Accepted mbedtls 2.4.2-1~bpo8+1 (source all) into jessie-backports->backports-policy, jessie-backports
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Mon, 03 Apr 2017 20:29:54 +0100
Source: mbedtls
Binary: libmbedtls-dev libmbedcrypto0 libmbedtls10 libmbedx509-0 libmbedtls-doc
Architecture: source all
Version: 2.4.2-1~bpo8+1
Distribution: jessie-backports
Urgency: high
Maintainer: James Cowgill <jcowgill@debian.org>
Changed-By: James Cowgill <jcowgill@debian.org>
Description:
libmbedcrypto0 - lightweight crypto and SSL/TLS library - crypto library
libmbedtls-dev - lightweight crypto and SSL/TLS library - development files
libmbedtls-doc - lightweight crypto and SSL/TLS library - documentation
libmbedtls10 - lightweight crypto and SSL/TLS library - tls library
libmbedx509-0 - lightweight crypto and SSL/TLS library - x509 certificate library
Closes: 857560
Changes:
mbedtls (2.4.2-1~bpo8+1) jessie-backports; urgency=high
.
* Rebuild for jessie-backports.
.
mbedtls (2.4.2-1) unstable; urgency=high
.
* New upstream version.
- Fixes CVE-2017-2784 - freeing of memory allocated on the stack when
validating a public key with a secp224k1 curve. (Closes: #857560)
.
* debian/rules:
- Run testsuite inside faketime to prevent it suddenly failing in the
future. Thanks Niels Thykier!
Checksums-Sha1:
b675c19032535025b9d1fcf7af3bd10750ae5a8b 2185 mbedtls_2.4.2-1~bpo8+1.dsc
0992999476471c96ec2dd85e6664bd026f6ebe34 10656 mbedtls_2.4.2-1~bpo8+1.debian.tar.xz
95374d63b5ce3aa872014a22d444a0b1cb615087 4846186 libmbedtls-doc_2.4.2-1~bpo8+1_all.deb
Checksums-Sha256:
13b6145b766b60ef45885cdec5c2bf565e0c894104ef8e0198655c13b2d69c28 2185 mbedtls_2.4.2-1~bpo8+1.dsc
6d2a2a0f82ef3f46c4218924a11f4b46e3d4332344f28b39cfebad4f05359c96 10656 mbedtls_2.4.2-1~bpo8+1.debian.tar.xz
048a771e51a96e1e8740a7aee28c308736dc4958badc42b904a60843196adbde 4846186 libmbedtls-doc_2.4.2-1~bpo8+1_all.deb
Files:
b7be7abb7bc11639b7af343488dcba33 2185 libs optional mbedtls_2.4.2-1~bpo8+1.dsc
55006e248822f52eae92d9389230a52b 10656 libs optional mbedtls_2.4.2-1~bpo8+1.debian.tar.xz
f9afbe77edf190801b9ccb8c9fca936f 4846186 doc optional libmbedtls-doc_2.4.2-1~bpo8+1_all.deb
-----BEGIN PGP SIGNATURE-----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=26U/
-----END PGP SIGNATURE-----
Reply to: