Your message dated Fri, 12 Jun 2015 18:49:03 +0000
with message-id <[email protected]>
and subject line Bug#788511: fixed in openssl 1.0.2c-1
has caused the Debian Bug report #788511,
regarding openssl: breaks ABI
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
788511: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=788511
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: openssl
Version: 1.0.2b-1
Severity: serious

The HMAC_CTX structure added a new field at the end increasing
it's size.  This can break applications that allocate it on the
stack.

It looks like at least OpenSSH 4.7 through 6.5 on 32 bit platforms
are affected.


Kurt

--- End Message ---
--- Begin Message ---
Source: openssl
Source-Version: 1.0.2c-1

We believe that the bug you reported is fixed in the latest version of
openssl, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Kurt Roeckx <[email protected]> (supplier of updated openssl package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Fri, 12 Jun 2015 20:35:12 +0200
Source: openssl
Binary: openssl libssl1.0.0 libcrypto1.0.0-udeb libssl-dev libssl-doc 
libssl1.0.0-dbg
Architecture: source amd64 all
Version: 1.0.2c-1
Distribution: unstable
Urgency: medium
Maintainer: Debian OpenSSL Team <[email protected]>
Changed-By: Kurt Roeckx <[email protected]>
Description:
 libcrypto1.0.0-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb)
 libssl-dev - Secure Sockets Layer toolkit - development files
 libssl-doc - Secure Sockets Layer toolkit - development documentation
 libssl1.0.0 - Secure Sockets Layer toolkit - shared libraries
 libssl1.0.0-dbg - Secure Sockets Layer toolkit - debug information
 openssl    - Secure Sockets Layer toolkit - cryptographic utility
Closes: 788511
Changes:
 openssl (1.0.2c-1) unstable; urgency=medium
 .
   * New upstream version
     - Fixes ABI (Closes: #788511)
Checksums-Sha1:
 3d7a390fc4008aac6c6d035cce2447f51885ba3e 2227 openssl_1.0.2c-1.dsc
 6e4a5e91159eb32383296c7c83ac0e59b83a0a44 5280670 openssl_1.0.2c.orig.tar.gz
 fd0447c02649fdf271cb685048eb4a6e621b87d6 75220 openssl_1.0.2c-1.debian.tar.xz
 66fcb9ba5e6c1219c851217d7d3aeba6de8e4f33 863850 
libcrypto1.0.0-udeb_1.0.2c-1_amd64.udeb
 91f25200ae56c7458deb72a0e7ef0fdc2d19039f 1529554 libssl-dev_1.0.2c-1_amd64.deb
 e300a38df856a219633780e69e2da528b3e72563 1241334 libssl-doc_1.0.2c-1_all.deb
 2727f129df6e1ca5aaf6ca9c57a4d024b28e8ffc 2956384 
libssl1.0.0-dbg_1.0.2c-1_amd64.deb
 1d49b16ed35ad43e5a6e8699549d79b2fc598af4 1272774 libssl1.0.0_1.0.2c-1_amd64.deb
 03299575a9cac949f0b06a7fc1f2c57c8baa695b 695058 openssl_1.0.2c-1_amd64.deb
Checksums-Sha256:
 4abf4d8348ce18a4ae8adc593bbb124fb2a13cec1a23f522d276f4ca0cd9eeca 2227 
openssl_1.0.2c-1.dsc
 0038ba37f35a6367c58f17a7a7f687953ef8ce4f9684bbdec63e62515ed36a83 5280670 
openssl_1.0.2c.orig.tar.gz
 2f3e59c516a3bb52d0f13e6996ff24d9d658c98c329149fbb2cc5d357d665ad8 75220 
openssl_1.0.2c-1.debian.tar.xz
 a72675d3654b3e5813c31679d01d4c02af98ad6d7ceb744931200bd445d399e5 863850 
libcrypto1.0.0-udeb_1.0.2c-1_amd64.udeb
 916ef3bdba2b05b93e41b1abac72c6276333a1212be5169dc980f53dca65a500 1529554 
libssl-dev_1.0.2c-1_amd64.deb
 d4061f1c297d42007caa433e328eaddc09a09e68410cd4cd5f674f7bc0c5de96 1241334 
libssl-doc_1.0.2c-1_all.deb
 a4162c4519cd6d34d9094469a789801aea77b02bf6ef5b7e80d8def0338799d4 2956384 
libssl1.0.0-dbg_1.0.2c-1_amd64.deb
 8dfe2e2b5c2acd5bef70e152389b815d695bf325f8fc2e8d4f40ecd6976042fd 1272774 
libssl1.0.0_1.0.2c-1_amd64.deb
 9466fe5a2138535bf43cfc390c1be1799f2f5ef72857a2c3573fc66a649bb5fb 695058 
openssl_1.0.2c-1_amd64.deb
Files:
 e18e1b5010b5f4fc2d226cd62de4abbf 2227 utils optional openssl_1.0.2c-1.dsc
 8c8d81a9ae7005276e486702edbcd4b6 5280670 utils optional 
openssl_1.0.2c.orig.tar.gz
 7467f3566ab23c5e2aea6f74543621a4 75220 utils optional 
openssl_1.0.2c-1.debian.tar.xz
 326a1d7217c939a8a109eaa189648cd2 863850 debian-installer optional 
libcrypto1.0.0-udeb_1.0.2c-1_amd64.udeb
 f728e4cd1331ebc8edc46693ec900676 1529554 libdevel optional 
libssl-dev_1.0.2c-1_amd64.deb
 e5e374a399b98d08c51904bee25a1de9 1241334 doc optional 
libssl-doc_1.0.2c-1_all.deb
 d9db026697d6aa4f2daf3e0955c6cc01 2956384 debug extra 
libssl1.0.0-dbg_1.0.2c-1_amd64.deb
 6b2a47f599fb6a6dade583cd5d3c9679 1272774 libs important 
libssl1.0.0_1.0.2c-1_amd64.deb
 0040fd60119b5b5bd04b266b5ab4ef92 695058 utils optional 
openssl_1.0.2c-1_amd64.deb
Package-Type: udeb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iQIcBAEBCgAGBQJVeyh0AAoJEOPE3c0eTBJEpVEQAK+S3Lh01CcdhWgdsRY+dPpU
v+pea8ZUWyFkixIBrtLZHnJ1sMJOPZ64h6IKikdhMPNYE25ADW4+iHFhBbyChV8n
HVQPp+c6wyzdxMi+gFgPANdaiasclZqbnCBo4DXT6txjzstiV2KPlpBkt41z8DtA
bs4X4FYkljA1FVDAgiWktTrmottOgxq8HcNTvJISK9n+7rIKj05sCc8FNBh6Opn1
ZpHzwbtBsbFD/bG1J5qFtKWmcdq2pw16CE+5G8Ssdzcs3jcDUr3/jRom4B5M7Bw4
8WRj3ndnr3Dot+a1AUyzbp7QX+E0k0QVSUXm4W1sVgg7c1RVFPKNwl8FJrTCRrj4
cRzc4mEOGR8YA/lCzKerLbzaPg0wUE8UIbdVhbh6nhkhTLCeMBlGvSNETB5roE0a
6RqamQWEQxtqDNymwHnUJDZtWPKXcBhWgO0a/F6iuCKVPozFXBws58QReGJgCvV3
2gszo5gfmcCXef2wCJKqStyzwRTvKuccjiw8yjixoVMAKcgOei4uW3pfGud9hldu
W5djuzwmKwjplwefN4UyS9flEFB14SZ/1xmx4JSMvm/zP4KjI+lQwHYHyZnYr3xG
5juMyy0KkLZKT8ZBuVINJBCygBhwkXeW7jiDoa0RmhJtegDx8fWXg4IGvbU+lgTq
0BfgR2TZk8tgmHk87Xa8
=Yoq2
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to