landing-team-changes team mailing list archive
-
landing-team-changes team
-
Mailing list archive
-
Message #06700
[stable-overlay] libtasn1-6 (4.2-2ubuntu1.2)
Uploaded to the Stable Phone Overlay PPA (~ci-train-ppa-service/ubuntu/stable-phone-overlay vivid) archive
---------------
Format: 1.8
Date: Mon, 23 Jan 2017 16:30:18 -0600
Source: libtasn1-6
Binary: libtasn1-6-dev libtasn1-doc libtasn1-6-dbg libtasn1-6 libtasn1-bin libtasn1-3-bin
Architecture: source
Version: 4.2-2ubuntu1.2
Distribution: vivid-security
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss@xxxxxxxxxxxxxxxx>
Changed-By: Emily Ratliff <emily.ratliff@xxxxxxxxxxxxx>
Description:
libtasn1-3-bin - transitional libtasn1-3-bin package
libtasn1-6 - Manage ASN.1 structures (runtime)
libtasn1-6-dbg - Manage ASN.1 structures (debugging symbols)
libtasn1-6-dev - Manage ASN.1 structures (development)
libtasn1-bin - Manage ASN.1 structures (binaries)
libtasn1-doc - Manage ASN.1 structures (documentation)
Changes:
libtasn1-6 (4.2-2ubuntu1.2) vivid-security; urgency=medium
.
* SECURITY UPDATE: infinite loop via malformed DER cert
- debian/patches/CVE-2016-4008-1.patch: catch invalid input cases early
in lib/decoding.c.
- debian/patches/CVE-2016-4008-2.patch: properly account bytes read in
lib/decoding.c.
- CVE-2016-4008
Checksums-Sha1:
44165341908f5330fc4ce452f2c834f4a40189f1 2519 libtasn1-6_4.2-2ubuntu1.2.dsc
13d5b8dcc304754ecdc3a0436f54cd0994c2f0e3 58784 libtasn1-6_4.2-2ubuntu1.2.debian.tar.xz
Checksums-Sha256:
5468269c4aefb10faa909aa78d8893b2b807c9551f2b6f34a5c89e6106e7bc20 2519 libtasn1-6_4.2-2ubuntu1.2.dsc
885d2ae91a5b92f9f413b53d408f67ee298f182d09dfdf6308aeceed3990a2e5 58784 libtasn1-6_4.2-2ubuntu1.2.debian.tar.xz
Files:
e84d72e5a4614465909fbd56ba3f0475 2519 libs standard libtasn1-6_4.2-2ubuntu1.2.dsc
1e160e56ad7961da03de9870d6ac6dd4 58784 libs standard libtasn1-6_4.2-2ubuntu1.2.debian.tar.xz
Original-Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint@xxxxxxxxxxxxxxxxxxxxxxx>