Format: 1.8 Date: Thu, 26 Mar 2015 07:24:13 -0400 Source: libgcrypt20 Binary: libgcrypt20-doc libgcrypt20-dev libgcrypt20-dbg libgcrypt20 Architecture: armhf Version: 1.6.1-2ubuntu1.14.10.1 Distribution: utopic Urgency: medium Maintainer: Ubuntu/armhf Build Daemon Changed-By: Marc Deslauriers Description: libgcrypt20 - LGPL Crypto library - runtime library libgcrypt20-dbg - LGPL Crypto library - debugger files libgcrypt20-dev - LGPL Crypto library - development files libgcrypt20-doc - LGPL Crypto library - documentation Changes: libgcrypt20 (1.6.1-2ubuntu1.14.10.1) utopic-security; urgency=medium . * SECURITY UPDATE: sidechannel attack on Elgamal - debian/patches/CVE-2014-3591.patch: use ciphertext blinding in cipher/elgamal.c. - CVE-2014-3591 * SECURITY UPDATE: sidechannel attack via timing variations in mpi_powm - debian/patches/CVE-2015-0837.patch: avoid timing variations in mpi/mpi-pow.c, mpi/mpiutil.c, src/mpi.h. - CVE-2015-0837 Checksums-Sha1: 1be19524d2edb6bb389462a49b34dba65c827bd7 344448 libgcrypt20-dev_1.6.1-2ubuntu1.14.10.1_armhf.deb 8266ec0e8ff7a8efab3d65215361a633978d11b9 635988 libgcrypt20-dbg_1.6.1-2ubuntu1.14.10.1_armhf.deb 5b3a5231d9e3a4a1b1686fc175fdefdf399b83d4 298470 libgcrypt20_1.6.1-2ubuntu1.14.10.1_armhf.deb Checksums-Sha256: 5a091734b643704721026917e0c87a761439419dc86700fd87764be9c92b17ad 344448 libgcrypt20-dev_1.6.1-2ubuntu1.14.10.1_armhf.deb 399aa463606b1dcf1f724551b01f98b3cc337054c1dd2697c594f84b55542767 635988 libgcrypt20-dbg_1.6.1-2ubuntu1.14.10.1_armhf.deb 01e229581dfda32dd92063771b6518ce9436e872c5e1d05cd643ac5fe12bfcac 298470 libgcrypt20_1.6.1-2ubuntu1.14.10.1_armhf.deb Files: bb047022b65ffc80ef5f01813e568c6d 344448 libdevel optional libgcrypt20-dev_1.6.1-2ubuntu1.14.10.1_armhf.deb 5a47bd71d544f6fdbbc3c723e3ec7a76 635988 debug extra libgcrypt20-dbg_1.6.1-2ubuntu1.14.10.1_armhf.deb baf42577960b70621440a9faf39b9f61 298470 libs standard libgcrypt20_1.6.1-2ubuntu1.14.10.1_armhf.deb Original-Maintainer: Debian GnuTLS Maintainers