[ubuntu/hirsute-security] opencryptoki 3.15.1+dfsg-0ubuntu1.2 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Wed Aug 4 16:21:54 UTC 2021


opencryptoki (3.15.1+dfsg-0ubuntu1.2) hirsute-security; urgency=medium

  * SECURITY UPDATE: Invalid curve attacks
    - d/p/lp1928780-Add-missing-return-codes.patch: Partial cherry-pick of
      master as a prerequisite for the following fix.
    - d/p/lp1928780-SOFT-Check-the-EC-Key-on-C_CreateObject-and-C_Derive.patch:
      Cherry-picked to add checks preventing Invalid Curve attacks (LP: #1928780)

Date: 2021-08-04 16:04:12.467655+00:00
Changed-By: Simon Chopin <simon.chopin at canonical.com>
Signed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/opencryptoki/3.15.1+dfsg-0ubuntu1.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the Hirsute-changes mailing list