This bug was fixed in the package openssl - 3.4.1-1ubuntu1 --------------- openssl (3.4.1-1ubuntu1) plucky; urgency=medium
* Merge with Debian unstable. Remaining changes: - Use perl:native in the autopkgtest for installability on i386. - Symlink copyright/changelog.Debian.gz in libssl3* to libssl-dev/openssl - Disable LTO with which the codebase is generally incompatible (LP: #2058017) - Default config reads crypto-config and /etc/ssl/openssl.cnf.d dropins - Don't enable or package anything FIPS (LP: #2087955) - patch: crypto: Add kernel FIPS mode detection - patch: crypto: Automatically use the FIPS provider... - patch: apps/speed: Omit unavailable algorithms in FIPS mode - patch: apps: pass -propquery arg to the libctx DRBG fetches - patch: test: Ensure encoding runs with the correct context... - patch: Add Ubuntu-specific defines to help FIPS certification (LP: #2073991) + UBUNTU_OSSL_SELF_TEST_DESC_PCT_DH + UBUNTU_OSSL_PROV_FIPS_PARAM_UNAPPROVED_USAGE * Remove now-unneeded work-around for m2crypto as discussed in #1091133 * patch: add CPACF instruction usage for AES-XTS (LP: #2096810) openssl (3.4.1-1) unstable; urgency=medium * Import 3.4.1 - CVE-2024-12797 (RFC7250 handshakes with unauthenticated servers don't abort as expected) (Closes: #1095765). - CVE-2024-13176 (Timing side-channel in ECDSA signature computation) (Closes: #1094027). - Compile on LoongArch again (Closes: #1092307). openssl (3.4.0-2) unstable; urgency=medium * Disable padlockeng on non-x86 architectures. * Upload to unstable. -- Adrien Nader <adrien.na...@canonical.com> Wed, 12 Feb 2025 10:21:22 +0100 ** Changed in: openssl (Ubuntu) Status: Fix Committed => Fix Released ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2024-12797 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2024-13176 -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssl in Ubuntu. https://bugs.launchpad.net/bugs/2096810 Title: [25.04 FEAT] openSSL MSA 10 XTS support Status in Ubuntu on IBM z Systems: Fix Committed Status in openssl package in Ubuntu: Fix Released Bug description: Feature Description: XTS instructions Support in libcrypto/openSSL To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu-z-systems/+bug/2096810/+subscriptions -- Mailing list: https://launchpad.net/~touch-packages Post to : touch-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~touch-packages More help : https://help.launchpad.net/ListHelp