8787 Security update for gnutls moderate openSUSE Leap 42.3 Update This update for gnutls fixes the following issues: Security issues fixed: - Improved mitigations against Lucky 13 class of attacks - CVE-2018-10846: "Just in Time" PRIME + PROBE cache-based side channel attack can lead to plaintext recovery (bsc#1105460) - CVE-2018-10845: HMAC-SHA-384 vulnerable to Lucky thirteen attack due to use of wrong constant (bsc#1105459) - CVE-2018-10844: HMAC-SHA-256 vulnerable to Lucky thirteen attack due to not enough dummy function calls (bsc#1105437) - CVE-2017-10790: The _asn1_check_identifier function in Libtasn1 caused a NULL pointer dereference and crash (bsc#1047002) This update was imported from the SUSE:SLE-12-SP3:Update update project. gnutls-3.3.27-2.3.1.i586.rpm gnutls-3.3.27-2.3.1.src.rpm gnutls-debuginfo-3.3.27-2.3.1.i586.rpm gnutls-debugsource-3.3.27-2.3.1.i586.rpm libgnutls-devel-3.3.27-2.3.1.i586.rpm libgnutls-devel-32bit-3.3.27-2.3.1.x86_64.rpm libgnutls-openssl-devel-3.3.27-2.3.1.i586.rpm libgnutls-openssl27-3.3.27-2.3.1.i586.rpm libgnutls-openssl27-debuginfo-3.3.27-2.3.1.i586.rpm libgnutls28-3.3.27-2.3.1.i586.rpm libgnutls28-32bit-3.3.27-2.3.1.x86_64.rpm libgnutls28-debuginfo-3.3.27-2.3.1.i586.rpm libgnutls28-debuginfo-32bit-3.3.27-2.3.1.x86_64.rpm libgnutlsxx-devel-3.3.27-2.3.1.i586.rpm libgnutlsxx28-3.3.27-2.3.1.i586.rpm libgnutlsxx28-debuginfo-3.3.27-2.3.1.i586.rpm gnutls-3.3.27-2.3.1.x86_64.rpm gnutls-debuginfo-3.3.27-2.3.1.x86_64.rpm gnutls-debugsource-3.3.27-2.3.1.x86_64.rpm libgnutls-devel-3.3.27-2.3.1.x86_64.rpm libgnutls-openssl-devel-3.3.27-2.3.1.x86_64.rpm libgnutls-openssl27-3.3.27-2.3.1.x86_64.rpm libgnutls-openssl27-debuginfo-3.3.27-2.3.1.x86_64.rpm libgnutls28-3.3.27-2.3.1.x86_64.rpm libgnutls28-debuginfo-3.3.27-2.3.1.x86_64.rpm libgnutlsxx-devel-3.3.27-2.3.1.x86_64.rpm libgnutlsxx28-3.3.27-2.3.1.x86_64.rpm libgnutlsxx28-debuginfo-3.3.27-2.3.1.x86_64.rpm