[ubuntu/trusty-proposed] gnutls26 2.12.23-1ubuntu6 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Tue Feb 25 16:28:16 UTC 2014
gnutls26 (2.12.23-1ubuntu6) trusty; urgency=medium
* SECURITY UPDATE: incorrect v1 intermediate cert handling
- debian/patches/CVE-2014-1959.patch: don't consider a v1 intermediate
cert to be a valid CA by default in lib/x509/verify.c.
- CVE-2014-1959
Date: Mon, 24 Feb 2014 13:56:26 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/trusty/+source/gnutls26/2.12.23-1ubuntu6
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Mon, 24 Feb 2014 13:56:26 -0500
Source: gnutls26
Binary: libgnutls-dev libgnutls26 libgnutls26-dbg gnutls-bin gnutls26-doc libgnutlsxx27 libgnutls-openssl27
Architecture: source
Version: 2.12.23-1ubuntu6
Distribution: trusty
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
gnutls-bin - GNU TLS library - commandline utilities
gnutls26-doc - GNU TLS library 2.x - documentation and examples
libgnutls-dev - GNU TLS library - development files
libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper
libgnutls26 - GNU TLS library - runtime library
libgnutls26-dbg - GNU TLS library - debugger symbols
libgnutlsxx27 - GNU TLS library - C++ runtime library
Changes:
gnutls26 (2.12.23-1ubuntu6) trusty; urgency=medium
.
* SECURITY UPDATE: incorrect v1 intermediate cert handling
- debian/patches/CVE-2014-1959.patch: don't consider a v1 intermediate
cert to be a valid CA by default in lib/x509/verify.c.
- CVE-2014-1959
Checksums-Sha1:
b75ddfab49ecae2adb433199a13793ed9138c74d 2677 gnutls26_2.12.23-1ubuntu6.dsc
f9bab59cf4cb7c5db3b4abb6d3edc2d4179d34d3 33872 gnutls26_2.12.23-1ubuntu6.debian.tar.gz
Checksums-Sha256:
88f04e482addc45de81a8158deefe5d9ea28e6d2457d8db5459a2c3a9ca6b4f4 2677 gnutls26_2.12.23-1ubuntu6.dsc
ef9659e254a3ab4228e8bbd69a119147de13268a7149918c20cd7957e4bd861a 33872 gnutls26_2.12.23-1ubuntu6.debian.tar.gz
Files:
850df22369283ce841c3a725f1143d43 2677 libs optional gnutls26_2.12.23-1ubuntu6.dsc
d587358f7947d26dc27523bdae03b5a1 33872 libs optional gnutls26_2.12.23-1ubuntu6.debian.tar.gz
Original-Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=4a9P
-----END PGP SIGNATURE-----
More information about the Trusty-changes
mailing list