-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 28 Feb 2016 23:36:32 +0100 Source: openssl Binary: openssl libssl1.0.0 libcrypto1.0.0-udeb libssl-dev libssl-doc libssl1.0.0-dbg Architecture: source all amd64 Version: 1.0.1e-2+deb7u20 Distribution: wheezy-security Urgency: medium Maintainer: Debian OpenSSL Team <pkg-openssl-devel@lists.alioth.debian.org> Changed-By: Kurt Roeckx <kurt@roeckx.be> Description: libcrypto1.0.0-udeb - crypto shared library - udeb (udeb) libssl-dev - SSL development libraries, header files and documentation libssl-doc - SSL development documentation documentation libssl1.0.0 - SSL shared libraries libssl1.0.0-dbg - Symbol tables for libssl and libcrypto openssl - Secure Socket Layer (SSL) binary and related cryptographic tools Changes: openssl (1.0.1e-2+deb7u20) wheezy-security; urgency=medium . * Fix CVE-2016-0797 * Fix CVE-2016-0798 * Fix CVE-2016-0799 * Fix CVE-2016-0702 * Fix CVE-2016-0705 * Disable EXPORT and LOW ciphers: The DROWN attack (CVE-2016-0800) makes use of those, and SLOTH attack (CVE-2015-7575) can make use of them too. Checksums-Sha1: e6aa0cc3563815737847db864964c5683c9400ad 2218 openssl_1.0.1e-2+deb7u20.dsc a5a27831d5e888d71b6843f73c1d983246cd9f27 183928 openssl_1.0.1e-2+deb7u20.debian.tar.gz 0e301e11c54394208008e18b7b7a30422329addf 1198382 libssl-doc_1.0.1e-2+deb7u20_all.deb 1898e9b14e85ca5cc8ac8e1a48563e200497581e 701656 openssl_1.0.1e-2+deb7u20_amd64.deb 9e19d22edab308ed51fd27baf6f9eecc1f1001ad 1263240 libssl1.0.0_1.0.1e-2+deb7u20_amd64.deb 3a18cdd1138a1e79f5b674ad8706f6cc5747b606 637736 libcrypto1.0.0-udeb_1.0.1e-2+deb7u20_amd64.udeb a70d3563d077219a66924a0cefa6205ffe50f000 1758716 libssl-dev_1.0.1e-2+deb7u20_amd64.deb bf2c03156869c4cf274fb38b9c450f70f0a7da34 3088278 libssl1.0.0-dbg_1.0.1e-2+deb7u20_amd64.deb Checksums-Sha256: 0069b5662023d46e2dafff43a29fe65f5905fd9ee23976d0963e5477d38e29c0 2218 openssl_1.0.1e-2+deb7u20.dsc aef1e354f5a29b9361723ed6f84bef43b67819e55426cb55544100b9b9dcf111 183928 openssl_1.0.1e-2+deb7u20.debian.tar.gz afca70bd37b5af17509e67961fc8f15e7afb9c14818481f40fbf88dbc64e9441 1198382 libssl-doc_1.0.1e-2+deb7u20_all.deb 6e0ef24b4d01d2356f779bcfa4c6520949efa7bc752664f4904b0f5df933eb93 701656 openssl_1.0.1e-2+deb7u20_amd64.deb 886fe3bd8b5c9b6f96dd3eee0b2ac81645bb2667017371d9962cf7d039f111e2 1263240 libssl1.0.0_1.0.1e-2+deb7u20_amd64.deb b754e72c452602157bf74c5a759efac036e7a30475eab23c2d49ce42f2cccd80 637736 libcrypto1.0.0-udeb_1.0.1e-2+deb7u20_amd64.udeb 07bb57bc979bfc9d78379c659ea7a3e84fbbae008c07adf911f9834a8452e74f 1758716 libssl-dev_1.0.1e-2+deb7u20_amd64.deb d35bf3737c3b400c18cdf894e7ffc5c5d7549db9cc893135095193d3babd1600 3088278 libssl1.0.0-dbg_1.0.1e-2+deb7u20_amd64.deb Files: 033d7caf16518c6037a638c2e782a066 2218 utils optional openssl_1.0.1e-2+deb7u20.dsc 1050f615a70233bb2eb3359020a7f7fc 183928 utils optional openssl_1.0.1e-2+deb7u20.debian.tar.gz 8b2586b33f89e6f04faf3b97fbedf303 1198382 doc optional libssl-doc_1.0.1e-2+deb7u20_all.deb 2378a8de17c0a7ef4d5d44e7fd271818 701656 utils optional openssl_1.0.1e-2+deb7u20_amd64.deb 3a5a01f457a0d210afe0c3edfc84e858 1263240 libs important libssl1.0.0_1.0.1e-2+deb7u20_amd64.deb 1aa216c5a688c14e3e2939afa0bd6fe7 637736 debian-installer optional libcrypto1.0.0-udeb_1.0.1e-2+deb7u20_amd64.udeb c1f59fc4e2d415164e574dc61b262c6c 1758716 libdevel optional libssl-dev_1.0.1e-2+deb7u20_amd64.deb ce0867eff2ebd9d17c4c3a4257d5f504 3088278 debug extra libssl1.0.0-dbg_1.0.1e-2+deb7u20_amd64.deb Package-Type: udeb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJW04jZAAoJEOPE3c0eTBJE1BgQAI7LyZnCuloj77n1a6r6zBWL XAUdUDPaYDq37h3C2YJWS9ph6jdeO51zlMvSi3NJoD7vpW+TjZTCS9xM316vHiAA iVPMHC5CZ1wmrbFTFnOT8BSc4G+3Qfa6YkiftNMQhgxl5xIiesVFbGfQ7bFzyzIH XGJ4JqfF+e/SCy8hrANsp9XOY8gKMXe/TueJpPcjBINzFXpTNpT+iXxtcOQ49CyX B5cQAEEHQ/l0GVjiTq3aynQfpzY+IfFydTN7LhgIhCueaQsinhcHlEBDIRXUmoMO Rw/+wsUr9P74essbrlykyZThuqm/x3Zehw+tEVtQQuLBcXZuqnLO/THXljtPfliU llAxtAjb4OK6Oh4TM3wuamzGE2CKFJWkZGZL9kQh9W3lkkKsJGR8vkEGePJjXOaY AxIhPq+QhrBiwHa2mJDSOum1GjG3lQhmHpd0iiowpclJ6wT/KBqEeZ/NKp5bUMnb 5inDx411ydFRAFMPdVFJULeDkaNSH8cnugRT5+1mu/UxxEEePg3DYEVnQraJTCij O43Sj84LSKSDjx+zI6sCec5nslfmpmJiTC4YguHR6JbzQEV4GYq+vMULue2SnXeU uHH9eTgQ9knJfGJqNOnK77y2aMWh+cwXPRhk8ycFxRnnaM2aVNRyhFTl9ITBwqZs wVdAeGfuOolAVALJsSYT =PI0T -----END PGP SIGNATURE-----