Format: 1.8 Date: Thu, 28 Apr 2016 10:00:31 -0400 Source: openssl Binary: openssl libssl1.0.0 libcrypto1.0.0-udeb libssl1.0.0-udeb libssl-dev libssl-doc libssl1.0.0-dbg Architecture: amd64 all amd64_translations Version: 1.0.2d-0ubuntu1.5 Distribution: wily Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.0.0-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl-doc - Secure Sockets Layer toolkit - development documentation libssl1.0.0 - Secure Sockets Layer toolkit - shared libraries libssl1.0.0-dbg - Secure Sockets Layer toolkit - debug information libssl1.0.0-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (1.0.2d-0ubuntu1.5) wily-security; urgency=medium . * SECURITY UPDATE: EVP_EncodeUpdate overflow - debian/patches/CVE-2016-2105.patch: properly check lengths in crypto/evp/encode.c, add documentation to doc/crypto/EVP_EncodeInit.pod, doc/crypto/evp.pod. - CVE-2016-2105 * SECURITY UPDATE: EVP_EncryptUpdate overflow - debian/patches/CVE-2016-2106.patch: fix overflow in crypto/evp/evp_enc.c. - CVE-2016-2106 * SECURITY UPDATE: Padding oracle in AES-NI CBC MAC check - debian/patches/CVE-2016-2107.patch: check that there are enough padding characters in crypto/evp/e_aes_cbc_hmac_sha1.c, crypto/evp/e_aes_cbc_hmac_sha256.c. - CVE-2016-2107 * SECURITY UPDATE: Memory corruption in the ASN.1 encoder - debian/patches/CVE-2016-2108.patch: fix ASN1_INTEGER handling in crypto/asn1/a_type.c, crypto/asn1/asn1.h, crypto/asn1/tasn_dec.c, crypto/asn1/tasn_enc.c. - CVE-2016-2108 * SECURITY UPDATE: ASN.1 BIO excessive memory allocation - debian/patches/CVE-2016-2109.patch: properly handle large amounts of data in crypto/asn1/a_d2i_fp.c. - CVE-2016-2109 * debian/patches/min_1024_dh_size.patch: change minimum DH size from 768 to 1024. Checksums-Sha1: 2dee0d65a505fe0aae8f47bf5f4bca7bb7771d29 936 libcrypto1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb 16a49efbd66c9b527fa4351359899b194dfd3ba9 853262 libcrypto1.0.0-udeb_1.0.2d-0ubuntu1.5_amd64.udeb 704615682345cf64f0902adc76432570c39a6f1e 926 libssl-dev-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb fc487e23913f8224a1f544cf55b4bb2a7d2163ed 1343780 libssl-dev_1.0.2d-0ubuntu1.5_amd64.deb 3fa0d2ebbe4e783ce31d0ef4e4271017fc326888 1070360 libssl-doc_1.0.2d-0ubuntu1.5_all.deb c59527fed02f96b223845891f3bcbdc75d98c14b 2756920 libssl1.0.0-dbg_1.0.2d-0ubuntu1.5_amd64.deb 93a1bdc8dbc25f09e8d8d6670ee6cd9770bb12d6 900 libssl1.0.0-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb b3d4776b8b7e8103d2c33f5055eae5cdf07096b6 818 libssl1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb 0d3763ab643660828e3fc0c5148004d7bcb36fc6 139190 libssl1.0.0-udeb_1.0.2d-0ubuntu1.5_amd64.udeb 3ff5b448c576bffea60502ed91f249487f6aeb72 1080318 libssl1.0.0_1.0.2d-0ubuntu1.5_amd64.deb 1ba9c905d8d47153be04da3d871eeed47b92cc39 1060 openssl-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb 824b7ca95afbefab2f7b556a649adb947aa6922d 511242 openssl_1.0.2d-0ubuntu1.5_amd64.deb c8c569c2e0b9aebe72cfd2dde2fcd28b6ae325af 20609 openssl_1.0.2d-0ubuntu1.5_amd64_translations.tar.gz Checksums-Sha256: ea7e2c991049f5adc953263c4f245227b7605e600e5ed29316bee9900d85b50f 936 libcrypto1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb 424a3f2bd37837c5855255b8c6ae401959a1f97b046dc463ecced5c9cf340b3c 853262 libcrypto1.0.0-udeb_1.0.2d-0ubuntu1.5_amd64.udeb c97c0bee05367a4651e4f94dc306179c63aca282f74a60bbb26cd01e9e9c094b 926 libssl-dev-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb 748ab85d659f1a55341df24e30840591ebfde92aa80dc3c39600d5332a818c03 1343780 libssl-dev_1.0.2d-0ubuntu1.5_amd64.deb 12442e685e042b3cd556359ba5eba73a1fed040731e852cb7c356ad5a3d99f7d 1070360 libssl-doc_1.0.2d-0ubuntu1.5_all.deb bff57565a61893378b5a99acd1dbc5819f498819098a7b0258601453647fbcd0 2756920 libssl1.0.0-dbg_1.0.2d-0ubuntu1.5_amd64.deb 8c57787350d11f56d6303f04a14df6f333583184da17ed2030734c1de041a450 900 libssl1.0.0-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb bfac9f4fc036e731850be1776add35d84548772c31bd3162cccf67d9640a68ac 818 libssl1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb bb61cded8e467b2a161672184da8d2c58dc3cbdc10466770d421894c51f6d09b 139190 libssl1.0.0-udeb_1.0.2d-0ubuntu1.5_amd64.udeb 40c1392aa11a81ace370124cf800ebd66ccdb5e13763828c407cfc29340b9fdc 1080318 libssl1.0.0_1.0.2d-0ubuntu1.5_amd64.deb 3aa94356287eb7d02098d84ccc20f78104bd8e3aeca8e1fd56fec62e1beca90e 1060 openssl-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb e560c0b0e280d7459bd0bbc0e83c3c6b955964fe47bd8628680e28104042d7b9 511242 openssl_1.0.2d-0ubuntu1.5_amd64.deb 8375946ef38c174870fb6f7e80df84be4cbb5bd03e324b241a9c3137a4337aa1 20609 openssl_1.0.2d-0ubuntu1.5_amd64_translations.tar.gz Files: 5b49b9d18e94f343b2d0b683f79b9928 936 debian-installer extra libcrypto1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb d05ddfb282092bb67b3e25bed9aff374 853262 debian-installer optional libcrypto1.0.0-udeb_1.0.2d-0ubuntu1.5_amd64.udeb 4c40dcb20dcac119b132811a73182352 926 libdevel extra libssl-dev-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb 414d78d39ffefc73111db2ca1cfcd9d2 1343780 libdevel optional libssl-dev_1.0.2d-0ubuntu1.5_amd64.deb 6f1423c36b45045a189352eea6e6b84b 1070360 doc optional libssl-doc_1.0.2d-0ubuntu1.5_all.deb 9a9630f5485436fad6c41ff87789f6ce 2756920 debug extra libssl1.0.0-dbg_1.0.2d-0ubuntu1.5_amd64.deb a636b44cbad6040dbb6a8f79b77b4fae 900 libs extra libssl1.0.0-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb 6d6902fd6cb14f4e63e233c171678a0b 818 debian-installer extra libssl1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb 8cc2cd8d917016868ef76341ad48d03e 139190 debian-installer optional libssl1.0.0-udeb_1.0.2d-0ubuntu1.5_amd64.udeb d24f4f3d7608a5711fe96bd83aaa5a01 1080318 libs important libssl1.0.0_1.0.2d-0ubuntu1.5_amd64.deb 3c010b0e74b94e7023f12a062036d317 1060 utils extra openssl-dbgsym_1.0.2d-0ubuntu1.5_amd64.ddeb 8c55b2c98a64edd55f6d79f04be265ab 511242 utils optional openssl_1.0.2d-0ubuntu1.5_amd64.deb 73abb6c527a8f71c9f37c70a7153ede5 20609 raw-translations - openssl_1.0.2d-0ubuntu1.5_amd64_translations.tar.gz Original-Maintainer: Debian OpenSSL Team Package-Type: udeb