gpp_maybe Security update for openssl-1_1
SUSE-SLE-Module-Certifications-15-SP3-2022-2389


This update for openssl-1_1 fixes the security issue: * CVE-2021-3449: An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension but includes a signature_algorithms_cert extension, then a NULL pointer dereference will result, leading to a crash and a denial of service attack. OpenSSL TLS clients are not impacted by this issue. [bsc#1183852]

  • Release Date
    Jul 13 2022
  • References
    Bugzilla: 1183852
    CVEs: CVE-2021-3449
  • Type
    security
  • Severity
    important

cloud_download Downloads

Certifications Module 15.3 ppc64le
  • Packages
    libopenssl-1_1-devel
    Development files for OpenSSL
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1
    Secure Sockets and Transport Layer Security
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1-hmac
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.1.1d-11.20.1 lock rpm
    openssl-1_1
    Secure Sockets and Transport Layer Security
    1.1.1d-11.20.1 lock rpm lock src
    openssl-1_1-doc
    Additional Package Documentation
    1.1.1d-11.20.1 lock rpm
Certifications Module 15.3 aarch64
  • Packages
    libopenssl-1_1-devel
    Development files for OpenSSL
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1
    Secure Sockets and Transport Layer Security
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1-hmac
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.1.1d-11.20.1 lock rpm
    openssl-1_1
    Secure Sockets and Transport Layer Security
    1.1.1d-11.20.1 lock rpm lock src
    openssl-1_1-doc
    Additional Package Documentation
    1.1.1d-11.20.1 lock rpm
Certifications Module 15.3 s390x
  • Packages
    libopenssl-1_1-devel
    Development files for OpenSSL
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1
    Secure Sockets and Transport Layer Security
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1-hmac
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.1.1d-11.20.1 lock rpm
    openssl-1_1
    Secure Sockets and Transport Layer Security
    1.1.1d-11.20.1 lock rpm lock src
    openssl-1_1-doc
    Additional Package Documentation
    1.1.1d-11.20.1 lock rpm
Certifications Module 15.3 x86_64
  • Packages
    libopenssl-1_1-devel
    Development files for OpenSSL
    1.1.1d-11.20.1 lock rpm
    libopenssl-1_1-devel-32bit
    Development files for OpenSSL
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1
    Secure Sockets and Transport Layer Security
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1-32bit
    Secure Sockets and Transport Layer Security
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1-hmac
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.1.1d-11.20.1 lock rpm
    libopenssl1_1-hmac-32bit
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.1.1d-11.20.1 lock rpm
    openssl-1_1
    Secure Sockets and Transport Layer Security
    1.1.1d-11.20.1 lock rpm lock src
    openssl-1_1-doc
    Additional Package Documentation
    1.1.1d-11.20.1 lock rpm