[ubuntu/lucid-security] libgcrypt11 1.4.4-5ubuntu2.3 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Wed Sep 3 17:32:58 UTC 2014


libgcrypt11 (1.4.4-5ubuntu2.3) lucid-security; urgency=medium

  * SECURITY UPDATE: side-channel attack on Elgamal encryption subkeys
    - debian/patches/22-add_gcry_divide_by_zero.diff: replace deliberate
      division by zero with new _gcry_divide_by_zero().
    - debian/patches/23-CVE-2014-5270.diff: use sliding window method for
      exponentiation algorithm in mpi/mpi-pow.c.
    - CVE-2014-5270

Date: 2014-08-19 13:49:12.032540+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/lucid/+source/libgcrypt11/1.4.4-5ubuntu2.3
-------------- next part --------------
Sorry, changesfile not available.


More information about the Lucid-changes mailing list