ELSA-2014-1653

ELSA-2014-1653 - openssl security update

Type:SECURITY
Severity:MODERATE
Release Date:2014-10-16

Description


[0.9.8e-31]
- add support for fallback SCSV to partially mitigate CVE-2014-3566
(padding attack on SSL3)

[0.9.8e-30]
- fix CVE-2014-0221 - recursion in DTLS code leading to DoS
- fix CVE-2014-3505 - doublefree in DTLS packet processing
- fix CVE-2014-3506 - avoid memory exhaustion in DTLS
- fix CVE-2014-3508 - fix OID handling to avoid information leak
- fix CVE-2014-3510 - fix DoS in anonymous (EC)DH handling in DTLS

[0.9.8e-29]
- fix for CVE-2014-0224 - SSL/TLS MITM vulnerability

[0.9.8e-28]
- replace expired GlobalSign Root CA certificate in ca-bundle.crt


Related CVEs



Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 5 (i386) openssl-0.9.8e-31.el5_11.src.rpm2fd5571dd65ec5bc009804846244d3d8ELEA-2017-1391
openssl-0.9.8e-31.el5_11.i386.rpm71a8071f5d162e576e9264f03426b9c3ELEA-2017-1391
openssl-0.9.8e-31.el5_11.i686.rpm72edfaf9d0a63546f535738e1117d4d8ELEA-2017-1391
openssl-devel-0.9.8e-31.el5_11.i386.rpm24159859445a78dda8043ccf027386acELEA-2017-1391
openssl-perl-0.9.8e-31.el5_11.i386.rpme8e464474b4c7e8d853856bcb9d1a0dcELEA-2017-1391
Oracle Linux 5 (ia64) openssl-0.9.8e-31.el5_11.src.rpm2fd5571dd65ec5bc009804846244d3d8ELEA-2017-1391
openssl-0.9.8e-31.el5_11.i686.rpm72edfaf9d0a63546f535738e1117d4d8ELEA-2017-1391
openssl-0.9.8e-31.el5_11.ia64.rpmd70ae9e29c2723f0ad248863b5e8752bELEA-2017-1391
openssl-devel-0.9.8e-31.el5_11.ia64.rpmc7dcbecd3fbefa85a0edd945e932d57bELEA-2017-1391
openssl-perl-0.9.8e-31.el5_11.ia64.rpmb2fa01c3334920d76524360a839e3176ELEA-2017-1391
Oracle Linux 5 (x86_64) openssl-0.9.8e-31.el5_11.src.rpm2fd5571dd65ec5bc009804846244d3d8ELEA-2017-1391
openssl-0.9.8e-31.el5_11.i686.rpm72edfaf9d0a63546f535738e1117d4d8ELEA-2017-1391
openssl-0.9.8e-31.el5_11.x86_64.rpm38451584fab655c73bb1e9c6ee760050ELEA-2017-1391
openssl-devel-0.9.8e-31.el5_11.i386.rpm24159859445a78dda8043ccf027386acELEA-2017-1391
openssl-devel-0.9.8e-31.el5_11.x86_64.rpm990575b3d402453878bea2cc803e6c2bELEA-2017-1391
openssl-perl-0.9.8e-31.el5_11.x86_64.rpmb99036210d1006f1b2e824e022070107ELEA-2017-1391



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete