openssl 0.9.8a-7ubuntu0.4 source package in Ubuntu

Changelog

openssl (0.9.8a-7ubuntu0.4) dapper-security; urgency=low

  [ Jamie Strandboge ]
  * SECURITY UPDATE: off-by-one error in SSL_get_shared_ciphers() results in
    buffer overflow
  * ssl/ssl_lib.c: applied upstream patch from openssl CVS thanks to
    Stephan Hermann
  * References:
    CVE-2007-5135
    http://www.securityfocus.com/archive/1/archive/1/480855/100/0/threaded
    Fixes LP: #146269

  [ Kees Cook ]
  * SECURITY UPDATE: side-channel attacks via BN_from_montgomery function.
  * crypto/bn/bn_mont.c: upstream patch from openssl CVS thanks to Debian.
  * References
    CVE-2007-3108

 -- Kees Cook <email address hidden>   Fri, 28 Sep 2007 13:10:15 -0700

Upload details

Uploaded by:
Kees Cook
Uploaded to:
Dapper
Original maintainer:
Debian OpenSSL Team
Architectures:
any
Section:
utils
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
openssl_0.9.8a.orig.tar.gz 3.1 MiB 30f8f61fb1316f4fb51410c740b4879b8e26b417c8d870e486144b10b8041c73
openssl_0.9.8a-7ubuntu0.4.diff.gz 39.2 KiB c73c06a3c65af66f1d95fed61425e4f6258f0d9d842bb66f31cfb6e7e0d03d23
openssl_0.9.8a-7ubuntu0.4.dsc 814 bytes c5e12a9094a6f63dd852f8c746d9705369be0b379539c4fb0730ca226d7a8310

View changes file

Binary packages built by this source

libcrypto0.9.8-udeb: No summary available for libcrypto0.9.8-udeb in ubuntu dapper.

No description available for libcrypto0.9.8-udeb in ubuntu dapper.

libssl-dev: No summary available for libssl-dev in ubuntu dapper.

No description available for libssl-dev in ubuntu dapper.

libssl0.9.8: No summary available for libssl0.9.8 in ubuntu dapper.

No description available for libssl0.9.8 in ubuntu dapper.

libssl0.9.8-dbg: No summary available for libssl0.9.8-dbg in ubuntu dapper.

No description available for libssl0.9.8-dbg in ubuntu dapper.

openssl: No summary available for openssl in ubuntu dapper.

No description available for openssl in ubuntu dapper.