On 2017-04-23 "Adam D. Barratt" <a...@adam-barratt.org.uk> wrote: > On Sun, 2017-03-05 at 19:08 +0100, Andreas Metzler wrote: > > I would like fix a number of minor issues in GnuTLS.
> Apologies for the delay in getting back to you. > Are all of the issues listed below already resolved in unstable? >> Most of these (notably CVE-2017-533[4567]) are related to the PGP >> support, security does not intend to issue a DSA: >> >> + 55_00_pkcs12-fixed-the-calculation-of-p_size.patch >> Fixed issue in PKCS#12 password encoding, which truncated >> passwords over 32-characters. Reported by Mario Klebsch. [1] [...] Hello Adam, Yes, all of these are fixed in 3.5.8-5, which is also in testing. cu Andreas [1] Could not quickly find a commit on the 3.5 branch for this specific issue but have verified that it does not apply to 3.5.8. I guess it never applied to 3.5.x. -- `What a good friend you are to him, Dr. Maturin. His other friends are so grateful to you.' `I sew his ears on from time to time, sure'