gpp_maybe
Security update for compat-openssl098
SUSE-SLE-Module-Legacy-12-2015-285
This update fixes the following security issues: - CVE-2015-4000 (boo#931698) * The Logjam Attack / weakdh.org * reject connections with DH parameters shorter than 1024 bits * generates 2048-bit DH parameters by default - CVE-2015-1788 (boo#934487) * Malformed ECParameters causes infinite loop - CVE-2015-1789 (boo#934489) * Exploitable out-of-bounds read in X509_cmp_time - CVE-2015-1790 (boo#934491) * PKCS7 crash with missing EnvelopedContent - CVE-2015-1792 (boo#934493) * CMS verify infinite loop with unknown hash function - CVE-2015-1791 (boo#933911) * race condition in NewSessionTicket - CVE-2015-3216 (boo#933898) * Crash in ssleay_rand_bytes due to locking regression * modified openssl-1.0.1i-fipslocking.patch - fix timing side channel in RSA decryption (bnc#929678) - add ECC ciphersuites to DEFAULT (bnc#879179) - Disable EXPORT ciphers by default (bnc#931698, comment #3)
-
Release DateJun 17 2015
-
ReferencesBugzilla: 933911, 931698, 934489, 933898, 934487, 929678, 934491, 934493, 879179
CVEs: CVE-2015-1789, CVE-2015-1788, CVE-2015-1790, CVE-2015-1791, CVE-2015-1792, CVE-2015-3216, CVE-2015-4000 -
Typesecurity
-
Severityimportant
cloud_download Downloads
Legacy Module 12 x86_64
-
Packagescompat-openssl098
Secure Sockets and Transport Layer Securitylibopenssl0_9_80.9.8j-78.1 lock src
Secure Sockets and Transport Layer Securitylibopenssl0_9_8-32bit0.9.8j-78.1 lock rpm
Secure Sockets and Transport Layer Security0.9.8j-78.1 lock rpm
Legacy Module 12 s390x
-
Packagescompat-openssl098
Secure Sockets and Transport Layer Securitylibopenssl0_9_80.9.8j-78.1 lock src
Secure Sockets and Transport Layer Securitylibopenssl0_9_8-32bit0.9.8j-78.1 lock rpm
Secure Sockets and Transport Layer Security0.9.8j-78.1 lock rpm