libbotan-1.10-0 - multiplatform crypto library

Property Value
Distribution Debian 8 (Jessie)
Repository Debian Main i386
Package name libbotan-1.10-0
Package version 1.10.8
Package release 2+deb8u2
Package architecture i386
Package type deb
Installed size 2.98 KB
Download size 936.75 KB
Official Mirror
Botan is a C++ library which provides support for many common cryptographic
operations, including encryption, authentication, and X.509v3 certificates and
CRLs. A wide variety of algorithms is supported, including RSA, DSA, DES, AES,
MD5, and SHA-1.


Package Version Architecture Repository
libbotan-1.10-0_1.10.8-2+deb8u2_amd64.deb 1.10.8 amd64 Debian Main
libbotan-1.10-0 - - -


Name Value
libbz2-1.0 -
libc6 >= 2.3.6-6~
libgcc1 >= 1:4.1.1
libgmp10 -
libssl1.0.0 >= 1.0.0
libstdc++6 >= 4.9
zlib1g >= 1:1.1.4


Type URL
Binary Package libbotan-1.10-0_1.10.8-2+deb8u2_i386.deb
Source Package botan1.10

Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install libbotan-1.10-0 deb package:
    # sudo apt-get install libbotan-1.10-0




2017-08-12 - Moritz Muehlenhoff <>
botan1.10 (1.10.8-2+deb8u2) jessie-security; urgency=medium
* CVE-2017-2801
2016-04-29 - Markus Koschany <>
botan1.10 (1.10.8-2+deb8u1) jessie-security; urgency=high
* Non-maintainer upload.
* CVE-2015-5726: Fix crash in BER decoder.
* CVE-2015-5727: Fix excess memory allocation in BER decoder.
* CVE-2015-7827: Fix PKCS #1 v1.5 decoding was not constant time.
* CVE-2016-2194: Fix infinite loop in modulur square root algorithm.
* CVE-2016-2195: Fix Heap overflow on invalid ECC point.
* CVE-2016-2849: Use constant time modular inverse algorithm to avoid
possible side channel attack against ECDSA.
2014-08-25 - Ondřej Surý <>
botan1.10 (1.10.8-2) unstable; urgency=medium
* Add ppc64el and arm64 support (Closes: #741691)
* Add support for or1k (Closes: #749267)
* Use correct Vcs-* links
2014-06-30 - Ondřej Surý <>
botan1.10 (1.10.8-1) unstable; urgency=medium
* New upstream version 1.10.8
* Use debhelper 9 (dpkg-buildflags) instead of hardening-wrapper
* Update watch file to look for v.1.10.x
* Update patches for 1.10.8 release
2013-10-14 - Ondřej Surý <>
botan1.10 (1.10.5-2) unstable; urgency=low
* Add support MIPS64(el) and MIPSN32(el) (Closes: #726128)
2013-03-04 - Ondřej Surý <>
botan1.10 (1.10.5-1) unstable; urgency=low
* Imported Upstream version 1.10.4
+ Avoid a conditional operation in the power mod implementations on if
a nibble of the exponent was zero or not. This may help protect
against certain forms of side channel attacks.
+ The SRP6 code was checking for invalid values as specified in RFC
5054, specifically values equal to zero mod p. However SRP would
accept negative A/B values, or ones larger than p, neither of which
should occur in a normal run of the protocol. These values are now
rejected. Credits to Timothy Prepscius for pointing out these values
are not normally used and probably signal something fishy.
+ The return value of version_string is now a compile time constant
string, so version information can be more easily extracted from
* Imported Upstream version 1.10.5
+ A potential crash in the AES-NI implementation of the AES-192 key
schedule (caused by misaligned loads) has been fixed.
+ A previously conditional operation in Montgomery multiplication and
squaring is now always performed, removing a possible timing channel.
+ Use correct flags for creating a shared library on OS X under Clang.
+ Fix a compile time incompatibility with Visual C++ 2012.
2012-07-10 - Ondřej Surý <>
botan1.10 (1.10.3-1) unstable; urgency=high
* Imported Upstream version 1.10.3
+ A change in 1.10.2 accidentally broke ABI compatibility with 1.10.1
and earlier versions, causing programs compiled against 1.10.1 to
crash if linked with 1.10.2 at runtime. (Closes: #681066)
+ Recent versions of OpenSSL include extra information in ECC private
keys, the presence of which caused an exception when such a key was
loaded by botan. The decoding of ECC private keys has been changed to
ignore these fields if they are set.
2012-06-28 - Ondřej Surý <>
botan1.10 (1.10.2-1) unstable; urgency=low
* Imported Upstream version 1.10.2
* Remove s390x patch as it was merged upstream
2012-02-07 - Ondřej Surý <>
botan1.10 (1.10.1-1) unstable; urgency=low
* Imported Upstream version 1.10.1
2011-09-01 - Ondřej Surý <>
botan1.10 (1.10.0-3) unstable; urgency=low
* Don't canonicalize s390x to s390/s390 (Closes: #639564)

