Format: 1.8 Date: Wed, 02 Dec 2020 09:54:45 -0500 Source: openssl Binary: openssl libssl1.1 libcrypto1.1-udeb libssl1.1-udeb libssl-dev libssl-doc Architecture: amd64 all amd64_translations Version: 1.1.1-1ubuntu2.1~18.04.7 Distribution: bionic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.1-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl-doc - Secure Sockets Layer toolkit - development documentation libssl1.1 - Secure Sockets Layer toolkit - shared libraries libssl1.1-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (1.1.1-1ubuntu2.1~18.04.7) bionic-security; urgency=medium . * SECURITY UPDATE: EDIPARTYNAME NULL pointer de-ref - debian/patches/CVE-2020-1971-1.patch: use explicit tagging for DirectoryString in crypto/x509v3/v3_genn.c. - debian/patches/CVE-2020-1971-2.patch: correctly compare EdiPartyName in crypto/x509v3/v3_genn.c. - debian/patches/CVE-2020-1971-3.patch: check that multi-strings/CHOICE types don't use implicit tagging in crypto/asn1/asn1_err.c, crypto/asn1/tasn_dec.c, crypto/err/openssl.txt, include/openssl/asn1err.h. - debian/patches/CVE-2020-1971-4.patch: complain if we are attempting to encode with an invalid ASN.1 template in crypto/asn1/asn1_err.c, crypto/asn1/tasn_enc.c, crypto/err/openssl.txt, include/openssl/asn1err.h. - debian/patches/CVE-2020-1971-5.patch: add a test for GENERAL_NAME_cmp in test/v3nametest.c. - debian/patches/CVE-2020-1971-6.patch: add a test for encoding/decoding using an invalid ASN.1 Template in test/asn1_decode_test.c, test/asn1_encode_test.c. - CVE-2020-1971 Checksums-Sha1: 7bc5dfe4e8aaeb99fa1eab7bb80e9611fde56073 1073004 libcrypto1.1-udeb_1.1.1-1ubuntu2.1~18.04.7_amd64.udeb 0a80a6f45441ba2a00e4891335bdc17fb1f15954 1566124 libssl-dev_1.1.1-1ubuntu2.1~18.04.7_amd64.deb 5ad198e776c6b99c360a1f6ad52242da91bc7327 1486368 libssl-doc_1.1.1-1ubuntu2.1~18.04.7_all.deb f870434fbad3271b78c9fc238a8499c428349f81 3386796 libssl1.1-dbgsym_1.1.1-1ubuntu2.1~18.04.7_amd64.ddeb c8ac5878cda2bf5f675d4357783576e65e6ab196 192028 libssl1.1-udeb_1.1.1-1ubuntu2.1~18.04.7_amd64.udeb 3709b9aaf14c5ed3ab4c1669d415906e2c9943df 1300876 libssl1.1_1.1.1-1ubuntu2.1~18.04.7_amd64.deb aa2dcdffce578ab0e81ead27ab4e14c352e89ad5 549748 openssl-dbgsym_1.1.1-1ubuntu2.1~18.04.7_amd64.ddeb 567bf8e81f25cb39e85a41b38d149592899ccd5c 7849 openssl_1.1.1-1ubuntu2.1~18.04.7_amd64.buildinfo 57b2e368a59140c4e4f8ccba7939b65e76210851 613856 openssl_1.1.1-1ubuntu2.1~18.04.7_amd64.deb f48f183c3be9d990f3f1d9daf6c6465135d3044d 26909 openssl_1.1.1-1ubuntu2.1~18.04.7_amd64_translations.tar.gz Checksums-Sha256: 878642bf2da9d7ec17af94353e1f6a9552e4e2b40c078d6f31c598e894cc7605 1073004 libcrypto1.1-udeb_1.1.1-1ubuntu2.1~18.04.7_amd64.udeb 2f465d8f8abadd23f64ad45eba35ee388ecbe695612bccf82696eb98201aca13 1566124 libssl-dev_1.1.1-1ubuntu2.1~18.04.7_amd64.deb dc4677b6bd9be9276cf9ca2ec8605da9ca674625f19a7d74dc6ce4505f97062b 1486368 libssl-doc_1.1.1-1ubuntu2.1~18.04.7_all.deb 7a76163bcae866ca759177ee0d6d00a6e5e5f2e6976efdfdba332cf5bfa3dd63 3386796 libssl1.1-dbgsym_1.1.1-1ubuntu2.1~18.04.7_amd64.ddeb 838fdccf7ad68ff60d3596dd712e91c69688a0498562529158157acf996cc07b 192028 libssl1.1-udeb_1.1.1-1ubuntu2.1~18.04.7_amd64.udeb 6cba7ab11adfe998afb8a1c1b85bf1cb0449101cb4160402bac2507ccc72b632 1300876 libssl1.1_1.1.1-1ubuntu2.1~18.04.7_amd64.deb d1eaa9ac424fdf534dae63baa299b1d797f5d5c632494a8b04f96d65a2e5aa87 549748 openssl-dbgsym_1.1.1-1ubuntu2.1~18.04.7_amd64.ddeb 9c311d024e39503a68390be58a2bc7c5f320cb7e52a6f947fde200eb10b8c976 7849 openssl_1.1.1-1ubuntu2.1~18.04.7_amd64.buildinfo 26eec06c925b5468e8c80cd0645c62e0ff613e60a074e5bf92dd9df127f67660 613856 openssl_1.1.1-1ubuntu2.1~18.04.7_amd64.deb fb696f31624cd21558c759451d714c746dddb00c6973e5b42f18953bddf6836e 26909 openssl_1.1.1-1ubuntu2.1~18.04.7_amd64_translations.tar.gz Files: 15738382acff17cb3073e58bd050f621 1073004 debian-installer optional libcrypto1.1-udeb_1.1.1-1ubuntu2.1~18.04.7_amd64.udeb e5c6b2d6b09981638963844cea53d415 1566124 libdevel optional libssl-dev_1.1.1-1ubuntu2.1~18.04.7_amd64.deb f72dc606925ed69a6f6b15528d7cb58b 1486368 doc optional libssl-doc_1.1.1-1ubuntu2.1~18.04.7_all.deb 63dcb14be6919cd0d5480c6c653b02a4 3386796 debug optional libssl1.1-dbgsym_1.1.1-1ubuntu2.1~18.04.7_amd64.ddeb 605b02612b81c431d0b91b6bb1eca8cb 192028 debian-installer optional libssl1.1-udeb_1.1.1-1ubuntu2.1~18.04.7_amd64.udeb 339f0cdcce8226494555b18fdcca6caa 1300876 libs optional libssl1.1_1.1.1-1ubuntu2.1~18.04.7_amd64.deb faa24a987d3f0f1a376bffd0108a7a48 549748 debug optional openssl-dbgsym_1.1.1-1ubuntu2.1~18.04.7_amd64.ddeb da2b8fc3a0789261d991e86c7355f6c5 7849 utils optional openssl_1.1.1-1ubuntu2.1~18.04.7_amd64.buildinfo bc9066c4a64b40a2240f9156a4b73577 613856 utils optional openssl_1.1.1-1ubuntu2.1~18.04.7_amd64.deb a5929678876ee6f493377d090c3cff9d 26909 raw-translations - openssl_1.1.1-1ubuntu2.1~18.04.7_amd64_translations.tar.gz Original-Maintainer: Debian OpenSSL Team