shield Security update for openssl-1_0_0
SUSE-SLE-SERVER-12-SP4-2018-2846


This update for openssl-1_0_0 fixes the following issues: Security issues fixed: - CVE-2018-0734: Fixed timing vulnerability in DSA signature generation (bsc#1113652). - CVE-2018-5407: Fixed elliptic curve scalar multiplication timing attack defenses (bsc#1113534). - Add missing timing side channel patch for DSA signature generation (bsc#1113742). Non-security issues fixed: - Fixed infinite loop in DSA generation with incorrect parameters (bsc#1112209). - Set TLS version to 0 in msg_callback for record messages to avoid confusing applications (bsc#1100078).


cloud_download Downloads

SUSE Linux Enterprise Server 12.4 s390x
SUSE Linux Enterprise Server for SAP Applications 12.4 ppc64le
  • Packages
    libopenssl-1_0_0-devel
    Development files for OpenSSL
    1.0.2p-3.3.1
    lock rpm
    libopenssl1_0_0
    Secure Sockets and Transport Layer Security
    1.0.2p-3.3.1
    lock rpm
    libopenssl1_0_0-hmac
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.0.2p-3.3.1
    lock rpm
    openssl-1_0_0
    Secure Sockets and Transport Layer Security
    1.0.2p-3.3.1
    lock rpm
    lock src
    openssl-1_0_0-doc
    Additional Package Documentation
    1.0.2p-3.3.1
    lock rpm
SUSE Linux Enterprise Server 12.4 aarch64
  • Packages
    libopenssl-1_0_0-devel
    Development files for OpenSSL
    1.0.2p-3.3.1
    lock rpm
    libopenssl1_0_0
    Secure Sockets and Transport Layer Security
    1.0.2p-3.3.1
    lock rpm
    libopenssl1_0_0-hmac
    HMAC files for FIPS-140-2 integrity checking of the openssl shared libraries
    1.0.2p-3.3.1
    lock rpm
    openssl-1_0_0
    Secure Sockets and Transport Layer Security
    1.0.2p-3.3.1
    lock rpm
    lock src
    openssl-1_0_0-doc
    Additional Package Documentation
    1.0.2p-3.3.1
    lock rpm
SUSE Linux Enterprise Server 12.4 x86_64