Format: 1.8 Date: Thu, 07 Dec 2017 13:16:22 -0500 Source: openssl Binary: openssl libssl1.0.0 libcrypto1.0.0-udeb libssl1.0.0-udeb libssl-dev libssl1.0-dev libssl-doc libssl1.0.0-dbg Architecture: amd64 all amd64_translations Version: 1.0.2g-1ubuntu13.3 Distribution: artful Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.0.0-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl-doc - Secure Sockets Layer toolkit - development documentation libssl1.0-dev - Secure Sockets Layer toolkit - metapackage libssl1.0.0 - Secure Sockets Layer toolkit - shared libraries libssl1.0.0-dbg - Secure Sockets Layer toolkit - debug information libssl1.0.0-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (1.0.2g-1ubuntu13.3) artful-security; urgency=medium . * SECURITY UPDATE: Read/write after SSL object in error state - debian/patches/CVE-2017-3737-pre.patch: add test/ssltestlib.*, add to test/Makefile. - debian/patches/CVE-2017-3737-1.patch: don't allow read/write after fatal error in ssl/ssl.h. - debian/patches/CVE-2017-3737-2.patch: add test to ssl/Makefile, ssl/fatalerrtest.c, test/Makefile. - CVE-2017-3737 * SECURITY UPDATE: rsaz_1024_mul_avx2 overflow bug on x86_64 - debian/patches/CVE-2017-3738.patch: fix digit correction bug in crypto/bn/asm/rsaz-avx2.pl. - CVE-2017-3738 Checksums-Sha1: 3a0d10d0cb1e743a7ecb0cffadd5eeec300c33d0 856526 libcrypto1.0.0-udeb_1.0.2g-1ubuntu13.3_amd64.udeb a93cf6791fdf6ef8c13b0b2f76bb30b81a2dbd74 1357728 libssl-dev_1.0.2g-1ubuntu13.3_amd64.deb e919ffdbf2dc2fee97a834b7e24282e3ab3fb561 1056356 libssl-doc_1.0.2g-1ubuntu13.3_all.deb c7f007e4f58b95bc7ccf60a6b2b4a22c462bb620 3236 libssl1.0-dev_1.0.2g-1ubuntu13.3_amd64.deb 39cb41d18a7b08de0a70cb53e1e8f1b739d439fd 3090840 libssl1.0.0-dbg_1.0.2g-1ubuntu13.3_amd64.deb 068bc0501c5951f0cdbc41d30188108c483be5bd 140678 libssl1.0.0-udeb_1.0.2g-1ubuntu13.3_amd64.udeb aed2f166e2622ea34687f8848dce4b0cbf5d7568 1085740 libssl1.0.0_1.0.2g-1ubuntu13.3_amd64.deb b4a889420441795063f867bef43ce56a1547f9a8 594546 openssl-dbgsym_1.0.2g-1ubuntu13.3_amd64.ddeb 790438fd176eebd5eaa407f49a6e6701909b8584 7619 openssl_1.0.2g-1ubuntu13.3_amd64.buildinfo 5e1b69840dabc2e7877372f70032b708c4761fb6 495214 openssl_1.0.2g-1ubuntu13.3_amd64.deb 551975c57f2cf04406a4706d3b6f5784cb5ea5ba 20496 openssl_1.0.2g-1ubuntu13.3_amd64_translations.tar.gz Checksums-Sha256: 266b5676a27cbe6d09c46f1da341d2a5f2231923fa8a190ef2d30f83f05d51e0 856526 libcrypto1.0.0-udeb_1.0.2g-1ubuntu13.3_amd64.udeb 45c0b3703e9b9f056b597d1949fc405254a9dcffc372d9d183ce57144a5df080 1357728 libssl-dev_1.0.2g-1ubuntu13.3_amd64.deb 81d04ddc6a1dedc9b6d31c152c46fac143a95c3e1b9fb4082735a472d1434256 1056356 libssl-doc_1.0.2g-1ubuntu13.3_all.deb ff2d91b0e44dc1aa623505afc47af061b004cc70b8f8b9ceaffbe392ab7ed421 3236 libssl1.0-dev_1.0.2g-1ubuntu13.3_amd64.deb 28a54dce8e4182cf781e9c0c2139e687bcfc4a3fc01a1274697548c8f7564710 3090840 libssl1.0.0-dbg_1.0.2g-1ubuntu13.3_amd64.deb d5c47a0aecc0bbc90aa301dbbd25cdec0678969872d26b9fb1dd9f5a79b623b4 140678 libssl1.0.0-udeb_1.0.2g-1ubuntu13.3_amd64.udeb e02817f2cbfe8955d681c97ef04c6544b6d3034a5a9b5f18fadb4549a0cfd51c 1085740 libssl1.0.0_1.0.2g-1ubuntu13.3_amd64.deb 5695310868d6f81d33d873c23ee1e989c8d0fbfd1074a643ddb33fb229430139 594546 openssl-dbgsym_1.0.2g-1ubuntu13.3_amd64.ddeb cdf219797af5e185c563e737cf38674cfee4d4e420c867240d7812422c47b1ca 7619 openssl_1.0.2g-1ubuntu13.3_amd64.buildinfo 32378ef7aecd823f1adba8c8757dc2050354b29014e9dab5151ab9aa6f7b7316 495214 openssl_1.0.2g-1ubuntu13.3_amd64.deb 514c2a707d9a50e3dfb09bf2f138214f9e0dbacc4b83d1033971f83d978f519f 20496 openssl_1.0.2g-1ubuntu13.3_amd64_translations.tar.gz Files: aa2a32c8784adbfd52ab16038c4b5f09 856526 debian-installer optional libcrypto1.0.0-udeb_1.0.2g-1ubuntu13.3_amd64.udeb 508440f6f69c61b863a0ff4f985d8782 1357728 libdevel optional libssl-dev_1.0.2g-1ubuntu13.3_amd64.deb ba945639f5bbfd07da7d827bd38a0aa4 1056356 doc optional libssl-doc_1.0.2g-1ubuntu13.3_all.deb d61730cdcac69ba83264062464fea196 3236 libdevel optional libssl1.0-dev_1.0.2g-1ubuntu13.3_amd64.deb 821d867d3a9d028b6ea8dbba5bc819fe 3090840 debug extra libssl1.0.0-dbg_1.0.2g-1ubuntu13.3_amd64.deb 83edd01cade04d08aaa70068fa076ee8 140678 debian-installer optional libssl1.0.0-udeb_1.0.2g-1ubuntu13.3_amd64.udeb 07375744edec4ff8bae477fcf8f96e4f 1085740 libs important libssl1.0.0_1.0.2g-1ubuntu13.3_amd64.deb 7d1ef630b09e2c7095396aea341fcdec 594546 debug extra openssl-dbgsym_1.0.2g-1ubuntu13.3_amd64.ddeb d080ba708d3a133ab1961ec4b9120485 7619 utils optional openssl_1.0.2g-1ubuntu13.3_amd64.buildinfo da12915f94c6e1b9000968ff6ea5beb8 495214 utils optional openssl_1.0.2g-1ubuntu13.3_amd64.deb f3067b2c1a4738c696b5df2b206b8653 20496 raw-translations - openssl_1.0.2g-1ubuntu13.3_amd64_translations.tar.gz Original-Maintainer: Debian OpenSSL Team Package-Type: udeb