Format: 1.8 Date: Mon, 03 Jul 2017 08:16:37 -0400 Source: libgcrypt20 Binary: libgcrypt20-doc libgcrypt20-dev libgcrypt20 libgcrypt20-udeb libgcrypt11-dev Architecture: arm64 Version: 1.6.5-2ubuntu0.3 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libgcrypt11-dev - transitional libgcrypt11-dev package libgcrypt20 - LGPL Crypto library - runtime library libgcrypt20-dev - LGPL Crypto library - development files libgcrypt20-doc - LGPL Crypto library - documentation libgcrypt20-udeb - LGPL Crypto library - runtime library (udeb) Changes: libgcrypt20 (1.6.5-2ubuntu0.3) xenial-security; urgency=medium . * SECURITY UPDATE: full RSA key recovery via side-channel attack - debian/patches/CVE-2017-7526-1.patch: simplify loop in mpi/mpi-pow.c. - debian/patches/CVE-2017-7526-2.patch: use same computation for square and multiply in mpi/mpi-pow.c. - debian/patches/CVE-2017-7526-3.patch: add exponent blinding in cipher/rsa.c. - debian/patches/CVE-2017-7526-4.patch: add free to cipher/rsa.c. - debian/patches/CVE-2017-7526-5.patch: add free to cipher/rsa.c. - CVE-2017-7526 * SECURITY UPDATE: EdDSA key recovery via side-channel attack - debian/patches/CVE-2017-9526-1.patch: store EdDSA session key in secure memory in cipher/ecc-eddsa.c. - debian/patches/CVE-2017-9526-2.patch: fix SEGV and stat calculation src/secmem.c. - CVE-2017-9526 Checksums-Sha1: 7b7926f5bacba500206dae90fd6ea8fc2160aa92 465782 libgcrypt20-dbgsym_1.6.5-2ubuntu0.3_arm64.ddeb e5218e9b72dacd7777b0eb09bc387dff8ff73f7a 28438 libgcrypt20-dev-dbgsym_1.6.5-2ubuntu0.3_arm64.ddeb 3651a6ebc9bd17b9a2687063aaefad1a0487e801 315312 libgcrypt20-dev_1.6.5-2ubuntu0.3_arm64.deb 87757bc678e8477e0ce1135eff94af9129a81ec6 465770 libgcrypt20-udeb-dbgsym_1.6.5-2ubuntu0.3_arm64.ddeb c1a883c7924137fde4ac4c953e2fc4b760fb111a 237080 libgcrypt20-udeb_1.6.5-2ubuntu0.3_arm64.udeb 4e8209526f863de9ad7223b508ae3b3188394cb4 266542 libgcrypt20_1.6.5-2ubuntu0.3_arm64.deb Checksums-Sha256: c3125be9f72c0dcd2d91814a844082c58d251989ed5b57a55d649dfd25392cff 465782 libgcrypt20-dbgsym_1.6.5-2ubuntu0.3_arm64.ddeb b3ab24d79e8869ca7e6e50471c343498780055a877a53d247d2c7641a4d4eb79 28438 libgcrypt20-dev-dbgsym_1.6.5-2ubuntu0.3_arm64.ddeb 9946a457ac11e8f0d2bb6fa1c9a7b44e495c43089b554b4bea41e98def6dce20 315312 libgcrypt20-dev_1.6.5-2ubuntu0.3_arm64.deb 8fb0b30ef1c387a77204962888ea6e77885b5ef940976402726c944e3da12730 465770 libgcrypt20-udeb-dbgsym_1.6.5-2ubuntu0.3_arm64.ddeb 058120a88591ed4d5f39a645bf441771b4ec45640c07ed4e0acee2af239497eb 237080 libgcrypt20-udeb_1.6.5-2ubuntu0.3_arm64.udeb 84998969273ac1f312aca19bfd1216ce5a95d681e94814a5f60e10521ab5bbe0 266542 libgcrypt20_1.6.5-2ubuntu0.3_arm64.deb Files: ca377eed5c52e6f1933f8ec3bbd32b17 465782 libs extra libgcrypt20-dbgsym_1.6.5-2ubuntu0.3_arm64.ddeb 8960149df4302de91a4a5fd81612ee0c 28438 libdevel extra libgcrypt20-dev-dbgsym_1.6.5-2ubuntu0.3_arm64.ddeb b60bb7ed087ea0f739277ba5a05dfcb4 315312 libdevel optional libgcrypt20-dev_1.6.5-2ubuntu0.3_arm64.deb 82d110b8e8aec8fa1afaccc6f4e7c668 465770 debian-installer extra libgcrypt20-udeb-dbgsym_1.6.5-2ubuntu0.3_arm64.ddeb e50b72d8c701ed1c3755301aa4d88f49 237080 debian-installer optional libgcrypt20-udeb_1.6.5-2ubuntu0.3_arm64.udeb a8b88c61b0879d41fd0c179dcd4d9cb5 266542 libs standard libgcrypt20_1.6.5-2ubuntu0.3_arm64.deb Original-Maintainer: Debian GnuTLS Maintainers