Security fix for CVE-2016-2194, CVE-2016-2195, CVE-2016-2196. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-1c08d77b96 2016-02-29 18:03:39.485399 -------------------------------------------------------------------------------- Name : botan Product : Fedora 22 Version : 1.10.12 Release : 1.fc22 URL : https://botan.randombit.net/ Summary : Crypto library written in C++ Description : Botan is a BSD-licensed crypto library written in C++. It provides a wide variety of basic cryptographic algorithms, X.509 certificates and CRLs, PKCS \#10 certificate requests, a filter/pipe message processing system, and a wide variety of other features, all written in portable C++. The API reference, tutorial, and examples may help impart the flavor of the library. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2016-2194, CVE-2016-2195, CVE-2016-2196 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1305439 - CVE-2016-2196 CVE-2016-2195 CVE-2016-2194 botan: various flaws fixed in 1.11.27 and 1.10.11 https://bugzilla.redhat.com/show_bug.cgi?id=1305439 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update botan' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Fixes CVE-2009-0129: The Crypto::OpenSSL::DSA module now croaks upon error rather than returning a -1 to ensure programmers are not caught by surprise which only checking for non-zero results.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2009-2090 2009-02-25 15:44:42 --------------------------------------------------------------------------------Name : perl-Crypt-OpenSSL-DSA Product : Fedora 10 Version : 0.13 Release : 12.fc10 URL : https://metacpan.org/dist/Crypt-OpenSSL-DSA Summary : Perl interface to OpenSSL for DSA Description : Crypt::OpenSSL::DSA - Digital Signature Algorithm using OpenSSL --------------------------------------------------------------------------------Update Information: Fixes CVE-2009-0129: The Crypto::OpenSSL::DSA module now croaks upon error rather than returning a -1 to ensure programmers are not caught by surprise which only checking for non-zero results. --------------------------------------------------------------------------------ChangeLog: * Mon Feb 23 2009 Wes Hardaker - 0.13-12 - remove openssl from build requirements trying to the build servers happy * Thu Feb 19 2009 Wes Hardaker - 0.13-11 - Version bump (again again) to solve build issues --------------------------------------------------------------------------------References: [ 1 ] Bug #486012 - CVE-2009-0129 perl-Crypt-OpenSSL-DSA: do_verify() doesn't fail on errors in OpenSSL DSA_do_verify() https://bugzilla.redhat.com/show_bug.cgi?id=486012 --------------------------------------------------------------------------------This update can be installed with the "yum" update program. Use su -c 'yum update perl-Crypt-OpenSSL-DSA' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ Fedora-package-announce mailing list
Get the latest Linux and open source security news straight to your inbox.