[CLSA-2025:1760023124] openssl: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2025-10-09 15:18:48 UTC
Description:
- CVE-2019-1547: fix side-channel vulnerability in ECDSA when using explicit EC parameters without cofactor - CVE-2025-9230: fix incorrect check of unwrapped key size
Updated packages:
  • openssl-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:cec2ae28670c8a47e810b9fc2015ce54b4b782a598009e1eec82bbd3097cdb7f
  • openssl-devel-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm
    sha:b4fa75d20745d311fd4f101311360c1ad3821de12be6899ec0b9d5ca89332a76
  • openssl-devel-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:9ef7c5f18497c547c333cd03aac4dc251c87e209f895648e0c9c3115a98b00e4
  • openssl-libs-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm
    sha:22a14141b3afb5f3a7c6eaa18276868c715dcd70ceb2dcdde83571c330884c2b
  • openssl-libs-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:74ed13859b102f7207790de30c7267dbdd96f5b8d09ea0c2194854d66c1cc52e
  • openssl-perl-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:4375a49c195589f0776b4874a82b8bae4cf2c3372340bf14f8a50d50b276774e
  • openssl-static-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm
    sha:33ad539cae681fe23b9e65fad69993ea6193d4c94090beab7514a8c4baa5250a
  • openssl-static-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:adf0171533f5fa9339c08306a25a60148b601ff7c23f5821baa1c11d4eb83b9d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.