lp://staging/ubuntu/lucid-updates/libgcrypt11

Created by Ubuntu Package Importer and last modified
Get this branch:
bzr branch lp://staging/ubuntu/lucid-updates/libgcrypt11
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

24. By Marc Deslauriers

* SECURITY UPDATE: sidechannel attack on Elgamal
  - debian/patches/24-CVE-2014-3591.diff: use ciphertext blinding in
    cipher/elgamal.c.
  - CVE-2014-3591
* SECURITY UPDATE: sidechannel attack via timing variations in mpi_powm
  - debian/patches/25-CVE-2015-0837.diff: avoid timing variations in
    mpi/mpi-pow.c, mpi/mpiutil.c, src/mpi.h.
  - CVE-2015-0837

23. By Marc Deslauriers

* SECURITY UPDATE: side-channel attack on Elgamal encryption subkeys
  - debian/patches/22-add_gcry_divide_by_zero.diff: replace deliberate
    division by zero with new _gcry_divide_by_zero().
  - debian/patches/23-CVE-2014-5270.diff: use sliding window method for
    exponentiation algorithm in mpi/mpi-pow.c.
  - CVE-2014-5270

22. By Seth Arnold

* SECURITY UPDATE: The path of execution in an exponentiation function may
  depend upon secret key data, allowing a local attacker to determine the
  contents of the secret key through a side-channel attack.
  - debian/patches/21-CVE-2013-4242.diff: always perform the mpi_mul for
    exponents in secure memory. Based on upstream patch.
  - CVE-2013-4242

21. By Colin Watson

Adjust install/libgcrypt11-dev target to cope with move to /lib.

20. By Colin Watson

* Resynchronise with Debian. Remaining changes:
  - Add libgcrypt11-udeb for use by cryptsetup-udeb.
  - Install to /lib.
  - Disable tests when cross-building.
* Drop clean-la.mk as debian/rules now does that itself.

19. By Colin Watson

Fix stack smashing on VIA processors with Padlock RNG (patch by Tomas
Mraz of Red Hat; thanks to Roberto Rosario for the archaeology; LP:
#389053).

18. By Bhavani Shankar

* Merge from Debian unstable (LP: #364535), remaining changes:
  - Add libgcrypt11-udeb for use by cryptsetup-udeb.
  - Add clean-la.mk, and add a symlink for the .la
  - Install to /lib.

17. By Scott James Remnant (Canonical)

* Merge from debian unstable, remaining changes:
  - Add libgcrypt11-udeb for use by cryptsetup-udeb.
  - Add clean-la.mk, and add a symlink for the .la
  - Install to /lib. LP: #139635

16. By Steve Kowalik

* Merge from Debian unstable.
* Remaining Ubuntu changes:
  - Add libgcrypt11-udeb package.
  - Add clean-la.mk, and add a symlink for the .la
* Ubuntu changes dropped:
  - Build-Depends changes.
  - Drop patch 20_socket_nsl_linkage.diff, basically applied upstream.

15. By Steve Kowalik

Damn. The .la file doesn't contain 11, correct the symlink.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp://staging/ubuntu/quantal/libgcrypt11
This branch contains Public information 
Everyone can see this information.

Subscribers