openssl 1.0.0e-1 source package in Debian

Changelog

openssl (1.0.0e-1) unstable; urgency=low


  * New upstream version
    - Fix bug where CRLs with nextUpdate in the past are sometimes accepted
      by initialising X509_STORE_CTX properly. (CVE-2011-3207)
    - Fix SSL memory handling for (EC)DH ciphersuites, in particular
      for multi-threaded use of ECDH. (CVE-2011-3210)
    - Add protection against ECDSA timing attacks (CVE-2011-1945)
  * Block DigiNotar certifiates.  Patch from
    Raphael Geissert <email address hidden>
  * Generate hashes for all certs in a file (Closes: #628780, #594524)
    Patch from Klaus Ethgen <email address hidden>
  * Add multiarch support (Closs: #638137)
    Patch from Steve Langasek / Ubuntu
  * Symbols from the gost engine were removed because it didn't have
    a linker file.  Thanks to Roman I Khimov <email address hidden>
    (Closes: #631503)
  * Add support for s390x.  Patch from Aurelien Jarno <email address hidden>
    (Closes: #641100)
  * Add build-arch and build-indep targets to the rules file.

 -- Kurt Roeckx <email address hidden>  Sat, 10 Sep 2011 12:03:13 +0200

Upload details

Uploaded by:
Debian OpenSSL Team
Uploaded to:
Sid
Original maintainer:
Debian OpenSSL Team
Architectures:
any
Section:
libs
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
openssl_1.0.0e-1.dsc 1.9 KiB 51d11c8df31f7e4fff4bd27a825129c9a56d0180bd04a466e40c7abdeae83ba5
openssl_1.0.0e.orig.tar.gz 3.9 MiB e361dc2775733fb84de7b5bf7b504778b772869e8f7bfac0b28b935cbf7380f7
openssl_1.0.0e-1.debian.tar.gz 84.9 KiB a25f4b4c7f704d9ac8a23c68d1d6728af023dac089b0225bb6ac4db5092e737d

No changes file available.

Binary packages built by this source