diff --git a/libgcrypt-1.8.4.tar.bz2 b/libgcrypt-1.8.4.tar.bz2 deleted file mode 100644 index 3ce05af..0000000 --- a/libgcrypt-1.8.4.tar.bz2 +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:f638143a0672628fde0cad745e9b14deb85dffb175709cacc1f4fe24b93f2227 -size 2990108 diff --git a/libgcrypt-1.8.4.tar.bz2.sig b/libgcrypt-1.8.4.tar.bz2.sig deleted file mode 100644 index 680945c..0000000 Binary files a/libgcrypt-1.8.4.tar.bz2.sig and /dev/null differ diff --git a/libgcrypt-1.8.5.tar.bz2 b/libgcrypt-1.8.5.tar.bz2 new file mode 100644 index 0000000..cbf9d79 --- /dev/null +++ b/libgcrypt-1.8.5.tar.bz2 @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:3b4a2a94cb637eff5bdebbcaf46f4d95c4f25206f459809339cdada0eb577ac3 +size 2991291 diff --git a/libgcrypt-1.8.5.tar.bz2.sig b/libgcrypt-1.8.5.tar.bz2.sig new file mode 100644 index 0000000..dab3353 Binary files /dev/null and b/libgcrypt-1.8.5.tar.bz2.sig differ diff --git a/libgcrypt.changes b/libgcrypt.changes index c80fb1e..00b0ec5 100644 --- a/libgcrypt.changes +++ b/libgcrypt.changes @@ -1,3 +1,11 @@ +------------------------------------------------------------------- +Fri Aug 30 14:17:48 UTC 2019 - Andreas Stieger + +- libgcrypt 1.8.5: + * CVE-2019-13627: mitigation against an ECDSA timing attack (boo#1148987) + * Improve ECDSA unblinding + * Provide a pkg-config file + ------------------------------------------------------------------- Wed Jun 26 06:52:54 UTC 2019 - Jason Sikes diff --git a/libgcrypt.spec b/libgcrypt.spec index ac9d1b1..77d106c 100644 --- a/libgcrypt.spec +++ b/libgcrypt.spec @@ -21,12 +21,12 @@ %define libsoname %{name}20 %define cavs_dir %{_libexecdir}/%{name}/cavs Name: libgcrypt -Version: 1.8.4 +Version: 1.8.5 Release: 0 Summary: The GNU Crypto Library License: GPL-2.0-or-later AND LGPL-2.1-or-later AND GPL-3.0-or-later Group: Development/Libraries/C and C++ -URL: http://directory.fsf.org/wiki/Libgcrypt +URL: https://directory.fsf.org/wiki/Libgcrypt Source: ftp://ftp.gnupg.org/gcrypt/libgcrypt/%{name}-%{version}.tar.bz2 Source1: ftp://ftp.gnupg.org/gcrypt/libgcrypt/%{name}-%{version}.tar.bz2.sig Source2: baselibs.conf @@ -70,6 +70,7 @@ BuildRequires: automake >= 1.14 BuildRequires: fipscheck BuildRequires: libgpg-error-devel >= 1.25 BuildRequires: libtool +BuildRequires: pkgconfig %description Libgcrypt is a general purpose library of cryptographic building @@ -222,6 +223,7 @@ mv %{buildroot}%{_bindir}/drbg_test %{buildroot}%{cavs_dir} %{_libdir}/%{name}.so %{_includedir}/gcrypt*.h %{_datadir}/aclocal/%{name}.m4 +%{_libdir}/pkgconfig/libgcrypt.pc %if 0%{?separate_hmac256_binary} %files hmac256