Format: 1.8 Date: Thu, 26 Jan 2017 10:14:03 -0500 Source: gnutls28 Binary: libgnutls-dev libgnutls28-dev libgnutls30 gnutls-bin gnutls-doc guile-gnutls libgnutlsxx28 libgnutls-openssl27 Architecture: s390x s390x_translations Version: 3.4.10-4ubuntu1.2 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: gnutls-bin - GNU TLS library - commandline utilities gnutls-doc - GNU TLS library - documentation and examples guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dev - GNU TLS library - development files libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls28-dev - dummy transitional package for GNU TLS library - development file libgnutls30 - GNU TLS library - main runtime library libgnutlsxx28 - GNU TLS library - C++ runtime library Changes: gnutls28 (3.4.10-4ubuntu1.2) xenial-security; urgency=medium . * SECURITY UPDATE: OCSP validation issue - debian/patches/CVE-2016-7444.patch: correctly verify the serial length in lib/x509/ocsp.c. - CVE-2016-7444 * SECURITY UPDATE: denial of service via warning alerts - debian/patches/CVE-2016-8610.patch: set a maximum number of warning messages in lib/gnutls_int.h, lib/gnutls_handshake.c, lib/gnutls_state.c. - CVE-2016-8610 * SECURITY UPDATE: double-free when reading proxy language - debian/patches/CVE-2017-5334.patch: fix double-free in lib/x509/x509_ext.c. - CVE-2017-5334 * SECURITY UPDATE: out of memory error in stream reading functions - debian/patches/CVE-2017-5335.patch: add error checking to lib/opencdk/read-packet.c. - CVE-2017-5335 * SECURITY UPDATE: stack overflow in cdk_pk_get_keyid - debian/patches/CVE-2017-5336.patch: check return code in lib/opencdk/pubkey.c. - CVE-2017-5336 * SECURITY UPDATE: heap read overflow when reading streams - debian/patches/CVE-2017-5337.patch: add more precise checks to lib/opencdk/read-packet.c. - CVE-2017-5337 * debian/patches/fix_expired_certs.patch: use datefudge to fix test with expired certs. Checksums-Sha1: 1e332b3bb6bfc53d96f1262d2be6c2eb1f485502 289570 gnutls-bin-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb c892abdcd1362fd2ff338cc4edf051e7873cb790 195324 gnutls-bin_3.4.10-4ubuntu1.2_s390x.deb 71b573364ff5def25d13be33e8a594d81cc2a661 236233 gnutls28_3.4.10-4ubuntu1.2_s390x_translations.tar.gz cdc67363f5c7ea89713e14a437ee7050b7bc1df4 125376 guile-gnutls-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb 29324b883eed89d98ef1333e7211a2e10aab318d 50916 guile-gnutls_3.4.10-4ubuntu1.2_s390x.deb 3cae3df71d15b306a7c2ad34f8c18731d0375584 503250 libgnutls-dev_3.4.10-4ubuntu1.2_s390x.deb b76d0422b224f31ce21b7dda072a0bfefb6c711f 37066 libgnutls-openssl27-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb 8ac22be0b84593fe031989e1cc01a445d92dce9a 21926 libgnutls-openssl27_3.4.10-4ubuntu1.2_s390x.deb 838482f8d26d891e9cc24146650e83a7fce47c73 8162 libgnutls28-dev_3.4.10-4ubuntu1.2_s390x.deb b0b27215690f238364ff06bd0ed2c2419336be3c 988774 libgnutls30-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb 4812f87333adc36b233b028660bd18455e4d9768 490158 libgnutls30_3.4.10-4ubuntu1.2_s390x.deb 84596f0cb3e7410a79938913f57458e6577d462f 32182 libgnutlsxx28-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb bc8eed9a76cca163eaca76c010246aab676cf3c4 13508 libgnutlsxx28_3.4.10-4ubuntu1.2_s390x.deb Checksums-Sha256: b403949405830edbe879bb1c049867af3ec77c248bdf93da1d35f75122793208 289570 gnutls-bin-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb 158e19689292a182f2b36593088424793befd26f342f4b630ee2fea6916a023c 195324 gnutls-bin_3.4.10-4ubuntu1.2_s390x.deb 19d21a653265a2c3fd0ca41b4fef4da9f00ba0bc17a2752a466cb09f84658509 236233 gnutls28_3.4.10-4ubuntu1.2_s390x_translations.tar.gz 137cc7f7a68e745feeba7fe670208808f33512dc74638667cff4745e3dc4f54a 125376 guile-gnutls-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb 28c4d7e46ff89f301270ad872b154e0d5c46cdc78de7c20c0c9a98e568136d10 50916 guile-gnutls_3.4.10-4ubuntu1.2_s390x.deb ee00e3bc090c0ba311bdd6e0a6b8fd4ad1b0f5e405d5480e371163f39bb3d2f7 503250 libgnutls-dev_3.4.10-4ubuntu1.2_s390x.deb 3125311ce1e9c29866d04336adb6d148351b3eb0081869e73bc813c36e8e9e1b 37066 libgnutls-openssl27-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb bfd8b674694508feb6695598e28c704ba41e5617fe1972135ec2a8f3b484e57a 21926 libgnutls-openssl27_3.4.10-4ubuntu1.2_s390x.deb 117293b1f95ee788a9bfc67e6475e5e921ec1cf1070ca35ca8677d58280961f2 8162 libgnutls28-dev_3.4.10-4ubuntu1.2_s390x.deb cc2706b3ec725ead395a4c95978f92ec6babf5dedab1aa22e5ab2e521a5e5f6f 988774 libgnutls30-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb 98194d97241b8cd55d03b253714eabbfee2a8c3984c3137b7645a4586507bb16 490158 libgnutls30_3.4.10-4ubuntu1.2_s390x.deb 016708d0bd96c893953ad1ec9880615e8d26e336847657afef677ca6cc85435f 32182 libgnutlsxx28-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb 688781f876a09eb17791d85bea70e3933bada76762b6bbf10d546a9323c2e634 13508 libgnutlsxx28_3.4.10-4ubuntu1.2_s390x.deb Files: 133f5f435c8a29e152ec406bd74d64ad 289570 net extra gnutls-bin-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb 3c84643cbd68566c91f455c6bc3841e9 195324 net optional gnutls-bin_3.4.10-4ubuntu1.2_s390x.deb 3894dd0f10a1fa189b66712a74f4e5d5 236233 raw-translations - gnutls28_3.4.10-4ubuntu1.2_s390x_translations.tar.gz 04d137b77ea10009468005475353b5a4 125376 lisp extra guile-gnutls-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb f9cdec778ee4236b7b69e25739f6e114 50916 lisp optional guile-gnutls_3.4.10-4ubuntu1.2_s390x.deb 6122ab16cc4117d6b525e7e0767ec36d 503250 libdevel optional libgnutls-dev_3.4.10-4ubuntu1.2_s390x.deb 42f45b18a07009207e7890524d0e5606 37066 libs extra libgnutls-openssl27-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb d7f906a5c8c0963035441f24bd503626 21926 libs standard libgnutls-openssl27_3.4.10-4ubuntu1.2_s390x.deb 7750cb8797c6161d7901e48effbfc21f 8162 libdevel optional libgnutls28-dev_3.4.10-4ubuntu1.2_s390x.deb c6813d311a7b8f0ffa7ae1031c01d7aa 988774 libs extra libgnutls30-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb 4996429826f296c39e0b38f81288733c 490158 libs standard libgnutls30_3.4.10-4ubuntu1.2_s390x.deb cc43d05d91ff9ce03b5fdb260b934f37 32182 libs extra libgnutlsxx28-dbgsym_3.4.10-4ubuntu1.2_s390x.ddeb eee33965a06e35595aebbf3497e76635 13508 libs extra libgnutlsxx28_3.4.10-4ubuntu1.2_s390x.deb Original-Maintainer: Debian GnuTLS Maintainers