-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 18 Feb 2021 12:01:14 +0000 Source: openssl Binary: openssl libssl1.1 libcrypto1.1-udeb libssl1.1-udeb libssl-dev libssl-doc Architecture: source amd64 all Version: 1.1.0l-1~deb9u3 Distribution: stretch-security Urgency: high Maintainer: Debian OpenSSL Team <pkg-openssl-devel@lists.alioth.debian.org> Changed-By: Chris Lamb <lamby@debian.org> Description: libcrypto1.1-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl-doc - Secure Sockets Layer toolkit - development documentation libssl1.1 - Secure Sockets Layer toolkit - shared libraries libssl1.1-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (1.1.0l-1~deb9u3) stretch-security; urgency=high . * CVE-2021-23840: Prevent an issue where "Digital EnVeloPe" EVP-related calls could cause applications to behave incorrectly or crash. * CVE-2021-23841: Preevent an issue in the X509 certificate handler caused by the lack of error handling while parsing the "issuer" field. Checksums-Sha1: 4ae27cbf558feaa3b66f52ddb4ec16b0214212b7 2611 openssl_1.1.0l-1~deb9u3.dsc 6e3507b29e2630f56023887d1f7d7ba1f584819b 5294857 openssl_1.1.0l.orig.tar.gz 88423fabe5282f7c854b0b7b1f095f620489df44 488 openssl_1.1.0l.orig.tar.gz.asc 86ff73071eed0581939a8d16dcee6ec6aa1a083d 77112 openssl_1.1.0l-1~deb9u3.debian.tar.xz c87c7c7315debc35d65e0fc1afd1ac5409833ee5 968016 libcrypto1.1-udeb_1.1.0l-1~deb9u3_amd64.udeb 8bd36d5e6434058dbbc97b4a8e217d7b94af8cd3 1594388 libssl-dev_1.1.0l-1~deb9u3_amd64.deb cfe439e174f87f31b6b64c86c6835a3b31b4e45a 1478948 libssl-doc_1.1.0l-1~deb9u3_all.deb 3767ede668045d7fb8f3e4f134cb45787f95d64b 2890576 libssl1.1-dbgsym_1.1.0l-1~deb9u3_amd64.deb a4f838103d3b263d81d41a34d09079b04934459d 145042 libssl1.1-udeb_1.1.0l-1~deb9u3_amd64.udeb 7be5456060c757da1da4bc2023b3ca8b76e9b77c 1359296 libssl1.1_1.1.0l-1~deb9u3_amd64.deb c3daeb213adb017d4076e7cb9ede8d77fbea806f 501234 openssl-dbgsym_1.1.0l-1~deb9u3_amd64.deb 25d4886b195b1f1a813befa0efd79e38d66e9c7a 7929 openssl_1.1.0l-1~deb9u3_amd64.buildinfo 3bcf9274220cd8e56827d55670d717c66af01212 748848 openssl_1.1.0l-1~deb9u3_amd64.deb Checksums-Sha256: c1669406f898cf604fd36a0e15142e80326c12206585527be20150e04b323e8a 2611 openssl_1.1.0l-1~deb9u3.dsc 74a2f756c64fd7386a29184dc0344f4831192d61dc2481a93a4c5dd727f41148 5294857 openssl_1.1.0l.orig.tar.gz afc83de9f9f1ef5f79ab8a31bbdeb26f9ac9a07cfdab7628a773267d31f85e42 488 openssl_1.1.0l.orig.tar.gz.asc aa9f7f6b3bd71c70f72321ee421e3d69f1eaa2ef4d4cf7b9ea2d49d9908f7606 77112 openssl_1.1.0l-1~deb9u3.debian.tar.xz 59e70dc58fa1f0a7962d081457fb8911dad38c8c932e54dc043f853dacd73586 968016 libcrypto1.1-udeb_1.1.0l-1~deb9u3_amd64.udeb efc125b918c2a7274e695367312468aac9709dcd3ae0bb8290a51082d7a2e3ec 1594388 libssl-dev_1.1.0l-1~deb9u3_amd64.deb f2ce0a190ef830705fcdfc3ab5bec521f3f46c3323900e00cca3122e40aceee3 1478948 libssl-doc_1.1.0l-1~deb9u3_all.deb 24cde97619712dce3223dd0acd81c7b5831929b744b29f922a5885819610dd11 2890576 libssl1.1-dbgsym_1.1.0l-1~deb9u3_amd64.deb e531a1d65f80de535900ee3be69fb2465f809a23f86195263c8f54153a300ac2 145042 libssl1.1-udeb_1.1.0l-1~deb9u3_amd64.udeb 75534acbd77016a5e66eb5a6cf0d64ccf9173b373ce1785a7c0d4577fa5b0c34 1359296 libssl1.1_1.1.0l-1~deb9u3_amd64.deb bfcfa034cdfdc3ae4825524073157f637d9bd96d069b90bf3c752640e322dda9 501234 openssl-dbgsym_1.1.0l-1~deb9u3_amd64.deb 9961d161ceab4b022de47f53d9ee48b44faff64f2d57cff62a87cfe94ea3fc44 7929 openssl_1.1.0l-1~deb9u3_amd64.buildinfo d25da288c9d350e8ae7b1e7ac8b79691ba7717b30f51b38e33b52de50216f2cf 748848 openssl_1.1.0l-1~deb9u3_amd64.deb Files: 9f2f62f3d0c1ba177a37c2baa90b5a95 2611 utils optional openssl_1.1.0l-1~deb9u3.dsc 48278a48ec9bedb84565f7e741612fb4 5294857 utils optional openssl_1.1.0l.orig.tar.gz 179b104e0c1998557fa8433e1c10258c 488 utils optional openssl_1.1.0l.orig.tar.gz.asc d4927ae3d839316a407206006d9ac589 77112 utils optional openssl_1.1.0l-1~deb9u3.debian.tar.xz 341003ac194b7664758bfd0de9cb02f7 968016 debian-installer optional libcrypto1.1-udeb_1.1.0l-1~deb9u3_amd64.udeb 9080650db6b64b19bb9f75b9baa82a34 1594388 libdevel optional libssl-dev_1.1.0l-1~deb9u3_amd64.deb 52365dee5d074e1ecc325a01514a881a 1478948 doc optional libssl-doc_1.1.0l-1~deb9u3_all.deb 67821659d31ef9acdf1b7f892e2d9f48 2890576 debug extra libssl1.1-dbgsym_1.1.0l-1~deb9u3_amd64.deb 36b5ae6f3ece59c34e1269756485e7dd 145042 debian-installer optional libssl1.1-udeb_1.1.0l-1~deb9u3_amd64.udeb 68a211b391ef5c81fd5371fd63769235 1359296 libs important libssl1.1_1.1.0l-1~deb9u3_amd64.deb ae3efcb741d85bf619e6c0f726627f28 501234 debug extra openssl-dbgsym_1.1.0l-1~deb9u3_amd64.deb da2c9a84557524ce74092733b033fd5d 7929 utils optional openssl_1.1.0l-1~deb9u3_amd64.buildinfo feeb5319179ac2989a10d5518d256540 748848 utils optional openssl_1.1.0l-1~deb9u3_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAmAuWRIACgkQHpU+J9Qx HlhxFw/+O6xa7gy1RrxeS3Ki+DiZsyZci9vNsNxdt3zBYkXVJ7x5+/lnSxwrBdwq yA+01kro9kup7isInJa3G903ifdV5nnu0rq9rjwhlY2RWhrh1rh9ZSd4Y39lMMpl FoFInR3H7+PQBxWzNzjyhNHRTBsVizo+dlbBd/IJyS1EaBWpQovbp/kPOCqMgZiD 9Cx2AIGphQCchr5X9gJOjng+zw8RZ969HDf01J3tBzj3HkM4uMIhqMziaU7M+vIs Di6Xj0ca6Mx4pkOGxQgDkW8YzlMd5loPJsDy6n6zpcd3sGSZFfFZju1ycuZIg+B8 o/+TbKcv4VbgYS/YR/S/iUnj/xNd2zWvt1mjCK+GVoVeAEVrvlgWHM6Bnf72tcve 8WvWyIpHkM7tO7KZwwYdkCMVh3YjvUNEF6sRNKzxdrGYqqJrtsLbxOnx9PTFAr+0 zwnNHG+cvtXmpzCOoRDoIipPK/METb/VSpoyeapxejImbkn+RLYJ2E70KrHFGmLF LAWbNmqyG+G61BG5nV1yyNqdZWy/UDDCRJs27iz6VqF1gXIKRMuWZKhrQv3zBsHd DNWMydmifQYfqzX7MdtBf0DojZSdWpqRln0cfWWY5h7DS84dFg1bVgdEgSH0f9XM U0vR9iDPdHZJSoPKUOHJ+n3qcNJAOI/yp0a/Nb15QDvmV5/fzCs= =35PP -----END PGP SIGNATURE-----