ELEA-2015-0958

ELEA-2015-0958 - openssl enhancement update

Type:ENHANCEMENT
Severity:NA
Release Date:2015-05-12

Description


[0.9.8e-34.0.1]
- Backport openssl 08-Jan-2015 security fixes (John Haxby) [orabug 20409893]
- fix CVE-2014-3570 - Bignum squaring may produce incorrect results
- fix CVE-2014-3571 - DTLS segmentation fault in dtls1_get_record
- fix CVE-2014-3572 - ECDHE silently downgrades to ECDH [Client]

[0.9.8e-34]
- Rebase ca-bundle.crt to the upstream version 2.4 with legacy
modifications. For compatibility reasons, several CA certificates with
RSA sizes of 1024 bits are still included.
- Add a patch to the source RPM that documents the changes from the
upstream version.




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete