[CLSA-2023:1687282015] Fix CVE(s): CVE-2023-2650
Type:
security
Severity:
Important
Release date:
2023-06-20 17:27:00 UTC
Description:
* SECURITY UPDATE: Potential denial of service in OBJ_obj2txt translation - debian/patches/CVE-2023-2650.patch: Restrict size that OBJ_obj2txt() will translate to canonical numeric text form is added, based on RFC 2578 - CVE-2023-2650
Updated packages:
  • libssl-dev_1.0.2g-1ubuntu4.21+tuxcare.els7_amd64.deb
    sha:265a33699d4aec802e5bf1a60ff219719a7498f3
  • libssl-doc_1.0.2g-1ubuntu4.21+tuxcare.els7_all.deb
    sha:c18cc6e7f97928caeb6bc313422273e4aed1c829
  • libssl1.0.0_1.0.2g-1ubuntu4.21+tuxcare.els7_amd64.deb
    sha:7e31a1c3ad43a0a39fbc5793f4ec2143e5d6efe5
  • openssl_1.0.2g-1ubuntu4.21+tuxcare.els7_amd64.deb
    sha:7ec1f16b4988f8ce7982b16976220d9a68462903
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.