~ubuntu-branches/ubuntu/lucid/openssl/lucid-security

  • Committer: Package Import Robot
  • Author(s): Marc Deslauriers
  • Date: 2015-01-09 11:16:50 UTC
  • Revision ID: package-import@ubuntu.com-20150109111650-y2372iikqlq6prj3
Tags: 0.9.8k-7ubuntu8.23
* SECURITY UPDATE: denial of service via unexpected handshake when
  no-ssl3 build option is used (not the default)
  - debian/patches/CVE-2014-3569.patch: keep the old method for now in
    ssl/s23_srvr.c.
  - CVE-2014-3569
* SECURITY UPDATE: bignum squaring may produce incorrect results
  - debian/patches/CVE-2014-3570.patch: fix bignum logic in
    crypto/bn/asm/mips3.s, crypto/bn/asm/x86_64-gcc.c,
    crypto/bn/bn_asm.c, added test to crypto/bn/bntest.c.
  - CVE-2014-3570
* SECURITY UPDATE: DTLS segmentation fault in dtls1_get_record
  - debian/patches/CVE-2014-3571.patch: fix crash in ssl/d1_pkt.c,
    ssl/s3_pkt.c.
  - CVE-2014-3571
* SECURITY UPDATE: ECDHE silently downgrades to ECDH [Client]
  - debian/patches/CVE-2014-3572.patch: don't skip server key exchange in
    ssl/s3_clnt.c.
  - CVE-2014-3572
* SECURITY UPDATE: certificate fingerprints can be modified
  - debian/patches/CVE-2014-8275.patch: fix various fingerprint issues in
    crypto/asn1/a_bitstr.c, crypto/asn1/a_type.c, crypto/asn1/a_verify.c,
    crypto/asn1/asn1.h, crypto/asn1/asn1_err.c, crypto/asn1/x_algor.c,
    crypto/dsa/dsa_asn1.c, crypto/ecdsa/ecs_vrf.c, crypto/x509/x509.h,
    crypto/x509/x_all.c, util/libeay.num.
  - CVE-2014-8275
* SECURITY UPDATE: RSA silently downgrades to EXPORT_RSA [Client]
  - debian/patches/CVE-2015-0204.patch: only allow ephemeral RSA keys in
    export ciphersuites in ssl/d1_srvr.c, ssl/s3_clnt.c, ssl/s3_srvr.c,
    ssl/ssl.h, adjust documentation in doc/ssl/SSL_CTX_set_options.pod,
    doc/ssl/SSL_CTX_set_tmp_rsa_callback.pod.
  - CVE-2015-0204
Filename Latest Rev Last Changed Committer Comment Size
..
.pc 11.1.6 15 years ago Bazaar Package Importer * Split all the patches into a separate files * St Diff
apps 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
bugs 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
certs 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
crypto 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
debian 2 20 years ago Bazaar Package Importer rename -pic.a libraries to _pic.a (closes: #250016 Diff
demos 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
doc 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
engines 1.1.2 19 years ago Bazaar Package Importer Import upstream version 0.9.8a Diff
fips 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k Diff
include 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
MacOS 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
ms 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
Netware 1.1.2 19 years ago Bazaar Package Importer Import upstream version 0.9.8a Diff
os2 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
perl 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
shlib 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
ssl 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
test 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
times 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
tools 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
util 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
VMS 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d Diff
CHANGES 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 354 KB Diff Download File
CHANGES.SSLeay 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d 41.7 KB Diff Download File
File config 34 15 years ago Bazaar Package Importer * Merge from debian unstable, remaining changes (L 25 KB Diff Download File
File Configure 34 15 years ago Bazaar Package Importer * Merge from debian unstable, remaining changes (L 90.2 KB Diff Download File
e_os.h 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 21.8 KB Diff Download File
e_os2.h 1.1.3 18 years ago Bazaar Package Importer Import upstream version 0.9.8b 9.4 KB Diff Download File
FAQ 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 42 KB Diff Download File
INSTALL 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 13.8 KB Diff Download File
install.com 1.1.2 19 years ago Bazaar Package Importer Import upstream version 0.9.8a 2.6 KB Diff Download File
INSTALL.DJGPP 1.1.2 19 years ago Bazaar Package Importer Import upstream version 0.9.8a 2 KB Diff Download File
INSTALL.MacOS 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d 3.1 KB Diff Download File
INSTALL.NW 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 18.4 KB Diff Download File
INSTALL.OS2 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d 744 bytes Diff Download File
INSTALL.VMS 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d 11 KB Diff Download File
INSTALL.W32 1.1.3 18 years ago Bazaar Package Importer Import upstream version 0.9.8b 10.8 KB Diff Download File
INSTALL.W64 1.1.2 19 years ago Bazaar Package Importer Import upstream version 0.9.8a 2.1 KB Diff Download File
INSTALL.WCE 1.1.2 19 years ago Bazaar Package Importer Import upstream version 0.9.8a 2.5 KB Diff Download File
LICENSE 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 6.1 KB Diff Download File
Makefile 45 14 years ago Bazaar Package Importer * SECURITY UPDATE: denial of service and possible 25.1 KB Diff Download File
Makefile.org 34 15 years ago Bazaar Package Importer * Merge from debian unstable, remaining changes (L 24 KB Diff Download File
Makefile.shared 34 15 years ago Bazaar Package Importer * Merge from debian unstable, remaining changes (L 19.7 KB Diff Download File
File makevms.com 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 26.7 KB Diff Download File
NEWS 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 21 KB Diff Download File
openssl.doxy 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d 137 bytes Diff Download File
openssl.spec 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 7.7 KB Diff Download File
PROBLEMS 1.1.2 19 years ago Bazaar Package Importer Import upstream version 0.9.8a 7.8 KB Diff Download File
README 1.1.7 15 years ago Bazaar Package Importer Import upstream version 0.9.8k 8 KB Diff Download File
README.ASN1 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d 7.5 KB Diff Download File
README.ENGINE 1 20 years ago Bazaar Package Importer Import upstream version 0.9.7d 15.7 KB Diff Download File