Format: 1.8 Date: Tue, 18 Dec 2018 13:27:04 +0000 Source: openssl Binary: openssl libssl1.1 libcrypto1.1-udeb libssl1.1-udeb libssl-dev libssl-doc Architecture: source Version: 1.1.1a-2+ubuntu18.04.1+deb.sury.org+1 Distribution: bionic Urgency: medium Maintainer: Debian OpenSSL Team Changed-By: Ondřej Surý Description: libcrypto1.1-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl-doc - Secure Sockets Layer toolkit - development documentation libssl1.1 - Secure Sockets Layer toolkit - shared libraries libssl1.1-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Closes: 875423 878303 882007 888305 891570 891797 892276 894282 895844 907631 910459 911389 912067 913558 Changes: openssl (1.1.1a-2+ubuntu18.04.1+deb.sury.org+1) bionic; urgency=medium . [ Sebastian Andrzej Siewior ] * Add Breaks on lighttpd (Closes: #913558). . [ Ondřej Surý ] * No-change backport to bionic . openssl (1.1.1a-1) unstable; urgency=medium . * Add Breaks on python-boto (See: #909545) * New upstream version - CVE-2018-0734 (Timing vulnerability in DSA signature generation) - CVE-2018-0735 (Timing vulnerability in ECDSA signature generation) - Update symbol file for 1.1.1a . openssl (1.1.1-2) unstable; urgency=medium . [ Sebastian Andrzej Siewior ] * Add Breaks on isync (See: #906955) * Fix autopkgtest (Closes: #910459) . [ Kurt Roeckx ] * Add Breaks on python-imaplib2 (See: #907079) * Add news entry regarding default TLS version and security level (Closes: #875423, #907631, #911389, #912067). . openssl (1.1.1-1) unstable; urgency=medium . * New upstream version. - Update symbol file for 1.1.1 - CVE-2018-0732 (actually since pre8). * Add Breaks on python-httplib2 (See: #907278) * Add hardening=+all. * Update to policy 4.2.1 - Less verbose testsuite with terse - Use RRR=no . openssl (1.1.1~~pre9-1) unstable; urgency=medium . * New upstream version. - Support the final TLS 1.3 version (RFC 8446) * Upload to unstable . openssl (1.1.1~~pre8-1) experimental; urgency=medium . * New upstream version. . openssl (1.1.1~~pre7-1) experimental; urgency=medium . * Drop afalgeng on kfreebsd-* which go enabled because they inherit from the linux target. * Fix debian-rules-sets-dpkg-architecture-variable. * Update to policy 4.1.4 - only Suggest: libssl-doc instead Recommends (only documentation and example code is shipped). - drop Priority: important. - use signing-key.asc and a https links for downloads * Use compat 11. - this moves the examples to /usr/share/doc/libssl-{doc->dev}/demos but it seems to make sense. * Add a 25-test_verify.t for autopkgtest which runs against intalled openssl binary. * Fix CVE-2018-0737 (Closes: #895844). . openssl (1.1.1~~pre6-2) experimental; urgency=medium . * Update libssl1.1.symbols . openssl (1.1.1~~pre6-1) experimental; urgency=medium . * New upstream version * Increase default security level from 1 to 2. This moves from the 80 bit security level to the 112 bit securit level and will require 2048 bit RSA and DHE keys. . openssl (1.1.1~~pre4-1) experimental; urgency=medium . * Update to 1.1.1-pre4 (Closes: #892276, #894282). * Add riscv64 target (Closes: #891797). . openssl (1.1.1~~pre3-1) experimental; urgency=medium . * Update to 1.1.1-pre3 * Don't suggest 1024 bit RSA key to be typical (Closes: #878303). * Don't insist on TLS1.3 cipher for