News for package openssl

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 3.0 (quilt)
Source: openssl
Binary: openssl, libssl1.0.0, libcrypto1.0.0-udeb, libssl-dev, libssl-doc, libssl1.0.0-dbg
Architecture: any all
Version: 1.0.1e-2+deb7u16
Maintainer: Debian OpenSSL Team <[email protected]>
Uploaders: Christoph Martin <[email protected]>, Kurt Roeckx <[email protected]>
Standards-Version: 3.8.0
Vcs-Browser: http://svn.debian.org/wsvn/pkg-openssl/openssl
Vcs-Svn: svn://svn.debian.org/pkg-openssl/openssl/
Build-Depends: debhelper (>= 8.1.3), zlib1g-dev, m4, bc, dpkg-dev (>= 1.15.7)
Package-List: 
 libcrypto1.0.0-udeb udeb debian-installer optional
 libssl-dev deb libdevel optional
 libssl-doc deb doc optional
 libssl1.0.0 deb libs important
 libssl1.0.0-dbg deb debug extra
 openssl deb utils optional
Checksums-Sha1: 
 3f1b1223c9e8189bfe4e186d86449775bd903460 4459777 openssl_1.0.1e.orig.tar.gz
 3e284fe63bbc521c5f67bda8243080383fe757ae 157221 openssl_1.0.1e-2+deb7u16.debian.tar.gz
Checksums-Sha256: 
 f74f15e8c8ff11aa3d5bb5f276d202ec18d7246e95f961db76054199c69c1ae3 4459777 openssl_1.0.1e.orig.tar.gz
 a287f86f522f2afb205f5cc3cc6ab113ddc1564e54d32cd264ec5266ecdfe388 157221 openssl_1.0.1e-2+deb7u16.debian.tar.gz
Files: 
 66bf6f10f060d561929de96f9dfe5b8c 4459777 openssl_1.0.1e.orig.tar.gz
 01b306acbf123c9fe3819bddd734363d 157221 openssl_1.0.1e-2+deb7u16.debian.tar.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=xFW5
-----END PGP SIGNATURE-----

Changes:
openssl (1.0.1e-2+deb7u16) wheezy-security; urgency=medium

  * Revert patch 0003-Free-up-passed-ASN.1-structure-if-reused.patch, it
    breaks nginx and doesn't have a security issue
  * Add patch 0008-Fix-a-failure-to-NULL-a-pointer-freed-on-error.patch
    as follow up to CVE-2015-0209

 -- Kurt Roeckx <[email protected]>  Thu, 19 Mar 2015 19:03:58 +0100