[ubuntu/xenial-proposed] nss 2:3.21-1ubuntu4 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed Mar 9 13:27:15 UTC 2016


nss (2:3.21-1ubuntu4) xenial; urgency=medium

  * SECURITY UPDATE: buffer overflow during ASN.1 decoding
    - debian/patches/CVE-2016-1950.patch: check lengths in
      nss/lib/util/secasn1d.c.
    - CVE-2016-1950

Date: Wed, 09 Mar 2016 07:35:32 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/nss/2:3.21-1ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Wed, 09 Mar 2016 07:35:32 -0500
Source: nss
Binary: libnss3 libnss3-1d libnss3-nssdb libnss3-tools libnss3-dev libnss3-dbg
Architecture: source
Version: 2:3.21-1ubuntu4
Distribution: xenial
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
 libnss3    - Network Security Service libraries
 libnss3-1d - Network Security Service libraries - transitional package
 libnss3-dbg - Debugging symbols for the Network Security Service libraries
 libnss3-dev - Development files for the Network Security Service libraries
 libnss3-nssdb - Network Security Security libraries - shared databases
 libnss3-tools - Network Security Service tools
Changes:
 nss (2:3.21-1ubuntu4) xenial; urgency=medium
 .
   * SECURITY UPDATE: buffer overflow during ASN.1 decoding
     - debian/patches/CVE-2016-1950.patch: check lengths in
       nss/lib/util/secasn1d.c.
     - CVE-2016-1950
Checksums-Sha1:
 08582cacb0b2d128678af97ca812f512d96ebb6e 2383 nss_3.21-1ubuntu4.dsc
 30ede7d31a7ce2a38c159f0246bbca5ad8e9295c 28544 nss_3.21-1ubuntu4.debian.tar.xz
Checksums-Sha256:
 b74ffcff95c2ec15f1d5fd14116bc3fab1a835a49138333276a0f282261c4877 2383 nss_3.21-1ubuntu4.dsc
 dfc304793b7197e5d9fd2d11122dd6a8a0f89cdb96062049f147d2bbc462e25d 28544 nss_3.21-1ubuntu4.debian.tar.xz
Files:
 0b263c529d23dd183fc25bad880190c7 2383 libs optional nss_3.21-1ubuntu4.dsc
 e03b6bce8966590a4276e792361bea42 28544 libs optional nss_3.21-1ubuntu4.debian.tar.xz
Original-Maintainer: Maintainers of Mozilla-related packages <pkg-mozilla-maintainers at lists.alioth.debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=ItL+
-----END PGP SIGNATURE-----


More information about the Xenial-changes mailing list