openssl 3.0.5-2ubuntu2.3 source package in Ubuntu

Changelog

openssl (3.0.5-2ubuntu2.3) kinetic-security; urgency=medium

  * SECURITY UPDATE: DoS in AES-XTS cipher decryption
    - debian/patches/CVE-2023-1255.patch: avoid buffer overrread in
      crypto/aes/asm/aesv8-armx.pl.
    - CVE-2023-1255
  * SECURITY UPDATE: Possible DoS translating ASN.1 object identifiers
    - debian/patches/CVE-2023-2650.patch: restrict the size of OBJECT
      IDENTIFIERs that OBJ_obj2txt will translate in
      crypto/objects/obj_dat.c.
    - CVE-2023-2650
  * Replace CVE-2022-4304 fix with improved version
    - debian/patches/CVE-2022-4304.patch: use alternative fix in
      crypto/bn/bn_asm.c, crypto/bn/bn_blind.c, crypto/bn/bn_lib.c,
      crypto/bn/bn_local.h, crypto/rsa/rsa_ossl.c.

 -- Marc Deslauriers <email address hidden>  Wed, 24 May 2023 13:11:31 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Kinetic
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
utils
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
openssl_3.0.5.orig.tar.gz 14.4 MiB aa7d8d9bef71ad6525c55ba11e5f4397889ce49c2c9349dcea6d3e4f0b024a7a
openssl_3.0.5.orig.tar.gz.asc 862 bytes 95f23bb4eb6faa8d0f1ca1b83cfb00a2bed4b53e124a4f13e1499abc0b426129
openssl_3.0.5-2ubuntu2.3.debian.tar.xz 191.4 KiB f8f464e207956f816e3114bcb6be61896307fe1676566c08ba1c7fb77c76f2c6
openssl_3.0.5-2ubuntu2.3.dsc 2.7 KiB 2f91dbd8e7737f0f69d05d3b3dcbd4966f47d6fa844ac5669bb8f2735b575326

View changes file

Binary packages built by this source

libssl-dev: No summary available for libssl-dev in ubuntu kinetic.

No description available for libssl-dev in ubuntu kinetic.

libssl-doc: No summary available for libssl-doc in ubuntu kinetic.

No description available for libssl-doc in ubuntu kinetic.

libssl3: No summary available for libssl3 in ubuntu kinetic.

No description available for libssl3 in ubuntu kinetic.

libssl3-dbgsym: No summary available for libssl3-dbgsym in ubuntu kinetic.

No description available for libssl3-dbgsym in ubuntu kinetic.

openssl: No summary available for openssl in ubuntu kinetic.

No description available for openssl in ubuntu kinetic.

openssl-dbgsym: No summary available for openssl-dbgsym in ubuntu kinetic.

No description available for openssl-dbgsym in ubuntu kinetic.