[ubuntu/noble-proposed] paramiko 2.12.0-2ubuntu2 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Thu Jan 11 18:34:10 UTC 2024


paramiko (2.12.0-2ubuntu2) noble; urgency=medium

  * SECURITY UPDATE: Prefix truncation attack on BPP
    - debian/patches/CVE-2023-48795-*.patch: implement strict key
      exchange.
    - CVE-2023-48795

Date: Thu, 11 Jan 2024 08:56:18 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/paramiko/2.12.0-2ubuntu2
-------------- next part --------------
Format: 1.8
Date: Thu, 11 Jan 2024 08:56:18 -0500
Source: paramiko
Built-For-Profiles: noudeb
Architecture: source
Version: 2.12.0-2ubuntu2
Distribution: noble
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
 paramiko (2.12.0-2ubuntu2) noble; urgency=medium
 .
   * SECURITY UPDATE: Prefix truncation attack on BPP
     - debian/patches/CVE-2023-48795-*.patch: implement strict key
       exchange.
     - CVE-2023-48795
Checksums-Sha1:
 0762e2c1e32a1906d6effe778d1347a95336441b 2467 paramiko_2.12.0-2ubuntu2.dsc
 870cc44b514e563dd60741ea14e7add95852300e 17572 paramiko_2.12.0-2ubuntu2.debian.tar.xz
 16b28a9ad9596cc78f7ed0fa652d6d57c4ddffd0 7413 paramiko_2.12.0-2ubuntu2_source.buildinfo
Checksums-Sha256:
 902852a330f422b98c943da4aacb6f70adaf770d80f3332e16bac20077101b76 2467 paramiko_2.12.0-2ubuntu2.dsc
 ce30d0cbe3cf883486d5321c73495da9775ad096a85f33a4748d5545b3340dfe 17572 paramiko_2.12.0-2ubuntu2.debian.tar.xz
 38cb0f27d53eeb7bd06d53dab36337d60aacc2663f2dd95269183b0761ee4afd 7413 paramiko_2.12.0-2ubuntu2_source.buildinfo
Files:
 62f6762e81207c58c24b45c38aa35f9f 2467 python optional paramiko_2.12.0-2ubuntu2.dsc
 045a36af2001f1824d9262d9c335c9fb 17572 python optional paramiko_2.12.0-2ubuntu2.debian.tar.xz
 ea17c4e4a00700f9749968621e141eaa 7413 python optional paramiko_2.12.0-2ubuntu2_source.buildinfo
Original-Maintainer: Debian Python Team <team+python at tracker.debian.org>


More information about the noble-changes mailing list