[ubuntu/lucid-security] pyopenssl 0.10-1ubuntu0.1 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Mon Sep 23 17:44:06 UTC 2013


pyopenssl (0.10-1ubuntu0.1) lucid-security; urgency=low

  * SECURITY UPDATE: incorrect ssl cert validation via NUL byte in
    subjectAltName
    - debian/patches/CVE-2013-4314.patch: properly handle subjectAltName in
      src/crypto/x509ext.c, added tests to test/test_crypto.py.
    - CVE-2013-4314

Date: 2013-09-23 14:43:14.190669+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/lucid/+source/pyopenssl/0.10-1ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Lucid-changes mailing list