ubuntu/+source/openssl:applied/ubuntu/vivid-devel

Last commit made on 2015-12-07
Get this branch:
git clone -b applied/ubuntu/vivid-devel https://git.launchpad.net/ubuntu/+source/openssl
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
applied/ubuntu/vivid-devel
Repository:
lp:ubuntu/+source/openssl

Recent commits

a700765... by Marc Deslauriers on 2015-12-04

Import patches-applied version 1.0.1f-1ubuntu11.5 to applied/ubuntu/vivid-security

Imported using git-ubuntu import.

Changelog parent: 91a82ddb08ca7f5909b873b82b0b05e191bd32e4
Unapplied parent: 38489cd73c16e662497730683712e4b13fddec77

New changelog entries:
  * SECURITY UPDATE: Certificate verify crash with missing PSS parameter
    - debian/patches/CVE-2015-3194.patch: add PSS parameter check to
      crypto/rsa/rsa_ameth.c.
    - CVE-2015-3194
  * SECURITY UPDATE: X509_ATTRIBUTE memory leak
    - debian/patches/CVE-2015-3195.patch: fix leak in
      crypto/asn1/tasn_dec.c.
    - CVE-2015-3195
  * SECURITY UPDATE: Race condition handling PSK identify hint
    - debian/patches/CVE-2015-3196.patch: fix PSK handling in
      ssl/s3_clnt.c, ssl/s3_srvr.c.
    - CVE-2015-3196

38489cd... by Marc Deslauriers on 2015-12-04

[PATCH] Fix PSK handling.

Gbp-Pq: CVE-2015-3196.patch.

af95c75... by Marc Deslauriers on 2015-12-04

[PATCH] Fix leak with ASN.1 combine.

Gbp-Pq: CVE-2015-3195.patch.

89d70cd... by Marc Deslauriers on 2015-12-04

[PATCH] Add PSS parameter check.

Gbp-Pq: CVE-2015-3194.patch.

27a4e58... by Marc Deslauriers on 2015-12-04

[PATCH] More ssl_session_dup fixes

Gbp-Pq: CVE-2015-1791-3.patch.

ef116b0... by Marc Deslauriers on 2015-12-04

[PATCH] Fix Kerberos issue in ssl_session_dup

Gbp-Pq: CVE-2015-1791-2.patch.

004c620... by Marc Deslauriers on 2015-12-04

fix CMS verify infinite loop with unknown hash function

Gbp-Pq: CVE-2015-1792.patch.

7c122ba... by Marc Deslauriers on 2015-12-04

fix denial of service via missing EnvelopedContent

Gbp-Pq: CVE-2015-1790.patch.

86f5af9... by Marc Deslauriers on 2015-12-04

fix denial of service via out-of-bounds read in X509_cmp_time

Gbp-Pq: CVE-2015-1789.patch.

febd990... by Marc Deslauriers on 2015-12-04

fix denial of service via malformed ECParameters

Gbp-Pq: CVE-2015-1788.patch.