Format: 1.8 Date: Fri, 02 May 2014 15:27:44 -0400 Source: openssl Binary: openssl libssl1.0.0 libcrypto1.0.0-udeb libssl1.0.0-udeb libssl-dev libssl-doc libssl1.0.0-dbg Architecture: all i386_translations i386 Version: 1.0.1c-3ubuntu2.8 Distribution: quantal Urgency: medium Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.0.0-udeb - crypto shared library - udeb (udeb) libssl-dev - SSL development libraries, header files and documentation libssl-doc - SSL development documentation documentation libssl1.0.0 - SSL shared libraries libssl1.0.0-dbg - Symbol tables for libssl and libcrypto libssl1.0.0-udeb - ssl shared library - udeb (udeb) openssl - Secure Socket Layer (SSL) binary and related cryptographic tools Changes: openssl (1.0.1c-3ubuntu2.8) quantal-security; urgency=medium . * SECURITY UPDATE: denial of service via use after free - debian/patches/CVE-2010-5298.patch: check s->s3->rbuf.left before releasing buffers in ssl/s3_pkt.c. - CVE-2010-5298 * SECURITY UPDATE: denial of service via null pointer dereference - debian/patches/CVE-2014-0198.patch: if buffer was released, get a new one in ssl/s3_pkt.c. - CVE-2014-0198 Checksums-Sha1: cca6028ea89ad1718a288e30841c5cf2c05643d2 1036462 libssl-doc_1.0.1c-3ubuntu2.8_all.deb 55784a4922cda43d0315069e62e90af23860d248 18953 openssl_1.0.1c-3ubuntu2.8_i386_translations.tar.gz 9e3cd3e48c9805ef7058c761717db87f6caab906 520254 openssl_1.0.1c-3ubuntu2.8_i386.deb c1957eb780ccbbf9fee81eb41e67b59c2d9ad954 1009048 libssl1.0.0_1.0.1c-3ubuntu2.8_i386.deb f2efdb1b90b7e1b8a3e58b06ae53fcf47a592248 578638 libcrypto1.0.0-udeb_1.0.1c-3ubuntu2.8_i386.udeb cd9a79df2aa53039c87422f23accab245cfd170e 122760 libssl1.0.0-udeb_1.0.1c-3ubuntu2.8_i386.udeb 953942df86c6c440c3387764e9d383ad158ad940 1420770 libssl-dev_1.0.1c-3ubuntu2.8_i386.deb e795eaa2bfb917b978db970f41a271fea83b5067 2610176 libssl1.0.0-dbg_1.0.1c-3ubuntu2.8_i386.deb Checksums-Sha256: 27e45d4e6a0263adf635f89c628953000675d5ab71c3e0c3ae8fdfc7032359f6 1036462 libssl-doc_1.0.1c-3ubuntu2.8_all.deb 3270d0ceabf10023d5ad766c88432979ead135ca097d0c486f5adb85c87e5df4 18953 openssl_1.0.1c-3ubuntu2.8_i386_translations.tar.gz be9a9e127952b475fa06bd4e6cdf165968273d80f92ecdb4d467e2f40e42e202 520254 openssl_1.0.1c-3ubuntu2.8_i386.deb c558e6373ad080a0bfe1ef16dfc6aaa2c384d1e145af61411ab4a1720b54017f 1009048 libssl1.0.0_1.0.1c-3ubuntu2.8_i386.deb 549e644b82fc73c2a762ebafdd4b5b806975750c1a4628360dba2943baa5b330 578638 libcrypto1.0.0-udeb_1.0.1c-3ubuntu2.8_i386.udeb c206771eecce6c2ce6613884142557953ed00b6caf8f86830efbe887442ca556 122760 libssl1.0.0-udeb_1.0.1c-3ubuntu2.8_i386.udeb b64437a0d462f33917f41f8b8f7474ff13c462aecca7b4b87501b272da99fbf9 1420770 libssl-dev_1.0.1c-3ubuntu2.8_i386.deb bdb43f438a4aaeaca7843b181afca1552cce3c099b7e685e04db394eb297e6fc 2610176 libssl1.0.0-dbg_1.0.1c-3ubuntu2.8_i386.deb Files: b140b61ab3aee8049134d020b39fe83f 1036462 doc optional libssl-doc_1.0.1c-3ubuntu2.8_all.deb 18467ff73305312c81df2071b8ea9805 18953 raw-translations - openssl_1.0.1c-3ubuntu2.8_i386_translations.tar.gz 84415b06d5e81a46e53e90714d749046 520254 utils optional openssl_1.0.1c-3ubuntu2.8_i386.deb 01a58c5e43af22857f2e4db11631f506 1009048 libs important libssl1.0.0_1.0.1c-3ubuntu2.8_i386.deb 06833d42b2491eff651911ccde157a40 578638 debian-installer optional libcrypto1.0.0-udeb_1.0.1c-3ubuntu2.8_i386.udeb e35167dfc635b9cb92f34531eb74a48d 122760 debian-installer optional libssl1.0.0-udeb_1.0.1c-3ubuntu2.8_i386.udeb db10e662d55be0fcdc7ac7bba5c61546 1420770 libdevel optional libssl-dev_1.0.1c-3ubuntu2.8_i386.deb 37c944ae5b3e386d9d9ca739a2349cbe 2610176 debug extra libssl1.0.0-dbg_1.0.1c-3ubuntu2.8_i386.deb Original-Maintainer: Debian OpenSSL Team Package-Type: udeb