ELSA-2014-0015

ELSA-2014-0015 - openssl security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2014-01-08

Description


[1.0.1e-16.4]
- fix CVE-2013-4353 - Invalid TLS handshake crash

[1.0.1e-16.3]
- fix CVE-2013-6450 - possible MiTM attack on DTLS1

[1.0.1e-16.2]
- fix CVE-2013-6449 - crash when version in SSL structure is incorrect


Related CVEs


CVE-2013-4353
CVE-2013-6449
CVE-2013-6450

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) openssl-1.0.1e-16.el6_5.4.src.rpmb9f17b37c1fbc50138d7c30b573d2796ELSA-2021-9150
openssl-1.0.1e-16.el6_5.4.i686.rpm64bdf27e769cf291e56aa4e0b05a8d50ELSA-2021-9150
openssl-devel-1.0.1e-16.el6_5.4.i686.rpm24a583c87bed8fb51dfb194f283eccd1ELSA-2021-9150
openssl-perl-1.0.1e-16.el6_5.4.i686.rpm8a02ab6eb8e34fe03607ab1d1a5d314aELSA-2021-9150
openssl-static-1.0.1e-16.el6_5.4.i686.rpm48ce5c40ee1f16e74ac1c9eba10c2882ELSA-2021-9150
Oracle Linux 6 (x86_64) openssl-1.0.1e-16.el6_5.4.src.rpmb9f17b37c1fbc50138d7c30b573d2796ELSA-2021-9150
openssl-1.0.1e-16.el6_5.4.i686.rpm64bdf27e769cf291e56aa4e0b05a8d50ELSA-2021-9150
openssl-1.0.1e-16.el6_5.4.x86_64.rpm6dcb896f66857d5b431484cf7d4b61b9ELSA-2021-9150
openssl-devel-1.0.1e-16.el6_5.4.i686.rpm24a583c87bed8fb51dfb194f283eccd1ELSA-2021-9150
openssl-devel-1.0.1e-16.el6_5.4.x86_64.rpm8be8ebca86b22ba326cd3eb7baa52bbbELSA-2021-9150
openssl-perl-1.0.1e-16.el6_5.4.x86_64.rpm893a196719500e09d9ed170e32a3f991ELSA-2021-9150
openssl-static-1.0.1e-16.el6_5.4.x86_64.rpm8982bde47e9cec1420ed18dab87ef844ELSA-2021-9150



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete