gpp_maybe
Security update for openssl
SUSE-SLE-SDK-12-2016-715
This update for openssl fixes the following issues: - CVE-2016-2108: Memory corruption in the ASN.1 encoder (bsc#977617) - CVE-2016-2107: Padding oracle in AES-NI CBC MAC check (bsc#977616) - CVE-2016-2105: EVP_EncodeUpdate overflow (bsc#977614) - CVE-2016-2106: EVP_EncryptUpdate overflow (bsc#977615) - CVE-2016-2109: ASN.1 BIO excessive memory allocation (bsc#976942) - bsc#976943: Buffer overrun in ASN1_parse - bsc#977621: Preserve negotiated digests for SNI (bsc#977621) - bsc#958501: Fix openssl enc -non-fips-allow option in FIPS mode (bsc#958501)
-
Release DateMay 4 2016
-
ReferencesBugzilla: 958501, 976943, 976942, 977616, 977617, 977614, 977615, 977621
CVEs: CVE-2016-2105, CVE-2016-2107, CVE-2016-2106, CVE-2016-2109, CVE-2016-2108 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Software Development Kit 12 x86_64
-
Packageslibopenssl-devel
Include Files and Libraries mandatory for Developmentopenssl1.0.1i-27.16.1 lock rpm
Secure Sockets and Transport Layer Security1.0.1i-27.16.1 lock src
SUSE Linux Enterprise Software Development Kit 12 ppc64le
-
Packageslibopenssl-devel
Include Files and Libraries mandatory for Developmentopenssl1.0.1i-27.16.1 lock rpm
Secure Sockets and Transport Layer Security1.0.1i-27.16.1 lock src
SUSE Linux Enterprise Software Development Kit 12 s390x
-
Packageslibopenssl-devel
Include Files and Libraries mandatory for Developmentopenssl1.0.1i-27.16.1 lock rpm
Secure Sockets and Transport Layer Security1.0.1i-27.16.1 lock src