UbuntuUpdates.org

Package "libgcrypt20-dev"

Name: libgcrypt20-dev

Description:

LGPL Crypto library - development files

Latest version: 1.6.1-2ubuntu1.14.04.1
Release: trusty (14.04)
Level: updates
Repository: universe
Head package: libgcrypt20
Homepage: http://directory.fsf.org/project/libgcrypt/

Links


Download "libgcrypt20-dev"


Other versions of "libgcrypt20-dev" in Trusty

Repository Area Version
base universe 1.6.1-2ubuntu1
security universe 1.6.1-2ubuntu1.14.04.1

Changelog

Version: 1.6.1-2ubuntu1.14.04.1 2015-04-01 16:06:56 UTC

  libgcrypt20 (1.6.1-2ubuntu1.14.04.1) trusty-security; urgency=medium

  * SECURITY UPDATE: sidechannel attack on Elgamal
    - debian/patches/CVE-2014-3591.patch: use ciphertext blinding in
      cipher/elgamal.c.
    - CVE-2014-3591
  * SECURITY UPDATE: sidechannel attack via timing variations in mpi_powm
    - debian/patches/CVE-2015-0837.patch: avoid timing variations in
      mpi/mpi-pow.c, mpi/mpiutil.c, src/mpi.h.
    - CVE-2015-0837
 -- Marc Deslauriers <email address hidden> Thu, 26 Mar 2015 07:25:12 -0400

CVE-2014-3591 sidechannel attack on Elgamal
CVE-2015-0837 data-dependent timing variations in modular exponentiation



About   -   Send Feedback to @ubuntu_updates