[ubuntu/saucy-proposed] pyopenssl 0.13-2ubuntu4 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Mon Sep 23 13:25:14 UTC 2013


pyopenssl (0.13-2ubuntu4) saucy; urgency=low

  * SECURITY UPDATE: incorrect ssl cert validation via NUL byte in
    subjectAltName
    - debian/patches/CVE-2013-4314.patch: fix leak in OpenSSL/crypto/x509.c,
      properly handle subjectAltName in OpenSSL/crypto/x509ext.c, added
      tests to OpenSSL/test/test_crypto.py.
    - CVE-2013-4314

Date: Fri, 20 Sep 2013 15:41:16 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/saucy/+source/pyopenssl/0.13-2ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Fri, 20 Sep 2013 15:41:16 -0400
Source: pyopenssl
Binary: python-openssl python-openssl-doc python-openssl-dbg python3-openssl python3-openssl-dbg
Architecture: source
Version: 0.13-2ubuntu4
Distribution: saucy
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 python-openssl - Python 2 wrapper around the OpenSSL library
 python-openssl-dbg - Python 2 wrapper around the OpenSSL library (debug extension)
 python-openssl-doc - Python wrapper around the OpenSSL library (documentation package)
 python3-openssl - Python 3 wrapper around the OpenSSL library
 python3-openssl-dbg - Python 3 wrapper around the OpenSSL library (debug extension)
Changes: 
 pyopenssl (0.13-2ubuntu4) saucy; urgency=low
 .
   * SECURITY UPDATE: incorrect ssl cert validation via NUL byte in
     subjectAltName
     - debian/patches/CVE-2013-4314.patch: fix leak in OpenSSL/crypto/x509.c,
       properly handle subjectAltName in OpenSSL/crypto/x509ext.c, added
       tests to OpenSSL/test/test_crypto.py.
     - CVE-2013-4314
Checksums-Sha1: 
 037c6c03d06f2fbd8ef03886af40688995e31e18 2460 pyopenssl_0.13-2ubuntu4.dsc
 fff0c26b56d3264a76d28abf9227baf6dcc9b233 14209 pyopenssl_0.13-2ubuntu4.debian.tar.gz
Checksums-Sha256: 
 62b5469ddc1413fa1e5d07eaf66208d7e7f31e740a6d160c2656263817c426b6 2460 pyopenssl_0.13-2ubuntu4.dsc
 90855263841d68393cb56160f9ca516791918209704f35d3f86c6c845cc97b31 14209 pyopenssl_0.13-2ubuntu4.debian.tar.gz
Files: 
 38b859437d32b63eb7866ad3196a8687 2460 python optional pyopenssl_0.13-2ubuntu4.dsc
 4ce8d9f5d8d4a7a04aee2f014a619f24 14209 python optional pyopenssl_0.13-2ubuntu4.debian.tar.gz
Original-Maintainer: Debian Python Modules Team <python-modules-team at lists.alioth.debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (GNU/Linux)

iQIcBAEBCgAGBQJSPKpOAAoJEGVp2FWnRL6TJmQP/RSZ3cwlG7vIccyYRVge+o5t
zoO4F4PuHZpLJ8kR5HDc3C6EYe6mUyNehd8unyzlgI05I2za7bud7MxY65vijqeZ
zrupfQaeCTBJd5CcXR1zh3UFtU/a3Zs7j1ikbz368s2WdMb9ypFIiiDzDaKiAeMm
AO6/62IaY5i16F/y0GPt/RmaoweN90/jidCQPruSF/UJHCiamvKx347ACn3wvH3H
UBBT0Jp2IEZleMEl2ABkp46fnbiNR2UN6B0CIkzl/QFjM6XSfnyRyiw8kF0Bf/Mh
XS8He7RGzSGyBmA1FSWo6yVOjJg3k30n9gtsEUlcKc8r9Dv7650CVbYlaI/Cx32D
ivn2UiQo1LZJw98vnhKpLkl0elvjeDyOTnnQwYQClK0E0ijHu9xP53Bu04ghaUdV
2AQeh7M22n2OZg+IrB3+WNsf+PmpKw6NiZP+62cFelaxyC0iA6vEjEjE6N6t2jYS
wCGCnsqLgc3DBGuP6y2RG9kfAu9V3QHPTaZ7Y0+Qb/0fPOs4zYpNY5KCyAZ57Re4
np5QT/oT4gUc0zuaVBQ42sN/zyvKZqU+lXrKvBwmeI6TvW6mbq+56IGAl3a7Dm0H
d3O6Po00yOLyBRa21ArICP2aURShy3CG6i4stFlGXwSOUvyn5vtTklAgHAgpdsQm
CZFyx4b2TSH57PU852i7
=LmuI
-----END PGP SIGNATURE-----


More information about the Saucy-changes mailing list