New Debian openssl 3.0.17-1~deb12u2 fixes: This update addresses the following issue: * openssl: Timing side-channel in ECDSA signature computation (CVE-2024-13176) 3.0.17-1~deb12u2 (Tue, 05 Aug 2025 09:09:41 +0200) * Revert the following upstream changes to avoid crashes in downstream software: - 7141330fb98ce ("Drop "by store"'s by_store_subject_ex()") - 340383f5f49f8 ("Rework the "by store" X509_LOOKUP method to open the given URI early") - a468bdb02531e ("Add test_verify tests") 3.0.17-1~deb12u1 (Sun, 13 Jul 2025 14:39:08 +0200) * Import 3.0.17
--- mirror/ftp/pool/main/o/openssl/openssl_3.0.16-1~deb12u1.dsc +++ apt/ucs_5.2-0-errata5.2-3/source/openssl_3.0.17-1~deb12u2.dsc @@ -1,6 +1,19 @@ +3.0.17-1~deb12u2 [Tue, 05 Aug 2025 09:09:41 +0200] Sebastian Andrzej Siewior <sebastian@breakpoint.cc>: + + * Revert the following upstream changes to avoid crashes in downstream + software: + - 7141330fb98ce ("Drop "by store"'s by_store_subject_ex()") + - 340383f5f49f8 ("Rework the "by store" X509_LOOKUP method to open the given URI early") + - a468bdb02531e ("Add test_verify tests") + Closes: #1110254 + +3.0.17-1~deb12u1 [Sun, 13 Jul 2025 14:39:08 +0200] Sebastian Andrzej Siewior <sebastian@breakpoint.cc>: + + * Import 3.0.17 + 3.0.16-1~deb12u1 [Tue, 15 Apr 2025 21:59:18 +0200] Sebastian Andrzej Siewior <sebastian@breakpoint.cc>: - * Import 3.0.15 + * Import 3.0.16 - CVE-2024-13176 (Timing side-channel in ECDSA signature computation) (Closes: #1094027). <http://piuparts.knut.univention.de/5.2-3/#4376041011691108789>
OK: YAML OK: Tests OK: piuparts
<https://errata.software-univention.de/#/?erratum=5.2x206>