[ubuntu/xenial-updates] libtomcrypt 1.17-7ubuntu0.1 (Accepted)

Ubuntu Archive Robot cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk
Mon Aug 6 20:58:06 UTC 2018


libtomcrypt (1.17-7ubuntu0.1) xenial-security; urgency=medium

  * SECURITY UPDATE: Fix possible bleichenbacher signature attack.
    - debian/patches/CVE-2016-6129.patch: fix in
      src/pk/rsa/rsa_verify_hash.c
    - CVE-2016-6129

  * SECURITY UPDATE: Memory side-channel attack on ECDSA signatures.
    - debian/patches/CVE-2018-12437.patch: fix in
      src/pk/ecc/ecc_sign_hash.c
    - CVE-2018-12437

Date: 2018-08-06 18:16:20.430797+00:00
Changed-By: Eduardo dos Santos Barretto <eduardo.barretto at canonical.com>
Signed-By: Ubuntu Archive Robot <cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk>
https://launchpad.net/ubuntu/+source/libtomcrypt/1.17-7ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Xenial-changes mailing list