-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 01 Sep 2017 11:07:14 +0100 Source: mbedtls Binary: libmbedtls-dev libmbedcrypto0 libmbedtls10 libmbedx509-0 libmbedtls-doc Architecture: source all Version: 2.4.2-1+deb9u1~bpo8+1 Distribution: jessie-backports Urgency: high Maintainer: James Cowgill <jcowgill@debian.org> Changed-By: James Cowgill <jcowgill@debian.org> Description: libmbedcrypto0 - lightweight crypto and SSL/TLS library - crypto library libmbedtls-dev - lightweight crypto and SSL/TLS library - development files libmbedtls-doc - lightweight crypto and SSL/TLS library - documentation libmbedtls10 - lightweight crypto and SSL/TLS library - tls library libmbedx509-0 - lightweight crypto and SSL/TLS library - x509 certificate library Closes: 873557 Changes: mbedtls (2.4.2-1+deb9u1~bpo8+1) jessie-backports; urgency=high . * Rebuild for jessie-backports. . mbedtls (2.4.2-1+deb9u1) stretch-security; urgency=high . * Fix CVE-2017-14032: If optional authentication is configured, allows remote attackers to bypass peer authentication via an X.509 certificate chain with many intermediates. (Closes: #873557) Checksums-Sha1: 19c824c6c535d35586b678e6d90be4c1579d6e61 2247 mbedtls_2.4.2-1+deb9u1~bpo8+1.dsc eefb3958ef0abd15ce11a7cefe3ae2e6c8362d60 12444 mbedtls_2.4.2-1+deb9u1~bpo8+1.debian.tar.xz 104d10bd01a2f42e76629294c54f6249a66e574f 4405616 libmbedtls-doc_2.4.2-1+deb9u1~bpo8+1_all.deb 072d7b5819c005296c826ac572feabf984f2466f 7731 mbedtls_2.4.2-1+deb9u1~bpo8+1_all.buildinfo Checksums-Sha256: d23fe9688f16b543455ef9f6baac726cb14a6c8ce0de0abd0a426707612ffbcb 2247 mbedtls_2.4.2-1+deb9u1~bpo8+1.dsc 185df426fcd978409fa04afc52e6d6960f94eac8b6d60942f63e4319b0061f5e 12444 mbedtls_2.4.2-1+deb9u1~bpo8+1.debian.tar.xz de58552627e8589dd241c78c213755148b075bbcd7a5c880311d44d7af98c949 4405616 libmbedtls-doc_2.4.2-1+deb9u1~bpo8+1_all.deb 32e4a60d7b3cf76cc7c96188ef716df2d7d613ae4eea0ad05f1503ca78d980a8 7731 mbedtls_2.4.2-1+deb9u1~bpo8+1_all.buildinfo Files: 0f8b0d8267eab3d60c54d631e92eb527 2247 libs optional mbedtls_2.4.2-1+deb9u1~bpo8+1.dsc 6e24e5710e9b215393ed21d04d19ffd1 12444 libs optional mbedtls_2.4.2-1+deb9u1~bpo8+1.debian.tar.xz 8c176e9549de0f50472839054ac8ec55 4405616 doc optional libmbedtls-doc_2.4.2-1+deb9u1~bpo8+1_all.deb 1459f46e4bc7b353a6281071061081e1 7731 libs optional mbedtls_2.4.2-1+deb9u1~bpo8+1_all.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE+Ixt5DaZ6POztUwQx/FnbeotAe8FAlmzCgoACgkQx/Fnbeot Ae89fBAApEaoHkP2zI/QUvT8ByK/tPMyBbbSjX5iHXob0mOnqK20JnQqtWXPl737 Nsy9WKV4xuFrgPM4dl8wJLqxG5LsANgTd2TVVKcgvcii6xBADToar7W1/8zbyU7R VgKEQWFcAUiV/MIsQVXa8ZLBZ4iW2CO25DMUYgihHjdshWQo1payrn5mTIUMjXKB EJA8N2+j3agZhTu56PxgVlJtfacsBSbHuab2rluTAYp5YfhURmNaP8Z5N9fJ86cG 4Su7FLV7wNUpodbkBfSHrIwV7r4XC1dJMFK8osuqG+b0L2XYaV8ja8S462DH7/64 UkXydnS5o7GdE8l0z4AXZ0n0rS3Df69wtyIcrnaoB06s/B9ypULGAZ1tJCddzQEG Shv1c6Ajo4+8oSEsZH3M7+UQ1CX26H1spVjuXeJWxq2xsXWfdzEvyMnNyunG2J4l fk8yGs+V/JAZB960OCBUgRwdXv0I6AbCqUjD1tWf4VNTtoWVTRAfBqCOCLddVptZ cs62ryVvrKZyDUqQ5/CH7gDZPa0ftr2y7FNiB6FYDn0z5i2l3uFNKVv5aFO+dKEO sdn8fMObReKvbfqfcLHMRPh7JEZr7quJb8VTSCMiYLjxB0+jLoaqNsvvlHC5Z2Wv h/tXF7eWUqdyid7XF2OvP1H37cJLY972HxyCofAVjDEBP/Uh3BA= =nD4m -----END PGP SIGNATURE-----