Format: 1.8 Date: Fri, 02 May 2014 15:27:44 -0400 Source: openssl Binary: openssl libssl1.0.0 libcrypto1.0.0-udeb libssl1.0.0-udeb libssl-dev libssl-doc libssl1.0.0-dbg Architecture: amd64 amd64_translations Version: 1.0.1c-3ubuntu2.8 Distribution: quantal Urgency: medium Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.0.0-udeb - crypto shared library - udeb (udeb) libssl-dev - SSL development libraries, header files and documentation libssl-doc - SSL development documentation documentation libssl1.0.0 - SSL shared libraries libssl1.0.0-dbg - Symbol tables for libssl and libcrypto libssl1.0.0-udeb - ssl shared library - udeb (udeb) openssl - Secure Socket Layer (SSL) binary and related cryptographic tools Changes: openssl (1.0.1c-3ubuntu2.8) quantal-security; urgency=medium . * SECURITY UPDATE: denial of service via use after free - debian/patches/CVE-2010-5298.patch: check s->s3->rbuf.left before releasing buffers in ssl/s3_pkt.c. - CVE-2010-5298 * SECURITY UPDATE: denial of service via null pointer dereference - debian/patches/CVE-2014-0198.patch: if buffer was released, get a new one in ssl/s3_pkt.c. - CVE-2014-0198 Checksums-Sha1: 7ffbcff9d263a6a4803cd2c48c3f0bb00ef66ed6 525124 openssl_1.0.1c-3ubuntu2.8_amd64.deb 7d2b02c4511c50060d874254dbedbbb527ab5932 1052926 libssl1.0.0_1.0.1c-3ubuntu2.8_amd64.deb 0fae465732106b05057043ac2cb591b5f14f5053 616778 libcrypto1.0.0-udeb_1.0.1c-3ubuntu2.8_amd64.udeb cd6fee24f24085736ed0f6af7d7eabf02a06c57b 122032 libssl1.0.0-udeb_1.0.1c-3ubuntu2.8_amd64.udeb 6644d7129be38f092be6953bcc13b02546751932 1574558 libssl-dev_1.0.1c-3ubuntu2.8_amd64.deb 7b4cd5a67eb36b8d9e337e0fcbf65ee40aecda47 2901932 libssl1.0.0-dbg_1.0.1c-3ubuntu2.8_amd64.deb 2695e825e764420ce6c7b2d23b3a32b74acf9aa1 18986 openssl_1.0.1c-3ubuntu2.8_amd64_translations.tar.gz Checksums-Sha256: 5730dc805cbfaae3aaf9e9e6afbe9ce80a1b9652af977c2792a68712ab50b9e1 525124 openssl_1.0.1c-3ubuntu2.8_amd64.deb 893c77007d7b0f71e5663976844d84ce0330028500a678ce27c36e742af2ba2e 1052926 libssl1.0.0_1.0.1c-3ubuntu2.8_amd64.deb fd0442837c24feef847d0a3529bb92bf2e6742f7d8e6b0c0c7dbb2709d94a4f6 616778 libcrypto1.0.0-udeb_1.0.1c-3ubuntu2.8_amd64.udeb d2ea65762dffb9beee26e1d0de363b6284855a2d9a01d735aa200ecbc1b6ab3c 122032 libssl1.0.0-udeb_1.0.1c-3ubuntu2.8_amd64.udeb b962068bbbd9ab29be01fdbfcb045b287ac921b68a4a7e860c6d81f64ecea0b4 1574558 libssl-dev_1.0.1c-3ubuntu2.8_amd64.deb 68eed73f5e4f49c0656d07d8481af3d9834f8205eee79ebb0ab4faa3886a13e0 2901932 libssl1.0.0-dbg_1.0.1c-3ubuntu2.8_amd64.deb 76a259b4109c31a728b04b74bf731a995f26a135a1ce2c059bebdc7547d7c6b2 18986 openssl_1.0.1c-3ubuntu2.8_amd64_translations.tar.gz Files: 216f7e23c425d1a1c2a95630539d8b48 525124 utils optional openssl_1.0.1c-3ubuntu2.8_amd64.deb b9a9c0c18c530cf8166aab95a05b274e 1052926 libs important libssl1.0.0_1.0.1c-3ubuntu2.8_amd64.deb 19d42306c2ed76ee6082561643b8a787 616778 debian-installer optional libcrypto1.0.0-udeb_1.0.1c-3ubuntu2.8_amd64.udeb 2c54bcf1a9b1cc7c4d1eb63c58e70a95 122032 debian-installer optional libssl1.0.0-udeb_1.0.1c-3ubuntu2.8_amd64.udeb 0e511917d057972e569a8c9c5a0852f4 1574558 libdevel optional libssl-dev_1.0.1c-3ubuntu2.8_amd64.deb 42e4fd0c90a039928d27b82c85224bb6 2901932 debug extra libssl1.0.0-dbg_1.0.1c-3ubuntu2.8_amd64.deb 9965e8c5ab2baf384a63d350f74ba3d9 18986 raw-translations - openssl_1.0.1c-3ubuntu2.8_amd64_translations.tar.gz Original-Maintainer: Debian OpenSSL Team Package-Type: udeb