[Secure-testing-team] Bug#837042: libtomcrypt: CVE-2016-6129

Salvatore Bonaccorso carnil at debian.org
Thu Sep 8 05:17:22 UTC 2016


Source: libtomcrypt
Version: 1.17-6
Severity: important
Tags: security upstream patch

Hi,

the following vulnerability was published for libtomcrypt.

CVE-2016-6129[0]:
possible bleichenbacher signature attack 

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2016-6129
[1] https://github.com/libtom/libtomcrypt/commit/5eb9743410ce4657e9d54fef26a2ee31a1b5dd09

Regards,
Salvatore



More information about the Secure-testing-team mailing list