[ubuntu/impish-proposed] gnutls28 3.7.1-4ubuntu1 (Accepted)
William 'jawn-smith' Wilson
william.wilson at canonical.com
Fri May 28 02:02:14 UTC 2021
gnutls28 (3.7.1-4ubuntu1) impish; urgency=low
* Merge from Debian unstable. Remaining changes:
- Enable CET.
- Set default priority string to only allow TLS1.2, DTLS1.2, and
TLS1.3 with medium security profile (2048 RSA keys minimum, and
similar).
* Fix FTBFS with lto - reduce parallelism to 2. LP: #1922004
gnutls28 (3.7.1-4) unstable; urgency=medium
* Pull fixes from upstream Git master
+ Ensure array allocations overflow safe.
https://gitlab.com/gnutls/gnutls/-/issues/1179
56_15-mem-add-_gnutls_reallocarray-and-_gnutls_reallocarra.patch
56_16-pkcs11x-find_ext_cb-fix-error-propagation.patch
56_17-build-avoid-potential-integer-overflow-in-array-allo.patch
56_18-build-avoid-integer-overflow-in-additions.patch
56_19-_gnutls_calloc-remove-unused-function.patch
+ Add option to disable TLS 1.3 middlebox compatibility mode
https://gitlab.com/gnutls/gnutls/-/issues/1208
56_20-priority-add-option-to-disable-TLS-1.3-middlebox-com.patch
(Changes gperf input file, add b-d on gperf.)
+ Fix session-id changing when responding to HelloRetryRequest
56_24-handshake-don-t-regenerate-legacy_session_id-in-seco.patch
https://gitlab.com/gnutls/gnutls/-/issues/1210
+ Fix timing of sending TLSv1.3 early data.
56_28-handshake-fix-timing-of-sending-early-data.patch
https://gitlab.com/gnutls/gnutls/-/issues/1146
Date: Fri, 21 May 2021 10:29:32 -0600
Changed-By: William 'jawn-smith' Wilson <william.wilson at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Brian Murray <brian at ubuntu.com>
https://launchpad.net/ubuntu/+source/gnutls28/3.7.1-4ubuntu1
-------------- next part --------------
Format: 1.8
Date: Fri, 21 May 2021 10:29:32 -0600
Source: gnutls28
Built-For-Profiles: noudeb
Architecture: source
Version: 3.7.1-4ubuntu1
Distribution: impish
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: William 'jawn-smith' Wilson <william.wilson at canonical.com>
Launchpad-Bugs-Fixed: 1922004
Changes:
gnutls28 (3.7.1-4ubuntu1) impish; urgency=low
.
* Merge from Debian unstable. Remaining changes:
- Enable CET.
- Set default priority string to only allow TLS1.2, DTLS1.2, and
TLS1.3 with medium security profile (2048 RSA keys minimum, and
similar).
* Fix FTBFS with lto - reduce parallelism to 2. LP: #1922004
.
gnutls28 (3.7.1-4) unstable; urgency=medium
.
* Pull fixes from upstream Git master
+ Ensure array allocations overflow safe.
https://gitlab.com/gnutls/gnutls/-/issues/1179
56_15-mem-add-_gnutls_reallocarray-and-_gnutls_reallocarra.patch
56_16-pkcs11x-find_ext_cb-fix-error-propagation.patch
56_17-build-avoid-potential-integer-overflow-in-array-allo.patch
56_18-build-avoid-integer-overflow-in-additions.patch
56_19-_gnutls_calloc-remove-unused-function.patch
+ Add option to disable TLS 1.3 middlebox compatibility mode
https://gitlab.com/gnutls/gnutls/-/issues/1208
56_20-priority-add-option-to-disable-TLS-1.3-middlebox-com.patch
(Changes gperf input file, add b-d on gperf.)
+ Fix session-id changing when responding to HelloRetryRequest
56_24-handshake-don-t-regenerate-legacy_session_id-in-seco.patch
https://gitlab.com/gnutls/gnutls/-/issues/1210
+ Fix timing of sending TLSv1.3 early data.
56_28-handshake-fix-timing-of-sending-early-data.patch
https://gitlab.com/gnutls/gnutls/-/issues/1146
Checksums-Sha1:
db4d1c6236a161c5bd729352cdc68f7b741a45eb 3594 gnutls28_3.7.1-4ubuntu1.dsc
62020ddd4063b8dda8dc76ed9177cf63c7dc1d56 83592 gnutls28_3.7.1-4ubuntu1.debian.tar.xz
81c9b787de155ddf9a1c01f28f773a45d4c2330a 7553 gnutls28_3.7.1-4ubuntu1_source.buildinfo
Checksums-Sha256:
f97103fac056c936ed0c709310ac912ca2089ffa71d582f439430078158bf11d 3594 gnutls28_3.7.1-4ubuntu1.dsc
29b4b584fc822ab80799451363d6a1e22d429feaf0cf38377e3d34f0d7164068 83592 gnutls28_3.7.1-4ubuntu1.debian.tar.xz
3b82077324676c50261329002237014232bd3da0aaf614368f95bd2ab77a7570 7553 gnutls28_3.7.1-4ubuntu1_source.buildinfo
Files:
e8ac5cdfd4620de26e953c678c9f7261 3594 libs optional gnutls28_3.7.1-4ubuntu1.dsc
2d8807344992ab79212095c508605f0b 83592 libs optional gnutls28_3.7.1-4ubuntu1.debian.tar.xz
144673b0df4eb7af793ccfd8eec2fab8 7553 libs optional gnutls28_3.7.1-4ubuntu1_source.buildinfo
Original-Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint at lists.alioth.debian.org>
More information about the impish-changes
mailing list