-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 13 Mar 2015 22:03:27 +0100 Source: gnutls26 Binary: libgnutls-dev libgnutls26 libgnutls26-dbg gnutls-bin gnutls26-doc guile-gnutls libgnutlsxx27 libgnutls-openssl27 Architecture: source all amd64 Version: 2.12.20-8+deb7u3 Distribution: wheezy-security Urgency: high Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint@lists.alioth.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: gnutls-bin - GNU TLS library - commandline utilities gnutls26-doc - GNU TLS library 2.x - documentation and examples guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dev - GNU TLS library - development files libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls26 - GNU TLS library - runtime library libgnutls26-dbg - GNU TLS library - debugger symbols libgnutlsxx27 - GNU TLS library - C++ runtime library Changes: gnutls26 (2.12.20-8+deb7u3) wheezy-security; urgency=high . * Non-maintainer upload by the Security Team. * Add 40_CVE-2015-0294.diff patch. CVE-2015-0294: certificate algorithm consistency checking issue. * Add 41_CVE-2015-0282.diff patch. CVE-2015-0282: RSA PKCS#1 signature verification forgery (GNUTLS-SA-2015-1). Checksums-Sha1: bc7d6c6a30744e642e4cf392d067d64d0289b0d8 2684 gnutls26_2.12.20-8+deb7u3.dsc e7fd59b9e6b36e4443089b871c5fc21932957a08 35555 gnutls26_2.12.20-8+deb7u3.debian.tar.gz c43b461c1716347b03f75257497418262b8b80d1 2621706 gnutls26-doc_2.12.20-8+deb7u3_all.deb be648682fa8add249ed49040dd106dfc45605627 746932 libgnutls-dev_2.12.20-8+deb7u3_amd64.deb 698a28bd144f415bc38b0500c2d05912c2a5f91f 620324 libgnutls26_2.12.20-8+deb7u3_amd64.deb ac478e8f578360391fdef51f677d7af3b3e5c6c6 1958868 libgnutls26-dbg_2.12.20-8+deb7u3_amd64.deb eb6289805e2a23eb3efb24cd6e05112cf3737335 394972 gnutls-bin_3.0.22-3+really2.12.20-8+deb7u3_amd64.deb a14eb9ec2952ee62824e8f4264315ba945e1de85 268640 guile-gnutls_3.0.22-3+really2.12.20-8+deb7u3_amd64.deb 49e413b53a4d76ce0b027f6430b99d66100ea474 223060 libgnutlsxx27_2.12.20-8+deb7u3_amd64.deb 71b1aff1271bceebb867dcad5a9e4130b79c30c3 221600 libgnutls-openssl27_2.12.20-8+deb7u3_amd64.deb Checksums-Sha256: 3755f25d0ea4ed9da9918da0d9032f6b5a2eddb9218b867980b1206a14742f2b 2684 gnutls26_2.12.20-8+deb7u3.dsc 919f4a5d091171fdf2bf659e90c2e8f39e3a5c7d9b9a2586cc64dec3a3dd68a3 35555 gnutls26_2.12.20-8+deb7u3.debian.tar.gz bd81060525ba7fd5522563b4b6f99bd938c360005c4147ec395272e56e20147a 2621706 gnutls26-doc_2.12.20-8+deb7u3_all.deb 18debbf0cff3c986a4c46c4e6a5ab9fdba4d016053888480ad665b5266232329 746932 libgnutls-dev_2.12.20-8+deb7u3_amd64.deb b96a4c80566e2103ae98f9ad04a6ee50ed1509666cc5d0d5a533408e6b7daf4e 620324 libgnutls26_2.12.20-8+deb7u3_amd64.deb 6a01d9bc9b4753ab8e1f347aab384a193852089030921da7eab54db32e19f095 1958868 libgnutls26-dbg_2.12.20-8+deb7u3_amd64.deb 79bc7e0a8c95d6057004a7cc938b76b0be87fc2f560f973b7a0eea9c10085fcb 394972 gnutls-bin_3.0.22-3+really2.12.20-8+deb7u3_amd64.deb e779caa96ca640edbb1ebf418813fa57f2eb56bc8dfa98d5fc2009b1e47d55ac 268640 guile-gnutls_3.0.22-3+really2.12.20-8+deb7u3_amd64.deb e0f1e2491849fd0b77f4e8d365d68cc12baeba4dbd2d87edab0e745428ca6866 223060 libgnutlsxx27_2.12.20-8+deb7u3_amd64.deb 41967fdcf83b0c03ccef75924b501e68eaf152ec273917ee77db16e0a20a5b1c 221600 libgnutls-openssl27_2.12.20-8+deb7u3_amd64.deb Files: 1aa94acb9c49920c3e9013289dd33450 2684 libs optional gnutls26_2.12.20-8+deb7u3.dsc 1c52d164b43550fe569981b4b5cc3c25 35555 libs optional gnutls26_2.12.20-8+deb7u3.debian.tar.gz 8ef2d4c05750e2a07052bf30ad715758 2621706 doc optional gnutls26-doc_2.12.20-8+deb7u3_all.deb 0e0668cd4c64e48baeb833d93045cd5e 746932 libdevel optional libgnutls-dev_2.12.20-8+deb7u3_amd64.deb 1159d2cd1c8c437a04af150d85d9afb2 620324 libs standard libgnutls26_2.12.20-8+deb7u3_amd64.deb 834a7d1789b3df1810c394e4cd7f250a 1958868 debug extra libgnutls26-dbg_2.12.20-8+deb7u3_amd64.deb e12c5d548c04c114ce790d7107d67f55 394972 net optional gnutls-bin_3.0.22-3+really2.12.20-8+deb7u3_amd64.deb 8332f9ea0494107bca0cf0ecc0e868b6 268640 lisp optional guile-gnutls_3.0.22-3+really2.12.20-8+deb7u3_amd64.deb 37b83cba068d1704c288d52c91788e33 223060 libs extra libgnutlsxx27_2.12.20-8+deb7u3_amd64.deb 3e0300c7deedaac89f868d84abba7814 221600 libs standard libgnutls-openssl27_2.12.20-8+deb7u3_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIbBAEBCgAGBQJVBUDWAAoJEAVMuPMTQ89EYw4P934EdDpxCwO5UCv21VBlCyiq hcdgnbg9zSuUmh5yaC60xdceZMg6L2BAxmZ23O8j0s8hsF2a+mSPhO12wCdECEmJ hg3RIDDwOJJjVn/fxEicTqIHoctDSLeH+ixCxZiCCQ96LNcKMHeeatvjcm7wkza4 2P0mVTp49NPWK2m5rhquXd/rUHciVW31znXNyimMypcXP1in+f5CyYk3Oc+i9xi0 vQWcjmTnXGtX3IHJc6we8P8E27nWg43s7RTgmSDPS1F7QbJs3cvdtdHYg7lvV9B+ mN4J2llEdHyKuMcLLbsX4o7JErvmMYhyTD1rbaSS7Pz4uTP8ZDXVsmCKO7RrGang inwWeajmw6F0yuwzCfp8goYsmvs1DkTTDITMlzgb+3gQQRlfm9h9ocJGSCTLMDnH Gfj4PSEylPiqXHefke0bndkvg+0CgzzYCTMh5IYAyAy693HDiu/zTKO3n0awE9Un m4v4sSPNzQVLTutpyJhKvi6DN0qgbd6sCoRhwxsBuqMisnO6nY9FNHZAZAndaoDa g8i7f8ZKOE8NBlhHi2a2UWUbPcPQrN6Bm0Zu9tFdJqVA8WZ0YeX7Evfk3lugGqFR Fd+zUay0L3FgoqAUGTUpxoMbfOqoBPRHwSiwBK2deTmElub5gLuqwE+Txf0xE+LG iZjPIbYztLAMNsebnwM= =UPR3 -----END PGP SIGNATURE-----