Format: 1.8 Date: Thu, 18 Apr 2024 09:54:34 -0400 Source: gnutls28 Binary: gnutls-bin libgnutls-dane0t64 libgnutls-openssl27t64 libgnutls28-dev libgnutls30t64 Built-For-Profiles: noudeb Architecture: s390x s390x_translations Version: 3.8.3-1.1ubuntu3.1 Distribution: noble Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: gnutls-bin - GNU TLS library - commandline utilities libgnutls-dane0t64 - GNU TLS library - DANE security support libgnutls-openssl27t64 - GNU TLS library - OpenSSL wrapper libgnutls28-dev - GNU TLS library - development files libgnutls30t64 - GNU TLS library - main runtime library Changes: gnutls28 (3.8.3-1.1ubuntu3.1) noble-security; urgency=medium . * SECURITY UPDATE: side-channel leak via Minerva attack - debian/patches/CVE-2024-28834.patch: avoid normalization of mpz_t in deterministic ECDSA in lib/nettle/int/dsa-compute-k.c, lib/nettle/int/dsa-compute-k.h, lib/nettle/int/ecdsa-compute-k.c, lib/nettle/int/ecdsa-compute-k.h, lib/nettle/pk.c, tests/sign-verify-deterministic.c. - CVE-2024-28834 * SECURITY UPDATE: crash via specially-crafted cert bundle - debian/patches/CVE-2024-28835.patch: remove length limit of input in lib/gnutls_int.h, lib/x509/common.c, lib/x509/verify-high.c, tests/test-chains.h. - CVE-2024-28835 Checksums-Sha1: c42e06d4579600235744688072ef6aca63198ba9 614576 gnutls-bin-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb 8f6b2073272f3ab8c8382698d573742752d8169f 283940 gnutls-bin_3.8.3-1.1ubuntu3.1_s390x.deb ff04ffe47c8006ae03067eba3dbd8dc324a824f6 10285 gnutls28_3.8.3-1.1ubuntu3.1_s390x.buildinfo dab432497630e97b34d8e2615a3e5d7d187019c8 425976 gnutls28_3.8.3-1.1ubuntu3.1_s390x_translations.tar.gz ee963daaf515603e57cac87965befbd546a7bd07 48008 libgnutls-dane0t64-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb 2594b479ea4089dd462a2ed232584aa0af00cff2 23798 libgnutls-dane0t64_3.8.3-1.1ubuntu3.1_s390x.deb fdc8a62cce0199b7c31c610cda8e079fd8d59dc1 50028 libgnutls-openssl27t64-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb dff3d5de9707eb0150a43d1d74a92bd5b95fc9cd 23806 libgnutls-openssl27t64_3.8.3-1.1ubuntu3.1_s390x.deb ff9cfcbb803362836149bdef34f8eee88204dfb8 1011234 libgnutls28-dev_3.8.3-1.1ubuntu3.1_s390x.deb e20c55560c3b313cc271258fd5aa4747d3af3a82 2172714 libgnutls30t64-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb 152f24126a103b0919504624e28b204b25e95466 943788 libgnutls30t64_3.8.3-1.1ubuntu3.1_s390x.deb Checksums-Sha256: 5579acfdfb6952a58b2ef15596eacb35cdac2bd1768a47064a7edf6e7f88d38b 614576 gnutls-bin-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb 807d6766afe5bd319d53deb652aec360f9d1bacc2b9b4ab825e9f4fc9a7c10b8 283940 gnutls-bin_3.8.3-1.1ubuntu3.1_s390x.deb 7eb37ffacf0de402b5d95a7b7d69a91f4c7ab35c991771df06798a1fd339367c 10285 gnutls28_3.8.3-1.1ubuntu3.1_s390x.buildinfo 61ff4ffd01f8a22775d74e0baa50624051ea57891985793980dc5720c755b349 425976 gnutls28_3.8.3-1.1ubuntu3.1_s390x_translations.tar.gz a42711a93d89275a0342f0c5cd671b9a9b0557785fbeb71637129fb6038192e1 48008 libgnutls-dane0t64-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb 8e9cac0a69428e83feab187655aa71e5164161d5d9edded27a97c1104f743e55 23798 libgnutls-dane0t64_3.8.3-1.1ubuntu3.1_s390x.deb 8d6faedca41b68e114e3f657bf4d41e4c261edbb71d0f63b68ab7f376e03ac44 50028 libgnutls-openssl27t64-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb bfdc66e15ba63e3f9cfb67d95e3fad82dd2d0cf592df6417bdb789070246c266 23806 libgnutls-openssl27t64_3.8.3-1.1ubuntu3.1_s390x.deb ec69f01619fdaec680444ad041162f81d3a7fc03b3120490f177ceb5d7600c15 1011234 libgnutls28-dev_3.8.3-1.1ubuntu3.1_s390x.deb 801436b1528fde5c3172511c7262cdca16754def3332b313fb4522d02c078010 2172714 libgnutls30t64-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb 2f51f4dbee5205642c2640b980c223b05308495790eef8d58f480c3fca2ba4d9 943788 libgnutls30t64_3.8.3-1.1ubuntu3.1_s390x.deb Files: ec470ea80da16b80c58fa41e98c315e9 614576 debug optional gnutls-bin-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb a3be033d97c5761ebc9a66b5c526537d 283940 net optional gnutls-bin_3.8.3-1.1ubuntu3.1_s390x.deb 6f7f79c17d39d487f49fc735180afa50 10285 libs optional gnutls28_3.8.3-1.1ubuntu3.1_s390x.buildinfo dbaa0e8a46ad0bfd68ebd8f54e0f9802 425976 raw-translations - gnutls28_3.8.3-1.1ubuntu3.1_s390x_translations.tar.gz 341a5099c5405d68c5b1b3b7003a465c 48008 debug optional libgnutls-dane0t64-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb a237daf7af752be017f22bf60c4da098 23798 libs optional libgnutls-dane0t64_3.8.3-1.1ubuntu3.1_s390x.deb 5d07639c5facce330c225586bc3583ef 50028 debug optional libgnutls-openssl27t64-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb 4879772ed424eeabdcc51b20aa715d10 23806 libs optional libgnutls-openssl27t64_3.8.3-1.1ubuntu3.1_s390x.deb 38f2f273260a67f685748590bc4ec0ad 1011234 libdevel optional libgnutls28-dev_3.8.3-1.1ubuntu3.1_s390x.deb 7fa34194870b0fc488dbc704897d6f0b 2172714 debug optional libgnutls30t64-dbgsym_3.8.3-1.1ubuntu3.1_s390x.ddeb 688a891a3d0a39cf0267f5129cbacfd7 943788 libs optional libgnutls30t64_3.8.3-1.1ubuntu3.1_s390x.deb Original-Maintainer: Debian GnuTLS Maintainers