Hello, I've just released gnutls 3.0.7. The 3.0.6 release introduced a usability issue in an attempt to fix a security bug. This release eliminates the usability issue. I understand there is not much information on the security issue. This might change soon.
* Version 3.0.7 (released 2011-11-08) ** libgnutls: Corrected fix in gnutls_session_get_data() to report the actual session size when the provided buffer is not enough. ** libgnutls: Fixed ciphersuite GNUTLS_ECDHE_RSA_AES_128_CBC_SHA256, which was using a wrong MAC algorithm. Reported by Fabrice Gautier. ** API and ABI modifications: No changes since last version. Getting the Software ==================== GnuTLS may be downloaded from one of the GNU mirror sites or directly From <ftp://ftp.gnu.org/gnu/gnutls/â¥. The list of GNU mirrors can be found at <http://www.gnu.org/prep/ftp.html> and a list of GnuTLS mirrors can be found at <http://www.gnu.org/software/gnutls/download.html>. Here are the BZIP2 compressed sources: ftp://ftp.gnu.org/gnu/gnutls/gnutls-3.0.7.tar.xz http://ftp.gnu.org/gnu/gnutls/gnutls-3.0.7.tar.xz ftp://ftp.gnutls.org/pub/gnutls/gnutls-3.0.7.tar.xz Here are OpenPGP detached signatures signed using key 0x96865171: ftp://ftp.gnu.org/gnu/gnutls/gnutls-3.0.7.tar.xz.sig http://ftp.gnu.org/gnu/gnutls/gnutls-3.0.7.tar.xz.sig ftp://ftp.gnutls.org/pub/gnutls/gnutls-3.0.7.tar.xz.sig Note that it has been signed with my openpgp key: pub 3104R/96865171 2008-05-04 [expires: 2028-04-29] uid Nikos Mavrogiannopoulos <nmav <at> gnutls.org> uid Nikos Mavrogiannopoulos <n.mavrogiannopoulos <at> gmail.com> sub 2048R/9013B842 2008-05-04 [expires: 2018-05-02] sub 2048R/1404A91D 2008-05-04 [expires: 2018-05-02] regards, Nikos _______________________________________________ Help-gnutls mailing list [email protected] https://lists.gnu.org/mailman/listinfo/help-gnutls
