Format: 1.8 Date: Mon, 03 Jul 2017 08:00:00 -0400 Source: libgcrypt20 Binary: libgcrypt20-doc libgcrypt20-dev libgcrypt20 libgcrypt20-udeb libgcrypt11-dev libgcrypt-mingw-w64-dev Architecture: armhf Version: 1.7.6-1ubuntu0.1 Distribution: zesty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libgcrypt-mingw-w64-dev - LGPL Crypto library - Windows development libgcrypt11-dev - transitional libgcrypt11-dev package libgcrypt20 - LGPL Crypto library - runtime library libgcrypt20-dev - LGPL Crypto library - development files libgcrypt20-doc - LGPL Crypto library - documentation libgcrypt20-udeb - LGPL Crypto library - runtime library (udeb) Changes: libgcrypt20 (1.7.6-1ubuntu0.1) zesty-security; urgency=medium . * SECURITY UPDATE: full RSA key recovery via side-channel attack - debian/patches/CVE-2017-7526-1.patch: simplify loop in mpi/mpi-pow.c. - debian/patches/CVE-2017-7526-2.patch: use same computation for square and multiply in mpi/mpi-pow.c. - debian/patches/CVE-2017-7526-3.patch: add exponent blinding in cipher/rsa.c. - debian/patches/CVE-2017-7526-4.patch: add free to cipher/rsa.c. - debian/patches/CVE-2017-7526-5.patch: add free to cipher/rsa.c. - CVE-2017-7526 * SECURITY UPDATE: EdDSA key recovery via side-channel attack - debian/patches/CVE-2017-9526-1.patch: store EdDSA session key in secure memory in cipher/ecc-eddsa.c. - debian/patches/CVE-2017-9526-2.patch: fix SEGV and stat calculation src/secmem.c. - CVE-2017-9526 Checksums-Sha1: 44f710b41ac3c4418064f5d700457f81dd3e0ed4 6662 libgcrypt11-dev_1.5.4-3+really1.7.6-1ubuntu0.1_armhf.deb a40096357c36400cf2b01950032ece0e5af8ff2a 561232 libgcrypt20-dbgsym_1.7.6-1ubuntu0.1_armhf.ddeb 59a74545e3b7d402ff6374671f8193d598e10a77 28844 libgcrypt20-dev-dbgsym_1.7.6-1ubuntu0.1_armhf.ddeb 3b2c12b62b4b24ddc0b5c28744ddb226d981239d 395038 libgcrypt20-dev_1.7.6-1ubuntu0.1_armhf.deb 2bab50cb06a572502ee2afa37deb8f8bc14ba111 561192 libgcrypt20-udeb-dbgsym_1.7.6-1ubuntu0.1_armhf.ddeb 7c0f19e59600fd3e51a3ed9252a16a6682851d54 313492 libgcrypt20-udeb_1.7.6-1ubuntu0.1_armhf.udeb 15428f5aec7e6dbd9f413e1c209997dcb457422a 343728 libgcrypt20_1.7.6-1ubuntu0.1_armhf.deb Checksums-Sha256: 89893e4b50e7e5a5acab90d2501151951e1a83a3fa8bd10358149c3a3732f4ff 6662 libgcrypt11-dev_1.5.4-3+really1.7.6-1ubuntu0.1_armhf.deb f1f5fca00600c8624bf363cddae7b632a2b5d35401aedeb912d223a4a3c544d6 561232 libgcrypt20-dbgsym_1.7.6-1ubuntu0.1_armhf.ddeb 95d932c82b0c32a89b9ad30ec46a419e61c97356ac24b1cdd99e9f15eca566fb 28844 libgcrypt20-dev-dbgsym_1.7.6-1ubuntu0.1_armhf.ddeb 7c18ea39a81ced71ec62df11077b3458fcd479110aa36ef54fbb03f6373c13dd 395038 libgcrypt20-dev_1.7.6-1ubuntu0.1_armhf.deb 8569a1944ced145df6c048ff7ab612ad5dc9c9f44e3cd0f4a93a7cbf1e7da944 561192 libgcrypt20-udeb-dbgsym_1.7.6-1ubuntu0.1_armhf.ddeb e47a96f638cac701383bfed6bd07cfbce84cc9c93622f2656acdddf842cafea6 313492 libgcrypt20-udeb_1.7.6-1ubuntu0.1_armhf.udeb ce06bee8aaa5d73f75bf4ba058288e2f5a63ea43732af47689342e9082a761f8 343728 libgcrypt20_1.7.6-1ubuntu0.1_armhf.deb Files: 509a89eb7ac30f4d53d4ad1f34521324 6662 oldlibs extra libgcrypt11-dev_1.5.4-3+really1.7.6-1ubuntu0.1_armhf.deb fac8cdf6c140d5d61ba4ed6be9979ca6 561232 libs extra libgcrypt20-dbgsym_1.7.6-1ubuntu0.1_armhf.ddeb 339c3c12013545db42243308a846b157 28844 libdevel extra libgcrypt20-dev-dbgsym_1.7.6-1ubuntu0.1_armhf.ddeb 681a77e833ec2416ff0227e3e6e84d85 395038 libdevel optional libgcrypt20-dev_1.7.6-1ubuntu0.1_armhf.deb 6134bb8f2db5ecf0853fb3a4100ca5a9 561192 debian-installer extra libgcrypt20-udeb-dbgsym_1.7.6-1ubuntu0.1_armhf.ddeb 62c6dde7bc0f61175b7d9a560baa3b43 313492 debian-installer optional libgcrypt20-udeb_1.7.6-1ubuntu0.1_armhf.udeb 6c688e46432a22334d72ef541377b45a 343728 libs standard libgcrypt20_1.7.6-1ubuntu0.1_armhf.deb Original-Maintainer: Debian GnuTLS Maintainers