gpp_maybe Security update for openssl-3
SUSE-SLE-Micro-5.4-2024-3525


This update for openssl-3 fixes the following issues: - CVE-2024-41996: Validating the order of the public keys in the Diffie-Hellman Key Agreement Protocol, when an approved safe prime is used, allows remote attackers to trigger expensive server-side DHE (bsc#1230698)

  • Release Date
    Oct 4 2024
  • References
    Bugzilla: 1230698
    CVEs: CVE-2024-41996
  • Type
    security
  • Severity
    important

cloud_download Downloads

SUSE Linux Enterprise Micro 5.4 s390x
  • Packages
    libopenssl3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.66.1 lock rpm
    openssl-3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.66.1 lock src
SUSE Linux Enterprise Micro 5.4 aarch64
  • Packages
    libopenssl3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.66.1 lock rpm
    openssl-3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.66.1 lock src
SUSE Linux Enterprise Micro 5.4 x86_64
  • Packages
    libopenssl3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.66.1 lock rpm
    openssl-3
    Secure Sockets and Transport Layer Security
    3.0.8-150400.4.66.1 lock src