lp:ubuntu/oneiric-updates/gnutls26

Created by Ubuntu Package Importer and last modified
Get this branch:
bzr branch lp:ubuntu/oneiric-updates/gnutls26
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

31. By Marc Deslauriers

* SECURITY UPDATE: "Lucky Thirteen" timing side-channel TLS attack
  - debian/patches/CVE-2013-1619.patch: avoid timing attacks in
    lib/gnutls_cipher.c, lib/gnutls_hash_int.h.
  - CVE-2013-1619

30. By Thorsten Glaser

Apply upstream patch to fix validation of certificates when more than
one with the same short hash exists in the CA bundle (LP: #1003841).

29. By Tyler Hicks

* SECURITY UPDATE: Denial of service in client application
  - debian/patches/CVE-2011-4128.patch: Fix buffer bounds check when copying
    session data. Based on upstream patch.
  - CVE-2011-4128
* SECURITY UPDATE: Denial of service via crafted TLS record
  - debian/patches/CVE-2012-1573.patch: Validate the size of a
    GenericBlockCipher structure as it is processed. Based on upstream
    patch.
  - CVE-2012-1573

28. By Colin Watson

* Backport from Debian (Andreas Metzler, LP: #829467):
  - [20_gcrypt15compat.diff] Fix compatibility with gcrypt 1.5.

27. By Steve Langasek

debian/libgnutlsxx26.install, debian/control: convert libgnutlsxx26
for multiarch as well.

26. By Steve Langasek

* Merge from Debian unstable, remaining changes:
  - Fix build failure with --no-add-needed.
  - Build for multiarch.

25. By Steve Langasek

run update-maintainer

24. By Steve Langasek

releasing version 2.8.6-1ubuntu2

23. By Steve Langasek

FFe LP: #733501: Build for multiarch.

22. By Matthias Klose

Fix build failure with --no-add-needed.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/precise/gnutls26
This branch contains Public information 
Everyone can see this information.

Subscribers