[ubuntu/impish-proposed] gnutls28 3.7.1-4ubuntu1 (Accepted)

William 'jawn-smith' Wilson william.wilson at canonical.com
Fri May 28 02:02:14 UTC 2021


gnutls28 (3.7.1-4ubuntu1) impish; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - Enable CET.
    - Set default priority string to only allow TLS1.2, DTLS1.2, and
    TLS1.3 with medium security profile (2048 RSA keys minimum, and
    similar).
  * Fix FTBFS with lto - reduce parallelism to 2. LP: #1922004

gnutls28 (3.7.1-4) unstable; urgency=medium

  * Pull fixes from upstream Git master
    + Ensure array allocations overflow safe.
      https://gitlab.com/gnutls/gnutls/-/issues/1179
      56_15-mem-add-_gnutls_reallocarray-and-_gnutls_reallocarra.patch
      56_16-pkcs11x-find_ext_cb-fix-error-propagation.patch
      56_17-build-avoid-potential-integer-overflow-in-array-allo.patch
      56_18-build-avoid-integer-overflow-in-additions.patch
      56_19-_gnutls_calloc-remove-unused-function.patch
    + Add option to disable TLS 1.3 middlebox compatibility mode
      https://gitlab.com/gnutls/gnutls/-/issues/1208
      56_20-priority-add-option-to-disable-TLS-1.3-middlebox-com.patch
      (Changes gperf input file, add b-d on gperf.)
    + Fix session-id changing when responding to HelloRetryRequest
      56_24-handshake-don-t-regenerate-legacy_session_id-in-seco.patch
      https://gitlab.com/gnutls/gnutls/-/issues/1210
    + Fix timing of sending TLSv1.3 early data.
      56_28-handshake-fix-timing-of-sending-early-data.patch
      https://gitlab.com/gnutls/gnutls/-/issues/1146

Date: Fri, 21 May 2021 10:29:32 -0600
Changed-By: William 'jawn-smith' Wilson <william.wilson at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Brian Murray <brian at ubuntu.com>
https://launchpad.net/ubuntu/+source/gnutls28/3.7.1-4ubuntu1
-------------- next part --------------
Format: 1.8
Date: Fri, 21 May 2021 10:29:32 -0600
Source: gnutls28
Built-For-Profiles: noudeb
Architecture: source
Version: 3.7.1-4ubuntu1
Distribution: impish
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: William 'jawn-smith' Wilson <william.wilson at canonical.com>
Launchpad-Bugs-Fixed: 1922004
Changes:
 gnutls28 (3.7.1-4ubuntu1) impish; urgency=low
 .
   * Merge from Debian unstable. Remaining changes:
     - Enable CET.
     - Set default priority string to only allow TLS1.2, DTLS1.2, and
     TLS1.3 with medium security profile (2048 RSA keys minimum, and
     similar).
   * Fix FTBFS with lto - reduce parallelism to 2. LP: #1922004
 .
 gnutls28 (3.7.1-4) unstable; urgency=medium
 .
   * Pull fixes from upstream Git master
     + Ensure array allocations overflow safe.
       https://gitlab.com/gnutls/gnutls/-/issues/1179
       56_15-mem-add-_gnutls_reallocarray-and-_gnutls_reallocarra.patch
       56_16-pkcs11x-find_ext_cb-fix-error-propagation.patch
       56_17-build-avoid-potential-integer-overflow-in-array-allo.patch
       56_18-build-avoid-integer-overflow-in-additions.patch
       56_19-_gnutls_calloc-remove-unused-function.patch
     + Add option to disable TLS 1.3 middlebox compatibility mode
       https://gitlab.com/gnutls/gnutls/-/issues/1208
       56_20-priority-add-option-to-disable-TLS-1.3-middlebox-com.patch
       (Changes gperf input file, add b-d on gperf.)
     + Fix session-id changing when responding to HelloRetryRequest
       56_24-handshake-don-t-regenerate-legacy_session_id-in-seco.patch
       https://gitlab.com/gnutls/gnutls/-/issues/1210
     + Fix timing of sending TLSv1.3 early data.
       56_28-handshake-fix-timing-of-sending-early-data.patch
       https://gitlab.com/gnutls/gnutls/-/issues/1146
Checksums-Sha1:
 db4d1c6236a161c5bd729352cdc68f7b741a45eb 3594 gnutls28_3.7.1-4ubuntu1.dsc
 62020ddd4063b8dda8dc76ed9177cf63c7dc1d56 83592 gnutls28_3.7.1-4ubuntu1.debian.tar.xz
 81c9b787de155ddf9a1c01f28f773a45d4c2330a 7553 gnutls28_3.7.1-4ubuntu1_source.buildinfo
Checksums-Sha256:
 f97103fac056c936ed0c709310ac912ca2089ffa71d582f439430078158bf11d 3594 gnutls28_3.7.1-4ubuntu1.dsc
 29b4b584fc822ab80799451363d6a1e22d429feaf0cf38377e3d34f0d7164068 83592 gnutls28_3.7.1-4ubuntu1.debian.tar.xz
 3b82077324676c50261329002237014232bd3da0aaf614368f95bd2ab77a7570 7553 gnutls28_3.7.1-4ubuntu1_source.buildinfo
Files:
 e8ac5cdfd4620de26e953c678c9f7261 3594 libs optional gnutls28_3.7.1-4ubuntu1.dsc
 2d8807344992ab79212095c508605f0b 83592 libs optional gnutls28_3.7.1-4ubuntu1.debian.tar.xz
 144673b0df4eb7af793ccfd8eec2fab8 7553 libs optional gnutls28_3.7.1-4ubuntu1_source.buildinfo
Original-Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint at lists.alioth.debian.org>


More information about the impish-changes mailing list