[CLSA-2025:1760023353] openssl: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2025-10-09 15:22:43 UTC
Description:
- CVE-2019-1547: fix side-channel vulnerability in ECDSA when using explicit EC parameters without cofactor - CVE-2025-9230: fix incorrect check of unwrapped key size
Updated packages:
  • openssl-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:542629467e6b742f0578e8f59a98b80d814df3a1348dbb95973ccb09ce7d2217
  • openssl-devel-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm
    sha:8f770d47ab0d72ed4afc559b081185d9d2ca6afd3dfe470f9b98f7bb074f6d9b
  • openssl-devel-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:8655b28c9f364f24d449b8e48e97f8df56de93da3a6953b3f2d6f6a64bd5ea7f
  • openssl-libs-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm
    sha:f46ac0017bc347e1d97a9179e8ba4f9146b0da7bccc9295f20bc09ebd6f72bee
  • openssl-libs-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:4f4a7405877d2de393e8ea65fc906a0f076f4ad7f6a5108f5d271dbf802e24e4
  • openssl-perl-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:9f1baff20120f39a670fa055942e081db87fe76d7b0d2641a2c78e6da851346e
  • openssl-static-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm
    sha:6532d1c8c989d1994d9409936405d03b0134f43ff25953058daba9fdb1aadc0e
  • openssl-static-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:6836ba60646e999c119db8a848c6d76b71695aec75f066f202446fffd6965e39
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.