[CLSA-2023:1676026152] openssl: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2023-02-10
Description:
- CVE-2023-0215: Fix a UAF resulting from a bug in BIO_new_NDEF - CVE-2023-0286: Fix GENERAL_NAME_cmp for x400Address
Updated packages:
  • openssl-1.1.1g-15.el8.4.tuxcare.els5.x86_64.rpm
    sha:ce9f55504b557d3bf0809e6195456e5ded027b15
  • openssl-devel-1.1.1g-15.el8.4.tuxcare.els5.i686.rpm
    sha:e30c992ae1d185a4b12573eb000bb772c2636628
  • openssl-devel-1.1.1g-15.el8.4.tuxcare.els5.x86_64.rpm
    sha:5fbe14d38ef59d1c359a7d1e33e25bee5ac33b91
  • openssl-libs-1.1.1g-15.el8.4.tuxcare.els5.i686.rpm
    sha:490a11d9f40b3ac744b5c27ea3fb1a65a1b541c2
  • openssl-libs-1.1.1g-15.el8.4.tuxcare.els5.x86_64.rpm
    sha:a85a9737b2c3d54216fb8cc5bb17b7f1ee88634c
  • openssl-perl-1.1.1g-15.el8.4.tuxcare.els5.x86_64.rpm
    sha:da2bb923388b8d0c36624133cca3ec63f09cfbd1
  • openssl-static-1.1.1g-15.el8.4.tuxcare.els5.x86_64.rpm
    sha:e1c938355cb993a6672565ffe9c337b079fab6e2
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.