Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
Name: libksba8 | Distribution: openSUSE Step 15 |
Version: 1.3.5 | Vendor: openSUSE |
Release: 4.4.1 | Build date: Fri Oct 21 12:08:40 2022 |
Group: Development/Libraries/C and C++ | Build host: armbuild24 |
Size: 234124 | Source RPM: libksba-1.3.5-4.4.1.src.rpm |
Packager: https://bugs.opensuse.org | |
Url: http://www.gnupg.org/aegypten/ | |
Summary: A X.509 Library |
KSBA is a library to simplify the task of working with X.509 certificates, CMS data, and related data.
(LGPL-3.0+ or GPL-2.0+) and GPL-3.0+ and MIT
* Mon Oct 17 2022 pmonreal@suse.com - Security fix: [bsc#1204357, CVE-2022-3515] * Detect a possible overflow directly in the TLV parser. * Add libksba-CVE-2022-3515.patch * Thu Feb 22 2018 fvogt@suse.com - Use %license (boo#1082318) * Mon Aug 22 2016 astieger@suse.com - libksba 1.3.5: * Limit the allowed size of complex ASN.1 objects (e.g. certificates) to 16MiB. * Avoid read access to unitialized memory. * Improve detection of invalid RDNs. * Encode the OCSP nonce value as an octet string as described by RFC-6960. * Tue May 10 2016 astieger@suse.com - libksba 1.3.4: * Fixed two OOB read access bugs which could be used to force a DoS. boo#979261 CVE-2016-4574, CVE-2016-4579 * Fixed a crash due to faulty curve OID lookup code. * Synced the list of supported curves with those of Libgcrypt. * New configure option --enable-build-timestamp; a build timestamp is not anymore used by default. * Fri Apr 10 2015 astieger@suse.com - libksba 1.3.3: * Fixed an integer overflow in the DN decoder. * Now returns an error instead of terminating the process for certain bad BER encodings. * Improved the parsing of utf-8 strings in DNs. * Allow building with newer versions of Bison. * Thu Mar 19 2015 astieger@suse.com - remove libtool requirement * Wed Nov 26 2014 andreas.stieger@gmx.de - libksba 1.3.2 [boo#907074] [CVE-2014-9087] This version contains a security update which fixes a buffer overflow in OID to string conversion code that can be triggered by a specially crafted S/MIME message or ECC based OpenPGP data. Users of GnuPG 2.x should install this version and restart the dirmgr process. * Fixed a buffer overflow in ksba_oid_to_str. - verify source signature * Sun Sep 21 2014 andreas.stieger@gmx.de - libksba 1.3.1: * Fixed memory leak in CRL parsing * Build fixes for ppc64el * Tue Nov 27 2012 meissner@suse.com - Use URL for source * Mon Oct 01 2012 andreas.stieger@gmx.de - update to libksba 1.3.0 - change license from GPLv2 to LGPLv3/GPLv2 - minor bug fixes - implement shared library packaging policy - remove nld-build.diff which was added 2004 before package was in the openSUSE OBS, was never used or applied cleanly since r1
/usr/lib/libksba.so.8 /usr/lib/libksba.so.8.11.6 /usr/share/doc/packages/libksba8 /usr/share/doc/packages/libksba8/AUTHORS /usr/share/doc/packages/libksba8/ChangeLog /usr/share/doc/packages/libksba8/NEWS /usr/share/doc/packages/libksba8/README /usr/share/doc/packages/libksba8/THANKS /usr/share/doc/packages/libksba8/TODO /usr/share/licenses/libksba8 /usr/share/licenses/libksba8/COPYING
Generated by rpm2html 1.8.1
Fabrice Bellet, Tue Jul 9 17:26:31 2024