Format: 1.8 Date: Mon, 03 Jul 2017 08:16:37 -0400 Source: libgcrypt20 Binary: libgcrypt20-doc libgcrypt20-dev libgcrypt20 libgcrypt20-udeb libgcrypt11-dev Architecture: s390x Version: 1.6.5-2ubuntu0.3 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libgcrypt11-dev - transitional libgcrypt11-dev package libgcrypt20 - LGPL Crypto library - runtime library libgcrypt20-dev - LGPL Crypto library - development files libgcrypt20-doc - LGPL Crypto library - documentation libgcrypt20-udeb - LGPL Crypto library - runtime library (udeb) Changes: libgcrypt20 (1.6.5-2ubuntu0.3) xenial-security; urgency=medium . * SECURITY UPDATE: full RSA key recovery via side-channel attack - debian/patches/CVE-2017-7526-1.patch: simplify loop in mpi/mpi-pow.c. - debian/patches/CVE-2017-7526-2.patch: use same computation for square and multiply in mpi/mpi-pow.c. - debian/patches/CVE-2017-7526-3.patch: add exponent blinding in cipher/rsa.c. - debian/patches/CVE-2017-7526-4.patch: add free to cipher/rsa.c. - debian/patches/CVE-2017-7526-5.patch: add free to cipher/rsa.c. - CVE-2017-7526 * SECURITY UPDATE: EdDSA key recovery via side-channel attack - debian/patches/CVE-2017-9526-1.patch: store EdDSA session key in secure memory in cipher/ecc-eddsa.c. - debian/patches/CVE-2017-9526-2.patch: fix SEGV and stat calculation src/secmem.c. - CVE-2017-9526 Checksums-Sha1: b52c63239917a83ca69751fa3c90573e0f92f646 443908 libgcrypt20-dbgsym_1.6.5-2ubuntu0.3_s390x.ddeb a69830d0cd3604f9bd3d8b6ccffa6966282711b6 25706 libgcrypt20-dev-dbgsym_1.6.5-2ubuntu0.3_s390x.ddeb 797db98c2a1d80c6a9a9d3e553633af33eedc5d8 341676 libgcrypt20-dev_1.6.5-2ubuntu0.3_s390x.deb 9fa7c967f7e3228e9a6f9676769f1b1dba4dbbbb 443872 libgcrypt20-udeb-dbgsym_1.6.5-2ubuntu0.3_s390x.ddeb 3c029611abcbf8daec99d56120effa35657b3f6e 265266 libgcrypt20-udeb_1.6.5-2ubuntu0.3_s390x.udeb 99cf69b14996f14bf861c3d0705d6dd991d27176 295422 libgcrypt20_1.6.5-2ubuntu0.3_s390x.deb Checksums-Sha256: ec6dabaa06c85e1dd47e2c01256988c0e6fcee27f8368492af350538a90e7750 443908 libgcrypt20-dbgsym_1.6.5-2ubuntu0.3_s390x.ddeb fe7e19db9607bd1278b6f46ea2dfeb6618c0a49c247bb529baca1b278e8b1a2d 25706 libgcrypt20-dev-dbgsym_1.6.5-2ubuntu0.3_s390x.ddeb 11b6d468b8973d7696e6a710eadf7f3b668193d7da388c32ef298a4c43a40fdf 341676 libgcrypt20-dev_1.6.5-2ubuntu0.3_s390x.deb aa51ae3eb5a462f2a26980537f4608b7176214af75d24fdb890ffea387344d16 443872 libgcrypt20-udeb-dbgsym_1.6.5-2ubuntu0.3_s390x.ddeb a33a3fd32d707a1a8211499bada99a99f84206cf7c1ba9c1bc2795958805979b 265266 libgcrypt20-udeb_1.6.5-2ubuntu0.3_s390x.udeb 9e1af4b534614c01a309666775fa87a76f0a998e6c8360f1362945ae18d234fc 295422 libgcrypt20_1.6.5-2ubuntu0.3_s390x.deb Files: a6d8ab0fbb0089c8569ae4945bf84608 443908 libs extra libgcrypt20-dbgsym_1.6.5-2ubuntu0.3_s390x.ddeb 42e07eb41d52326c953d5428c48a3542 25706 libdevel extra libgcrypt20-dev-dbgsym_1.6.5-2ubuntu0.3_s390x.ddeb 1845cdead9d306e410c6c61cf4321e3b 341676 libdevel optional libgcrypt20-dev_1.6.5-2ubuntu0.3_s390x.deb b1cfa2d592a75805fb731dc523754622 443872 debian-installer extra libgcrypt20-udeb-dbgsym_1.6.5-2ubuntu0.3_s390x.ddeb d525c9f433cd1a8956ec4deb4e6e38f8 265266 debian-installer optional libgcrypt20-udeb_1.6.5-2ubuntu0.3_s390x.udeb 015988ad21b7185ed49007bbfd01a64d 295422 libs standard libgcrypt20_1.6.5-2ubuntu0.3_s390x.deb Original-Maintainer: Debian GnuTLS Maintainers