Format: 1.8 Date: Wed, 02 Dec 2020 09:52:44 -0500 Source: openssl Binary: libcrypto1.1-udeb libssl-dev libssl1.1 libssl1.1-udeb openssl Architecture: armhf armhf_translations Version: 1.1.1f-1ubuntu2.1 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libcrypto1.1-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl1.1 - Secure Sockets Layer toolkit - shared libraries libssl1.1-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Changes: openssl (1.1.1f-1ubuntu2.1) focal-security; urgency=medium . * SECURITY UPDATE: EDIPARTYNAME NULL pointer de-ref - debian/patches/CVE-2020-1971-1.patch: use explicit tagging for DirectoryString in crypto/x509v3/v3_genn.c. - debian/patches/CVE-2020-1971-2.patch: correctly compare EdiPartyName in crypto/x509v3/v3_genn.c. - debian/patches/CVE-2020-1971-3.patch: check that multi-strings/CHOICE types don't use implicit tagging in crypto/asn1/asn1_err.c, crypto/asn1/tasn_dec.c, crypto/err/openssl.txt, include/openssl/asn1err.h. - debian/patches/CVE-2020-1971-4.patch: complain if we are attempting to encode with an invalid ASN.1 template in crypto/asn1/asn1_err.c, crypto/asn1/tasn_enc.c, crypto/err/openssl.txt, include/openssl/asn1err.h. - debian/patches/CVE-2020-1971-5.patch: add a test for GENERAL_NAME_cmp in test/v3nametest.c. - debian/patches/CVE-2020-1971-6.patch: add a test for encoding/decoding using an invalid ASN.1 Template in test/asn1_decode_test.c, test/asn1_encode_test.c. - CVE-2020-1971 Checksums-Sha1: c2e99525aa2ae466cebbbc31a49738b43dd0c5ee 889052 libcrypto1.1-udeb_1.1.1f-1ubuntu2.1_armhf.udeb dc99235717206f273f5e9e9e4d8ad71d047d3959 1381216 libssl-dev_1.1.1f-1ubuntu2.1_armhf.deb 16d36b2ceec9dfdceb6861a1410e6ee20439ff1f 2840948 libssl1.1-dbgsym_1.1.1f-1ubuntu2.1_armhf.ddeb 6df9a1c949a78527c171baee1852ecd15429fb00 155700 libssl1.1-udeb_1.1.1f-1ubuntu2.1_armhf.udeb 25da23c47a83eae7407804ca66ba90668ad188b7 1082076 libssl1.1_1.1.1f-1ubuntu2.1_armhf.deb 8ae26847ddac2d9d66bbe64df0c103b491c37ec9 521784 openssl-dbgsym_1.1.1f-1ubuntu2.1_armhf.ddeb 9e9fd44046a4f14ffb2e650d6a0fd7e26aaaf12b 7115 openssl_1.1.1f-1ubuntu2.1_armhf.buildinfo 6ca4554a3023da08b1911e8c6835e7a41356e5e4 596888 openssl_1.1.1f-1ubuntu2.1_armhf.deb bc897811656d2b29cf57668a149300995196d25a 27328 openssl_1.1.1f-1ubuntu2.1_armhf_translations.tar.gz Checksums-Sha256: c6981b9e6ce01722d273e73a9a073396803dbcc704a9e3b0ffe98bc53f22050f 889052 libcrypto1.1-udeb_1.1.1f-1ubuntu2.1_armhf.udeb 43b3493ffd5d6d3534df0d49b04d4cd5d124c7b1ffee99df47ba7f6d9a48d317 1381216 libssl-dev_1.1.1f-1ubuntu2.1_armhf.deb 53f4a3bf868c64611864f93b023d919443daf4d1417e1729149375944bb00760 2840948 libssl1.1-dbgsym_1.1.1f-1ubuntu2.1_armhf.ddeb 9ade75500a147b768c12f56a4ef4cba1707a4ac36f0c5e09f3f2f2d663020419 155700 libssl1.1-udeb_1.1.1f-1ubuntu2.1_armhf.udeb 61f83bfb527f8718da0c487bb5e40c8340468104602dd03a0ccab2054d8ed743 1082076 libssl1.1_1.1.1f-1ubuntu2.1_armhf.deb 516037e521bfcb97e8d85f640ffd607620d69aea1405dd71673303f225bb45c6 521784 openssl-dbgsym_1.1.1f-1ubuntu2.1_armhf.ddeb c856465c51533eed05207133f52d468081d19a2ba754d1add10667b275b6f92a 7115 openssl_1.1.1f-1ubuntu2.1_armhf.buildinfo 22d6bc56409bcd7f1f721fee1e1225d0bbde8b2bb58ba2a0dd99448bdeaa1fa3 596888 openssl_1.1.1f-1ubuntu2.1_armhf.deb fdd3bfe55d11222f87ab14a73f6b1ee7bc577d97836c566737c17e91490b9af6 27328 openssl_1.1.1f-1ubuntu2.1_armhf_translations.tar.gz Files: ac2ff603be3056396c8dba932b7a2ed1 889052 debian-installer optional libcrypto1.1-udeb_1.1.1f-1ubuntu2.1_armhf.udeb a72bf66d5e4af02a6e9cff866dbbaed1 1381216 libdevel optional libssl-dev_1.1.1f-1ubuntu2.1_armhf.deb 5b78f20cf962b64f7315c058f5fff360 2840948 debug optional libssl1.1-dbgsym_1.1.1f-1ubuntu2.1_armhf.ddeb c2be7c1b0de8db5cf105344ac0fc6827 155700 debian-installer optional libssl1.1-udeb_1.1.1f-1ubuntu2.1_armhf.udeb 5faa9d719c939908eb560b535e1283d5 1082076 libs optional libssl1.1_1.1.1f-1ubuntu2.1_armhf.deb e8393d4a46c6f5cff3b20fabebc84d85 521784 debug optional openssl-dbgsym_1.1.1f-1ubuntu2.1_armhf.ddeb 9609e223c98194c6ea792271d7093fcd 7115 utils optional openssl_1.1.1f-1ubuntu2.1_armhf.buildinfo d779541959be76d92ef15730386e7418 596888 utils optional openssl_1.1.1f-1ubuntu2.1_armhf.deb 804cf1f9916548de665ad7453fa0a6c8 27328 raw-translations - openssl_1.1.1f-1ubuntu2.1_armhf_translations.tar.gz Original-Maintainer: Debian OpenSSL Team