lp:ubuntu/vivid-proposed/libgcrypt11
- Get this branch:
- bzr branch lp:ubuntu/vivid-proposed/libgcrypt11
Branch merges
Branch information
Recent revisions
- 43. By Marc Deslauriers
-
* SECURITY UPDATE: sidechannel attack on Elgamal
- debian/patches/ CVE-2014- 3591.patch: use ciphertext blinding in
cipher/elgamal. c.
- CVE-2014-3591
* SECURITY UPDATE: sidechannel attack via timing variations in mpi_powm
- debian/patches/ CVE-2015- 0837.patch: avoid timing variations in
mpi/mpi-pow.c, mpi/mpiutil.c, src/mpi.h.
- CVE-2015-0837 - 41. By Matthias Klose
-
* Merge with Debian; remaining changes:
- no-global-init-thread- callbacks. diff: Do not call global_init when
setting thread callbacks. - 37. By Seth Arnold
-
* Merge from Debian unstable. Remaining changes:
- no-global-init-thread- callbacks. diff: Do not call global_init when
setting thread callbacks - 36. By Seth Arnold
-
* SECURITY UPDATE: The path of execution in an exponentiation function may
depend upon secret key data, allowing a local attacker to determine the
contents of the secret key through a side-channel attack.
- debian/patches/ CVE-2013- 4242.diff: always perform the mpi_mul for
exponents in secure memory. Based on upstream patch.
- CVE-2013-4242 - 35. By Adam Stokes
-
Reverts previous upload since it broke graphical login with gnupg-agent
installed (LP: #1076906) - 34. By Adam Stokes
-
[Howard Chu]
debian/patches/ enable- global- init-secure- memory. patch:
Fix regression during disable/suspend of secure memory
(LP: #1013798)
Branch metadata
- Branch format:
- Branch format 7
- Repository format:
- Bazaar repository format 2a (needs bzr 1.16 or later)
- Stacked on:
- lp:ubuntu/vivid/libgcrypt11