by Marc Deslauriers on 2018-12-04

Import patches-applied version 1.0.1f-1ubuntu2.27 to applied/ubuntu/trusty-security

New changelog entries:
  * SECURITY UPDATE: PortSmash side channel attack
    - debian/patches/CVE-2018-5407.patch: fix timing vulnerability in
      crypto/bn/bn_lib.c, crypto/ec/ec_mult.c.
    - CVE-2018-5407
  * SECURITY UPDATE: timing side channel attack in DSA
    - debian/patches/CVE-2018-0734-pre1.patch: address a timing side
      channel in crypto/dsa/dsa_ossl.c.
    - debian/patches/CVE-2018-0734-1.patch: fix timing vulnerability in
    - debian/patches/CVE-2018-0734-2.patch: fix mod inverse in
    - debian/patches/CVE-2018-0734-3.patch: add a constant time flag in
    - CVE-2018-0734

by Marc Deslauriers on 2018-12-04

[PATCH] CVE-2018-5407 fix: ECC ladder

by Marc Deslauriers on 2018-12-04

[PATCH] Add a constant time flag to one of the bignums to avoid a

by Marc Deslauriers on 2018-12-04

[PATCH] Merge to 1.0.2: DSA mod inverse fix.

by Marc Deslauriers on 2018-12-04

[PATCH] Merge DSA reallocation timing fix CVE-2018-0734.

by Marc Deslauriers on 2018-12-04

[PATCH] Address a timing side channel whereby it is possible to

by Marc Deslauriers on 2018-12-04

[PATCH] RSA key generation: ensure BN_mod_inverse and BN_mod_exp_mont

by Marc Deslauriers on 2018-12-04

[PATCH] consttime flag changed

by Marc Deslauriers on 2018-12-04

[PATCH] used ERR set/pop mark

by Marc Deslauriers on 2018-12-04

[PATCH] Replaced variable-time GCD with consttime inversion to avoid

