[ubuntu/noble-proposed] paramiko 2.12.0-2ubuntu2 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Thu Jan 11 18:34:10 UTC 2024
paramiko (2.12.0-2ubuntu2) noble; urgency=medium
* SECURITY UPDATE: Prefix truncation attack on BPP
- debian/patches/CVE-2023-48795-*.patch: implement strict key
exchange.
- CVE-2023-48795
Date: Thu, 11 Jan 2024 08:56:18 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/paramiko/2.12.0-2ubuntu2
-------------- next part --------------
Format: 1.8
Date: Thu, 11 Jan 2024 08:56:18 -0500
Source: paramiko
Built-For-Profiles: noudeb
Architecture: source
Version: 2.12.0-2ubuntu2
Distribution: noble
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
paramiko (2.12.0-2ubuntu2) noble; urgency=medium
.
* SECURITY UPDATE: Prefix truncation attack on BPP
- debian/patches/CVE-2023-48795-*.patch: implement strict key
exchange.
- CVE-2023-48795
Checksums-Sha1:
0762e2c1e32a1906d6effe778d1347a95336441b 2467 paramiko_2.12.0-2ubuntu2.dsc
870cc44b514e563dd60741ea14e7add95852300e 17572 paramiko_2.12.0-2ubuntu2.debian.tar.xz
16b28a9ad9596cc78f7ed0fa652d6d57c4ddffd0 7413 paramiko_2.12.0-2ubuntu2_source.buildinfo
Checksums-Sha256:
902852a330f422b98c943da4aacb6f70adaf770d80f3332e16bac20077101b76 2467 paramiko_2.12.0-2ubuntu2.dsc
ce30d0cbe3cf883486d5321c73495da9775ad096a85f33a4748d5545b3340dfe 17572 paramiko_2.12.0-2ubuntu2.debian.tar.xz
38cb0f27d53eeb7bd06d53dab36337d60aacc2663f2dd95269183b0761ee4afd 7413 paramiko_2.12.0-2ubuntu2_source.buildinfo
Files:
62f6762e81207c58c24b45c38aa35f9f 2467 python optional paramiko_2.12.0-2ubuntu2.dsc
045a36af2001f1824d9262d9c335c9fb 17572 python optional paramiko_2.12.0-2ubuntu2.debian.tar.xz
ea17c4e4a00700f9749968621e141eaa 7413 python optional paramiko_2.12.0-2ubuntu2_source.buildinfo
Original-Maintainer: Debian Python Team <team+python at tracker.debian.org>
More information about the noble-changes
mailing list