Update to 8.6.0.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-8b14da0538 2021-10-04 00:15:04.717277 --------------------------------------------------------------------------------Name : cryptopp Product : Fedora 35 Version : 8.6.0 Release : 1.fc35 URL : Summary : C++ class library of cryptographic schemes Description : Crypto++ Library is a free C++ class library of cryptographic schemes. See for a list of supported algorithms. One purpose of Crypto++ is to act as a repository of public domain (not copyrighted) source code. Although the library is copyrighted as a compilation, the individual files in it are in the public domain. --------------------------------------------------------------------------------Update Information: Update to 8.6.0. --------------------------------------------------------------------------------ChangeLog: * Sun Sep 26 2021 Vasiliy N. Glazov 8.6.0-1 - Update to 8.6.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #2002831 - CVE-2021-40530 cryptopp: ElGamal implementation allows plaintext recovery [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2002831 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-8b14da0538' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Update cryptopp to 5.6.5 security release. * fixed CVE-2016-7420 (Issue 277, document NDEBUG for production/release) * fixed CVE-2016-7544 (Issue 302, avoid _malloca and _freea for MSC compilers) * Shipped library in recommended state backwards compatibility achieved with * improved Testing and QA . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-a0a356fb68 2018-03-06 17:17:51.854922 --------------------------------------------------------------------------------Name : cryptopp Product : Fedora 27 Version : 5.6.5 Release : 2.fc27 URL : Summary : C++ class library of cryptographic schemes Description : Crypto++ Library is a free C++ class library of cryptographic schemes. See https://cryptopp.com/ for a list of supported algorithms. One purpose of Crypto++ is to act as a repository of public domain (not copyrighted) source code. Although the library is copyrighted as a compilation, the individual files in it are in the public domain. --------------------------------------------------------------------------------Update Information: Update cryptopp to 5.6.5 security release. * fixed CVE-2016-7420 (Issue 277, document NDEBUG for production/release) * fixed CVE-2016-7544 (Issue 302, avoid _malloca and _freea for MSC compilers) * Shipped library in recommended state backwards compatibility achieved with * improved Testing and QA --------------------------------------------------------------------------------References: [ 1 ] Bug #1376698 - CVE-2016-7420 cryptopp: Library documentation lacks treatment of -DNDEBUG and Static Initialization [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1376698 [ 2 ] Bug #1376697 - CVE-2016-7420 cryptopp: Library documentation lacks treatment of -DNDEBUG and Static Initialization [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1376697 [ 3 ] Bug #1375180 - CryptoPP::CMAC_Base::Update assert failed withtegrarcm https://bugzilla.redhat.com/show_bug.cgi?id=1375180 [ 4 ] Bug #1401407 - Cryptopp 5.6.5 released, Fedora Rawhide currently on 5.6.3 https://bugzilla.redhat.com/show_bug.cgi?id=1401407 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade cryptopp' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Update cryptopp to 5.6.5 security release. * fixed CVE-2016-7420 (Issue 277, document NDEBUG for production/release) * fixed CVE-2016-7544 (Issue 302, avoid _malloca and _freea for MSC compilers) * Shipped library in recommended state backwards compatibility achieved with * improved Testing and QA . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-a0a356fb68 2018-03-06 17:17:51.854922 --------------------------------------------------------------------------------Name : cryptopp Product : Fedora 27 Version : 5.6.5 Release : 2.fc27 URL : Summary : C++ class library of cryptographic schemes Description : Crypto++ Library is a free C++ class library of cryptographic schemes. See for a list of supported algorithms. One purpose of Crypto++ is to act as a repository of public domain (not copyrighted) source code. Although the library is copyrighted as a compilation, the individual files in it are in the public domain. --------------------------------------------------------------------------------Update Information: Update cryptopp to 5.6.5 security release. * fixed CVE-2016-7420 (Issue 277, document NDEBUG for production/release) * fixed CVE-2016-7544 (Issue 302, avoid _malloca and _freea for MSC compilers) * Shipped library in recommended state backwards compatibility achieved with * improved Testing and QA --------------------------------------------------------------------------------References: [ 1 ] Bug #1376698 - CVE-2016-7420 cryptopp: Library documentation lacks treatment of -DNDEBUG and Static Initialization [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1376698 [ 2 ] Bug #1376697 - CVE-2016-7420 cryptopp: Library documentation lacks treatment of -DNDEBUG and Static Initialization [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1376697 [ 3 ] Bug #1375180 - CryptoPP::CMAC_Base::Update assert failed with tegrarcm https://bugzilla.redhat.com/show_bug.cgi?id=1375180 [ 4 ] Bug #1401407 - Cryptopp 5.6.5 released, Fedora Rawhide currently on 5.6.3 https://bugzilla.redhat.com/show_bug.cgi?id=1401407 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade cryptopp' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
- Fix for CVE-2016-3995. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-96b60bdb96 2016-04-15 03:16:06.565173 -------------------------------------------------------------------------------- Name : cryptopp Product : Fedora 24 Version : 5.6.3 Release : 3.fc24 URL : Summary : C++ class library of cryptographic schemes Description : Crypto++ Library is a free C++ class library of cryptographic schemes. See for a list of supported algorithms. One purpose of Crypto++ is to act as a repository of public domain (not copyrighted) source code. Although the library is copyrighted as a compilation, the individual files in it are in the public domain. -------------------------------------------------------------------------------- Update Information: - Fix for CVE-2016-3995 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1325947 - CVE-2016-3995 cryptopp: bogus protection from timing attacks https://bugzilla.redhat.com/show_bug.cgi?id=1325947 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update cryptopp' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Get the latest Linux and open source security news straight to your inbox.