Format: 1.8 Date: Mon, 12 Jun 2017 09:31:08 -0400 Source: gnutls28 Binary: libgnutls28-dev libgnutls30 gnutls-bin gnutls-doc libgnutlsxx28 libgnutls-openssl27 Architecture: amd64 all amd64_translations Version: 3.5.3-5ubuntu1.2 Distribution: yakkety Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: gnutls-bin - GNU TLS library - commandline utilities gnutls-doc - GNU TLS library - documentation and examples libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls28-dev - GNU TLS library - development files libgnutls30 - GNU TLS library - main runtime library libgnutlsxx28 - GNU TLS library - C++ runtime library Changes: gnutls28 (3.5.3-5ubuntu1.2) yakkety-security; urgency=medium . * SECURITY UPDATE: null pointer dereference via status response TLS extension decoding - debian/patches/CVE-2017-7507-1.patch: ensure response IDs are properly deinitialized in lib/ext/status_request.c. - debian/patches/CVE-2017-7507-2.patch: remove parsing of responder IDs from client extension in lib/ext/status_request.c. - debian/patches/CVE-2017-7507-3.patch: documented requirements for parameters in lib/ext/status_request.c. - CVE-2017-7507 * SECURITY UPDATE: DoS and possible code execution via OpenPGP certificate decoding - debian/patches/CVE-2017-7869.patch: enforce packet limits in lib/opencdk/read-packet.c. - CVE-2017-7869 Checksums-Sha1: 7e85292c41445608745c89be045260ed07de3bf6 346596 gnutls-bin-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb 291caf49f43881bc5aa568ce7aeae71a56fe5b25 203192 gnutls-bin_3.5.3-5ubuntu1.2_amd64.deb 8f219c6497371cb19a729eb1b055945cdb57e692 3857276 gnutls-doc_3.5.3-5ubuntu1.2_all.deb 44d2cce9b5f5b756cb84935bc8450db21a8558e0 243803 gnutls28_3.5.3-5ubuntu1.2_amd64_translations.tar.gz 64945aa15491beed4e45cdd1908399fc40d0a241 40676 libgnutls-openssl27-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb 574713353eb9f09d3fd334af600ae24fd8136202 20504 libgnutls-openssl27_3.5.3-5ubuntu1.2_amd64.deb 45bfab91ba4bf2ce86ab2f2840e450a8e58e1b3e 628310 libgnutls28-dev_3.5.3-5ubuntu1.2_amd64.deb ea04aff70abb710600dd39439e332a735ac89176 1383528 libgnutls30-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb dc2a59512f0c2d517ec1cdb0fec7c441fe287aa8 614930 libgnutls30_3.5.3-5ubuntu1.2_amd64.deb 8bf80005fe672a827019553f85c82ab3c599587d 36978 libgnutlsxx28-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb 41378f32123752b199dd51c6645a03ad757e3d49 12984 libgnutlsxx28_3.5.3-5ubuntu1.2_amd64.deb Checksums-Sha256: 284fa1df0aca84f049a630f77b0317d35eeb7e06c7f77c11c9491cf0a2d8a18f 346596 gnutls-bin-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb 6221df0f5ac757a3360476e612dd100e81ef1577171455dee5d86301ec1bcccc 203192 gnutls-bin_3.5.3-5ubuntu1.2_amd64.deb 9017b4ac4f580a2bae3c3e3aae5a5fa8f7809c61ea25acb927e361d8f60b21d6 3857276 gnutls-doc_3.5.3-5ubuntu1.2_all.deb 4adca4ad43f8dd3935e577278e498afbd7cf9c8dfd2d71da8149c5120d9995b6 243803 gnutls28_3.5.3-5ubuntu1.2_amd64_translations.tar.gz 306250ebcd3aff1fff27da4ea754cb039cb58e85f62f39e51e1a06ec4c916e98 40676 libgnutls-openssl27-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb fa9f2db6dc46ba110c13e70aaf5bfb247b1ff047c28885bd13ddc2554618908a 20504 libgnutls-openssl27_3.5.3-5ubuntu1.2_amd64.deb 723178375c905e8cc93982f06bfede665373472187f355430ec7e4905984ec2a 628310 libgnutls28-dev_3.5.3-5ubuntu1.2_amd64.deb e039536b7cefd0deca1e88d25595a298b19f615bc083c05824d244b9c7adf96e 1383528 libgnutls30-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb 92cd8b636807beca3b6cf8c059d27bb33838236cf87bad632d71416661989da9 614930 libgnutls30_3.5.3-5ubuntu1.2_amd64.deb 76319c3c9383933e8bb333dda3e81ac698b7b9c076e798f5aa2029666bf74e52 36978 libgnutlsxx28-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb 1f6062aa2a8ca1e5ed36901ad919a747b7c433b9772c4ba0ab84a74f934d62e0 12984 libgnutlsxx28_3.5.3-5ubuntu1.2_amd64.deb Files: 46701572e2ef11f6b4507621257d03bd 346596 net extra gnutls-bin-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb 703593408605eae3f1e8d0c3cb19e916 203192 net optional gnutls-bin_3.5.3-5ubuntu1.2_amd64.deb 5102fed2314b3786e57d16035f5abb7e 3857276 doc optional gnutls-doc_3.5.3-5ubuntu1.2_all.deb 7502b4be669b0a22c246ea98604f5cf7 243803 raw-translations - gnutls28_3.5.3-5ubuntu1.2_amd64_translations.tar.gz da54f07e9d846440d6bae927f8b1ac79 40676 libs extra libgnutls-openssl27-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb f171e946a56fcb06ec984889dad3e1ff 20504 libs standard libgnutls-openssl27_3.5.3-5ubuntu1.2_amd64.deb a9de1f28badd6b72bb4788c65a944280 628310 libdevel optional libgnutls28-dev_3.5.3-5ubuntu1.2_amd64.deb aa500905d2aa95bf6300e1c3df0aaed5 1383528 libs extra libgnutls30-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb 544d6a71e04de4dd123af21c1d61b7b1 614930 libs standard libgnutls30_3.5.3-5ubuntu1.2_amd64.deb 13bb90e9e1af3730e985086eee9398d8 36978 libs extra libgnutlsxx28-dbgsym_3.5.3-5ubuntu1.2_amd64.ddeb fb5fc759733849c86acdff25fed7cbac 12984 libs extra libgnutlsxx28_3.5.3-5ubuntu1.2_amd64.deb Original-Maintainer: Debian GnuTLS Maintainers