shield
Security update for openssl
SUSE-SLE-SAP-12-SP1-2019-1063
This update for openssl fixes the following issues: Security issues fixed: - CVE-2018-0734: Fixed timing vulnerability in DSA signature generation (bsc#1113652). - CVE-2018-5407: Fixed elliptic curve scalar multiplication timing attack defenses (bsc#1113534). - CVE-2018-0737: Corrected the current error detection of the current fix (bsc#1106197). - CVE-2016-8610: Adjusted current fix and add missing error string (bsc#1110018). - Add missing timing side channel patch for DSA signature generation (bsc#1113742). - Fixed the "One and Done" side-channel attack on RSA (bsc#1104789). Non-security issues fixed: - Added openssl(cli) so that the packages that required the openssl binary can require this instead of the new openssl meta package (bsc#1101470).
-
Release DateApr 27 2019
-
ReferencesBugzilla: 1110018, 1101470, 1106197, 1104789, 1113652, 1113534
CVEs: CVE-2016-8610, CVE-2018-0734, CVE-2018-0737, CVE-2018-5407 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
SUSE Linux Enterprise Server for SAP Applications 12.1 x86_64
-
Packageslibopenssl1_0_0
Secure Sockets and Transport Layer Securitylibopenssl1_0_0-32bit1.0.1i-54.20.1lock rpm
Secure Sockets and Transport Layer Securitylibopenssl1_0_0-hmac1.0.1i-54.20.1lock rpm
HMAC files for FIPS-140-2 integrity checking of the openssl shared librarieslibopenssl1_0_0-hmac-32bit1.0.1i-54.20.1lock rpm
HMAC files for FIPS-140-2 integrity checking of the openssl shared librariesopenssl1.0.1i-54.20.1lock rpm
Secure Sockets and Transport Layer Securityopenssl-doc1.0.1i-54.20.1lock rpmlock src
Additional Package Documentation1.0.1i-54.20.1lock rpm