~ubuntu-branches/ubuntu/trusty/libgcrypt11/trusty-security

Viewing all changes in revision 40.

  • Committer: Package Import Robot
  • Author(s): Marc Deslauriers
  • Date: 2015-03-26 08:18:00 UTC
  • Revision ID: package-import@ubuntu.com-20150326081800-39szblwq319i9bnf
Tags: 1.5.3-2ubuntu4.2
* SECURITY UPDATE: sidechannel attack on Elgamal
  - debian/patches/CVE-2014-3591.patch: use ciphertext blinding in
    cipher/elgamal.c.
  - CVE-2014-3591
* SECURITY UPDATE: sidechannel attack via timing variations in mpi_powm
  - debian/patches/CVE-2015-0837.patch: avoid timing variations in
    mpi/mpi-pow.c, mpi/mpiutil.c, src/mpi.h.
  - CVE-2015-0837

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: