Format: 1.8 Date: Wed, 02 Dec 2020 09:52:44 -0500 Source: openssl Binary: libcrypto1.1-udeb libssl-dev libssl1.1 libssl1.1-udeb openssl Architecture: arm64 arm64_translations Version: 1.1.1f-1ubuntu2.1 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.1-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl1.1 - Secure Sockets Layer toolkit - shared libraries libssl1.1-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (1.1.1f-1ubuntu2.1) focal-security; urgency=medium . * SECURITY UPDATE: EDIPARTYNAME NULL pointer de-ref - debian/patches/CVE-2020-1971-1.patch: use explicit tagging for DirectoryString in crypto/x509v3/v3_genn.c. - debian/patches/CVE-2020-1971-2.patch: correctly compare EdiPartyName in crypto/x509v3/v3_genn.c. - debian/patches/CVE-2020-1971-3.patch: check that multi-strings/CHOICE types don't use implicit tagging in crypto/asn1/asn1_err.c, crypto/asn1/tasn_dec.c, crypto/err/openssl.txt, include/openssl/asn1err.h. - debian/patches/CVE-2020-1971-4.patch: complain if we are attempting to encode with an invalid ASN.1 template in crypto/asn1/asn1_err.c, crypto/asn1/tasn_enc.c, crypto/err/openssl.txt, include/openssl/asn1err.h. - debian/patches/CVE-2020-1971-5.patch: add a test for GENERAL_NAME_cmp in test/v3nametest.c. - debian/patches/CVE-2020-1971-6.patch: add a test for encoding/decoding using an invalid ASN.1 Template in test/asn1_decode_test.c, test/asn1_encode_test.c. - CVE-2020-1971 Checksums-Sha1: 405fa0a3fca45f35ce27ff3080db3a334bdf6424 945664 libcrypto1.1-udeb_1.1.1f-1ubuntu2.1_arm64.udeb c2f355ca171a88f38e5ad1f8b76dad6c0cf7904e 1457892 libssl-dev_1.1.1f-1ubuntu2.1_arm64.deb e1399e23359adece5966488aae75b301bfa5c381 2883344 libssl1.1-dbgsym_1.1.1f-1ubuntu2.1_arm64.ddeb c601e771a17a05e48e6099b67509d710a5ad763e 172324 libssl1.1-udeb_1.1.1f-1ubuntu2.1_arm64.udeb 479d5cdb4bbd2dc13ffdcd2b42d2495f0776683a 1155004 libssl1.1_1.1.1f-1ubuntu2.1_arm64.deb c209025581c622ea769ce1a2b031e0c62a16f97e 545504 openssl-dbgsym_1.1.1f-1ubuntu2.1_arm64.ddeb 69e48fd9346817aa73152e621acaa6c6503852f6 7223 openssl_1.1.1f-1ubuntu2.1_arm64.buildinfo c50c6811ed6186b73ec559fa1fd66f3c7d2ce5c4 599016 openssl_1.1.1f-1ubuntu2.1_arm64.deb 01d4de5ab5f99661cce1c14713d2ff545ea39b3c 27332 openssl_1.1.1f-1ubuntu2.1_arm64_translations.tar.gz Checksums-Sha256: de8ecfaad2c3c2f700b4af35fd185ef0e71f06386f35a5ca1450b235edac9819 945664 libcrypto1.1-udeb_1.1.1f-1ubuntu2.1_arm64.udeb aa42456e0e01ab74d9e63314854bf4d009fe4414aeb99c06215cc99126076487 1457892 libssl-dev_1.1.1f-1ubuntu2.1_arm64.deb c8b4e600b399b6b002ecae6915a0e88f99eafb49c89e64873125f548de07da8b 2883344 libssl1.1-dbgsym_1.1.1f-1ubuntu2.1_arm64.ddeb 716d1b5480bc1a394a476329a221591fae77a3ded93464017ffd147d12fc1908 172324 libssl1.1-udeb_1.1.1f-1ubuntu2.1_arm64.udeb 127723bc22e677c14ffab62453f3835d218bac513183fef65743f9e4ec7116c6 1155004 libssl1.1_1.1.1f-1ubuntu2.1_arm64.deb c96a89038876c1941d38276024869a3611c905e7b878ba8f39ffe75598777cf7 545504 openssl-dbgsym_1.1.1f-1ubuntu2.1_arm64.ddeb 496aebcf25cbe20b4decd4d6f47dfbece78658061e9b4f993a4f381669dca1fb 7223 openssl_1.1.1f-1ubuntu2.1_arm64.buildinfo f871c1a9302c56942f853aae7287ddb40d08a181d4d41feee966a72e4b5cc5fc 599016 openssl_1.1.1f-1ubuntu2.1_arm64.deb 3350af26301adf27a54a5f0164c8ce7dc37c30702ab090b8e1156432641e5ef3 27332 openssl_1.1.1f-1ubuntu2.1_arm64_translations.tar.gz Files: 12a35df397976242710726693d0994f7 945664 debian-installer optional libcrypto1.1-udeb_1.1.1f-1ubuntu2.1_arm64.udeb d6527798468c0f67e04d543e0920d2d6 1457892 libdevel optional libssl-dev_1.1.1f-1ubuntu2.1_arm64.deb ea0f941d08831329dd15d73f91f8c15b 2883344 debug optional libssl1.1-dbgsym_1.1.1f-1ubuntu2.1_arm64.ddeb a82e0ac9fd833cb2bf081aba1b92b793 172324 debian-installer optional libssl1.1-udeb_1.1.1f-1ubuntu2.1_arm64.udeb 415df7e3b9925ed4e16031b2bb82bb01 1155004 libs optional libssl1.1_1.1.1f-1ubuntu2.1_arm64.deb dea3113baba4b2bd6edaa64f7a95ea32 545504 debug optional openssl-dbgsym_1.1.1f-1ubuntu2.1_arm64.ddeb 558ace8804d825be91fe5106f8e42040 7223 utils optional openssl_1.1.1f-1ubuntu2.1_arm64.buildinfo c50af52b4622a0df1651d2bcafe3678b 599016 utils optional openssl_1.1.1f-1ubuntu2.1_arm64.deb 533225e6d87cb34c56dd336e61f56493 27332 raw-translations - openssl_1.1.1f-1ubuntu2.1_arm64_translations.tar.gz Original-Maintainer: Debian OpenSSL Team