Branches for Gutsy

Name Status Last Modified Last Commit
lp://staging/ubuntu/gutsy/gnutls13 1 Development 2009-12-10 20:12:16 UTC
9. Trigger rebuild for hppa.

Author: LaMont Jones
Revision Date: 2007-10-02 06:32:42 UTC

Trigger rebuild for hppa.

lp://staging/ubuntu/gutsy-proposed/gnutls13 bug 1 Development 2009-07-08 17:50:27 UTC
13. * Fix for certificate chain regressio...

Author: Jamie Strandboge
Revision Date: 2009-02-20 13:05:18 UTC

* Fix for certificate chain regressions introduced by fixes for
  CVE-2008-4989
* debian/patches/91_CVE-2008-4989.diff: updated to upstream's final
  2.4.2 - 2.4.3 patchset for lib/x509/verify.c to fix CVE-2008-4989 and
  address all known regressions. To summarize from upstream:
  - Fix X.509 certificate chain validation error (CVE-2008-4989)
  - Fix chain verification for chains that end with RSA-MD2 CAs (LP: #305264)
  - Deprecate X.509 validation chains using MD5 and MD2 signatures
  - Accept chains where intermediary certs are trusted (LP: #305264)

lp://staging/ubuntu/gutsy-security/gnutls13 1 Development 2009-07-08 17:49:18 UTC
12. * Fix for regression where some valid...

Author: Jamie Strandboge
Revision Date: 2008-12-05 14:49:34 UTC

* Fix for regression where some valid certificate chains would be untrusted
  - Update debian/patches/91_CVE-2008-4989.diff to check if last certificate
    is self-signed and prevent verifying self-signed certificates against
    themselves. Patch from upstream.
  - http://lists.gnu.org/archive/html/gnutls-devel/2008-12/msg00008.html
  - LP: #305264

lp://staging/ubuntu/gutsy-updates/gnutls13 bug 1 Development 2009-07-08 17:50:21 UTC
12. * Fix for regression where some valid...

Author: Jamie Strandboge
Revision Date: 2008-12-05 14:49:34 UTC

* Fix for regression where some valid certificate chains would be untrusted
  - Update debian/patches/91_CVE-2008-4989.diff to check if last certificate
    is self-signed and prevent verifying self-signed certificates against
    themselves. Patch from upstream.
  - http://lists.gnu.org/archive/html/gnutls-devel/2008-12/msg00008.html
  - LP: #305264

14 of 4 results