-
libgcrypt20 (1.8.7-2ubuntu2.1) hirsute-security; urgency=medium
* SECURITY UPDATE: lack of exponent blinding in ElGamal encryption
- debian/patches/CVE-2021-33560.patch: harden ElGamal by introducing
exponent blinding too in cipher/elgamal.c.
- CVE-2021-33560
* SECURITY UPDATE: incorrect support of smaller K
- debian/patches/CVE-2021-40528.patch: fix ElGamal encryption for other
implementations in cipher/elgamal.c.
- CVE-2021-40528
-- Marc Deslauriers <email address hidden> Tue, 14 Sep 2021 14:30:44 -0400
-
libgcrypt20 (1.8.7-2ubuntu2) hirsute; urgency=medium
* No-change rebuild to drop the udeb package.
-- Matthias Klose <email address hidden> Mon, 22 Feb 2021 10:34:38 +0100
-
libgcrypt20 (1.8.7-2ubuntu1) hirsute; urgency=low
* Merge from Debian unstable. Remaining changes:
- Disable the library reading /proc/sys/crypto/fips_enabled file
and going into FIPS mode. libgcrypt is not a FIPS certified library.
(LP 1748310)
- Enable CET.
libgcrypt20 (1.8.7-2) unstable; urgency=low
* Upload to unstable.
libgcrypt20 (1.8.7-1) experimental; urgency=low
[ Debian Janitor ]
* Apply multi-arch hints.
+ libgcrypt-mingw-w64-dev, libgcrypt20-doc: Add Multi-Arch: foreign.
[ Andreas Metzler ]
* Update debian/upstream/signing-key.asc from
https://gnupg.org/signature_key.html.
* New upstream bugfix release.
* Use dh v13 compat level.
libgcrypt20 (1.8.6-2) unstable; urgency=low
* Upload to unstable.
libgcrypt20 (1.8.6-1) experimental; urgency=low
[ Debian Janitor ]
* Set upstream metadata fields: Repository.
[ Andreas Metzler ]
* New upstream version.
+ Drop 40_*.patch
* Install library to /usr/lib instead of /lib in udeb, too.
-- Ćukasz 'sil2100' Zemczak <email address hidden> Tue, 10 Nov 2020 10:20:19 +0100
-
libgcrypt20 (1.8.5-5ubuntu2) groovy; urgency=medium
* Enable CET.
-- Dimitri John Ledkov <email address hidden> Fri, 26 Jun 2020 14:12:25 +0100