Format: 1.8 Date: Thu, 28 Apr 2016 10:00:31 -0400 Source: openssl Binary: openssl libssl1.0.0 libcrypto1.0.0-udeb libssl1.0.0-udeb libssl-dev libssl-doc libssl1.0.0-dbg Architecture: armhf armhf_translations Version: 1.0.2d-0ubuntu1.5 Distribution: wily Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.0.0-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl-doc - Secure Sockets Layer toolkit - development documentation libssl1.0.0 - Secure Sockets Layer toolkit - shared libraries libssl1.0.0-dbg - Secure Sockets Layer toolkit - debug information libssl1.0.0-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (1.0.2d-0ubuntu1.5) wily-security; urgency=medium . * SECURITY UPDATE: EVP_EncodeUpdate overflow - debian/patches/CVE-2016-2105.patch: properly check lengths in crypto/evp/encode.c, add documentation to doc/crypto/EVP_EncodeInit.pod, doc/crypto/evp.pod. - CVE-2016-2105 * SECURITY UPDATE: EVP_EncryptUpdate overflow - debian/patches/CVE-2016-2106.patch: fix overflow in crypto/evp/evp_enc.c. - CVE-2016-2106 * SECURITY UPDATE: Padding oracle in AES-NI CBC MAC check - debian/patches/CVE-2016-2107.patch: check that there are enough padding characters in crypto/evp/e_aes_cbc_hmac_sha1.c, crypto/evp/e_aes_cbc_hmac_sha256.c. - CVE-2016-2107 * SECURITY UPDATE: Memory corruption in the ASN.1 encoder - debian/patches/CVE-2016-2108.patch: fix ASN1_INTEGER handling in crypto/asn1/a_type.c, crypto/asn1/asn1.h, crypto/asn1/tasn_dec.c, crypto/asn1/tasn_enc.c. - CVE-2016-2108 * SECURITY UPDATE: ASN.1 BIO excessive memory allocation - debian/patches/CVE-2016-2109.patch: properly handle large amounts of data in crypto/asn1/a_d2i_fp.c. - CVE-2016-2109 * debian/patches/min_1024_dh_size.patch: change minimum DH size from 768 to 1024. Checksums-Sha1: 5b650227e93c83d9c015a586a5bc569d4ff62d96 938 libcrypto1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb 33aaa82729249701cb74bcf583cc78156c8e5ed7 514232 libcrypto1.0.0-udeb_1.0.2d-0ubuntu1.5_armhf.udeb 02db384ad58d1515339eefda3095529990e0ecad 926 libssl-dev-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb 1e0e467f10fbeb6bb8af03ed02e7d3fd6626c693 982640 libssl-dev_1.0.2d-0ubuntu1.5_armhf.deb 5dfcca9efe52ba1540a8c6131613c5a9adcdb294 2583974 libssl1.0.0-dbg_1.0.2d-0ubuntu1.5_armhf.deb e1feb4cea2860a5742d32f956080d4b5c4e4f311 900 libssl1.0.0-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb 7e0e96295f236d49c00da3359ba9eb0839903aa7 820 libssl1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb ae71983c021cd7ccf81ea9db662fa83ae7241952 113230 libssl1.0.0-udeb_1.0.2d-0ubuntu1.5_armhf.udeb 00fcf1e6e6ce08e1efc832ab7f4d50e31e67b037 710438 libssl1.0.0_1.0.2d-0ubuntu1.5_armhf.deb 9a521768c0fab02aa467f3518ea524d56b03e21c 1064 openssl-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb ab250cc4efdcf76c37c17985e1a20307e086b0c8 505640 openssl_1.0.2d-0ubuntu1.5_armhf.deb 1fbaf74be23a8ba9447a40adfb9d8b8a03f47be4 20531 openssl_1.0.2d-0ubuntu1.5_armhf_translations.tar.gz Checksums-Sha256: aa0540884945feb79d8d06ec5d593465b671bd500ac31b70a81b4cee9ba52a63 938 libcrypto1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb 5eb694dc84f8cc6c51384dc46f95c7f177813238cba7092446e7bba548b5473e 514232 libcrypto1.0.0-udeb_1.0.2d-0ubuntu1.5_armhf.udeb ec1fbfee2cbaceca6f0af25b9c5fc519ac9691550b5ee0066df2d9f142a67e7e 926 libssl-dev-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb ef6eec00dae9697447ef978b8082e372ea6d2ba085858c4c54a572743b9231f1 982640 libssl-dev_1.0.2d-0ubuntu1.5_armhf.deb 7333b0a6d2f422ae187a3663145e6a5bb9200226223c8e020a4721739ad6d47e 2583974 libssl1.0.0-dbg_1.0.2d-0ubuntu1.5_armhf.deb 9ed8a525b33c344b09f1309e28ac860c7fe692146c2704f46bae528d1562ffc0 900 libssl1.0.0-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb 05b0d32957104a1f85c287859bc8bb27f2bdf2800465505da80ad04a668e6196 820 libssl1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb f63f13eab3dc412702e6220f49c936820c1d394ffa39c896d116153083d322d5 113230 libssl1.0.0-udeb_1.0.2d-0ubuntu1.5_armhf.udeb 365bcf014c981f21a06ef11db8d048e7f9e23e690c3697be6473a0e40dd2059d 710438 libssl1.0.0_1.0.2d-0ubuntu1.5_armhf.deb bfa13b3549864b0e7144cc171a24c827dd31cf89beeed4fbde29aa995e52782d 1064 openssl-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb 558a1d95832ae3355b2d6b20caba14bcbc33277fc12e323b32364a1a7551e732 505640 openssl_1.0.2d-0ubuntu1.5_armhf.deb fb3f9cc82382794799f611e5553cc8da41c12ccd8fe7d301532fc08be142873f 20531 openssl_1.0.2d-0ubuntu1.5_armhf_translations.tar.gz Files: d240aa557189b82b1156805cd3ef9597 938 debian-installer extra libcrypto1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb 7e14d876b5f8f72976e3665af66e85e3 514232 debian-installer optional libcrypto1.0.0-udeb_1.0.2d-0ubuntu1.5_armhf.udeb b3125f1a2c9ea6470e8d3636ae8f0d3b 926 libdevel extra libssl-dev-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb 48f404c4818334975bf1a6f57ce7c99f 982640 libdevel optional libssl-dev_1.0.2d-0ubuntu1.5_armhf.deb b3955154f34fedebef45b1f945d5fcd5 2583974 debug extra libssl1.0.0-dbg_1.0.2d-0ubuntu1.5_armhf.deb ae5e3774f927c379b1b328f8e65e8d4d 900 libs extra libssl1.0.0-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb a18bfa5771b3d4b25a97367626a4446e 820 debian-installer extra libssl1.0.0-udeb-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb a4f373907f7051e58b37f4c95126dd7c 113230 debian-installer optional libssl1.0.0-udeb_1.0.2d-0ubuntu1.5_armhf.udeb 581a02442140612aa2cf9b64e80cc3a0 710438 libs important libssl1.0.0_1.0.2d-0ubuntu1.5_armhf.deb ca735cf44bbdf48a0fe70644bb4ad7de 1064 utils extra openssl-dbgsym_1.0.2d-0ubuntu1.5_armhf.ddeb 73a529dbfd14c0e08a4b0a3f79e28e75 505640 utils optional openssl_1.0.2d-0ubuntu1.5_armhf.deb dbd77ee4e8e58c5a6fcd44a8f7e316a1 20531 raw-translations - openssl_1.0.2d-0ubuntu1.5_armhf_translations.tar.gz Original-Maintainer: Debian OpenSSL Team Package-Type: udeb