[CLSA-2023:1699909534] openssl: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2023-11-13
Description:
- CVE-2023-0215: bio_ndef: fix a UAF resulting from a bug in BIO_new_NDEF - CVE-2023-0464: x509v3: Limit X.509 certificate tree size to avoid exponential use of computational resources
Updated packages:
  • openssl-1.0.2k-26.el7_9.tuxcare.els2.x86_64.rpm
    sha:446066cf91732dfc6821264f5b7c7e0e83f0bf89
  • openssl-devel-1.0.2k-26.el7_9.tuxcare.els2.i686.rpm
    sha:37956c84bf4a23b9f95d56504dedabd86c685fb8
  • openssl-devel-1.0.2k-26.el7_9.tuxcare.els2.x86_64.rpm
    sha:50f60ebea4c27912d1ecb766a721d8d52193e9f7
  • openssl-libs-1.0.2k-26.el7_9.tuxcare.els2.i686.rpm
    sha:b984173d2b139d70805899720cf45e9f1c35bf6b
  • openssl-libs-1.0.2k-26.el7_9.tuxcare.els2.x86_64.rpm
    sha:7500aa434d331e1539f2e31d1a105c0a07292388
  • openssl-perl-1.0.2k-26.el7_9.tuxcare.els2.x86_64.rpm
    sha:abfadc09975107ec2c1fa870e71c846d3cabd514
  • openssl-static-1.0.2k-26.el7_9.tuxcare.els2.i686.rpm
    sha:9bdd05ba32da0c717ea1a113d3cbad0c4050250c
  • openssl-static-1.0.2k-26.el7_9.tuxcare.els2.x86_64.rpm
    sha:792e2bc28af1c68b5963c6fe6b32b0eb0496fee6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.