f01eab179 560056 libcrypto1.0.0-udeb_1.0.1f-1ubuntu2.7_ppc64el.udeb 9ffde7182ac3490c8822e608c643bf1c0b918cc24d11d41dc9cd6480812d3405 116932 libssl1.0.0-udeb_1.0.1f-1ubuntu2.7_ppc64el.udeb 1d138e37987e4787931b9081bf2035d812ad5fdb0386d2fc75d24ff573af514f 1104380 libssl-dev_1.0.1f-1ubuntu2.7_ppc64el.deb 8f96bfbaa703afa816df44b8ca443c4b9b273c8212a6b7ff78283d013e2f4928 2856204 libssl1.0.0-dbg_1.0.1f-1ubuntu2.7_ppc64el.deb 42cc971c5e02a8d504f29d8ea8a315752904b1c51255fb01a3c66b8edc3e9870 20443 openssl_1.0.1f-1ubuntu2.7_ppc64el_translations.tar.gz Files: e35d6597b34c93fe611fd30a9f1bf95d 478752 utils optional openssl_1.0.1f-1ubuntu2.7_ppc64el.deb 236681cf91d080b52edd4f330213d36c 763586 libs important libssl1.0.0_1.0.1f-1ubuntu2.7_ppc64el.deb 0fa21cd90109c2ed4fa008d953b197ba 560056 debian-installer optional libcrypto1.0.0-udeb_1.0.1f-1ubuntu2.7_ppc64el.udeb e6731e77ffc7ebdd3cc7245050411e14 116932 debian-installer optional libssl1.0.0-udeb_1.0.1f-1ubuntu2.7_ppc64el.udeb b01fa7c7c5212eb05c08bbb8dc033f7e 1104380 libdevel optional libssl-dev_1.0.1f-1ubuntu2.7_ppc64el.deb 6b1c03c820da88acbeae44a6d6c3ac4a 2856204 debug extra libssl1.0.0-dbg_1.0.1f-1ubuntu2.7_ppc64el.deb 6be8bb85f76404724912d166d8fb0ebe 20443 raw-translations - openssl_1.0.1f-1ubuntu2.7_ppc64el_translations.tar.gz Original-Maintainer: Debian OpenSSL Team Package-Type: udeb