ELSA-2006-0695

ELSA-2006-0695 - Important openssl security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2006-11-30

Description


[0.9.7a-43.14]
- fix CVE-2006-2937 - mishandled error on ASN.1 parsing (#207276)
- fix CVE-2006-2940 - parasitic public keys DoS (#207274)
- fix CVE-2006-3738 - buffer overflow in SSL_get_shared_ciphers (#206940)
- fix CVE-2006-4343 - sslv2 client DoS (#206940)

[0.9.7a-43.11]
- fix CVE-2006-4339 - prevent attack on PKCS#1 v1.5 signatures (#205180)
- don't overwrite customized ca-bundle.pem on upgrade (#175811)


Related CVEs


CVE-2006-2940
CVE-2006-2937
CVE-2006-3738
CVE-2006-4343

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 3 (i386) openssl-0.9.7a-33.21.src.rpm9959a961caac554a0d5884eb100daec45ba43b9926983bd2d6311d9f90e07e35ELSA-2010-0163el3_i386_latest
openssl-0.9.7a-33.21.src.rpm9959a961caac554a0d5884eb100daec45ba43b9926983bd2d6311d9f90e07e35ELSA-2010-0163el3_u8_i386_patch
openssl096b-0.9.6b-16.46.src.rpmc63509921fcac835d09825cd81ddb61b16769dca74678a211bacd872bbd7248eELSA-2010-0173el3_i386_latest
openssl096b-0.9.6b-16.46.src.rpmc63509921fcac835d09825cd81ddb61b16769dca74678a211bacd872bbd7248eELSA-2010-0173el3_u8_i386_patch
openssl096b-0.9.6b-16.46.src.rpmc63509921fcac835d09825cd81ddb61b16769dca74678a211bacd872bbd7248eELSA-2010-0173el3_u9_i386_base
openssl-0.9.7a-33.21.i386.rpmb7bdbf276c55f2eca0166d72b26c862806f67f422c0cffe23c421d89e0218eb5ELSA-2010-0163el3_i386_latest
openssl-0.9.7a-33.21.i386.rpmb7bdbf276c55f2eca0166d72b26c862806f67f422c0cffe23c421d89e0218eb5ELSA-2010-0163el3_u8_i386_patch
openssl-0.9.7a-33.21.i686.rpm507f29c3927f03202da4d924e3d55baf7135eb7d803fbb2dad8b9b6ef9729779ELSA-2010-0163el3_i386_latest
openssl-0.9.7a-33.21.i686.rpm507f29c3927f03202da4d924e3d55baf7135eb7d803fbb2dad8b9b6ef9729779ELSA-2010-0163el3_u8_i386_patch
openssl-devel-0.9.7a-33.21.i386.rpm74125aa4962311e9e6361f137f59d093c2631827c6c8665154df9edc6f89dd88ELSA-2010-0163el3_i386_latest
openssl-devel-0.9.7a-33.21.i386.rpm74125aa4962311e9e6361f137f59d093c2631827c6c8665154df9edc6f89dd88ELSA-2010-0163el3_u8_i386_patch
openssl-perl-0.9.7a-33.21.i386.rpm36009ceb56e985c5c7d8d063c142d79737024f7797fb718ea86f227517d69ae3ELSA-2010-0163el3_i386_latest
openssl-perl-0.9.7a-33.21.i386.rpm36009ceb56e985c5c7d8d063c142d79737024f7797fb718ea86f227517d69ae3ELSA-2010-0163el3_u8_i386_patch
openssl096b-0.9.6b-16.46.i386.rpmd5edc71438ad0ac57dd5e7cfb49afc2826b6a280aac1997b22d49fecd7c551b8ELSA-2010-0173el3_i386_latest
openssl096b-0.9.6b-16.46.i386.rpmd5edc71438ad0ac57dd5e7cfb49afc2826b6a280aac1997b22d49fecd7c551b8ELSA-2010-0173el3_u8_i386_patch
openssl096b-0.9.6b-16.46.i386.rpmd5edc71438ad0ac57dd5e7cfb49afc2826b6a280aac1997b22d49fecd7c551b8ELSA-2010-0173el3_u9_i386_base
Oracle Linux 3 (x86_64) openssl-0.9.7a-33.21.src.rpm9959a961caac554a0d5884eb100daec45ba43b9926983bd2d6311d9f90e07e35ELSA-2010-0163el3_u8_x86_64_patch
openssl-0.9.7a-33.21.src.rpm9959a961caac554a0d5884eb100daec45ba43b9926983bd2d6311d9f90e07e35ELSA-2010-0163el3_x86_64_latest
openssl096b-0.9.6b-16.46.src.rpmc63509921fcac835d09825cd81ddb61b16769dca74678a211bacd872bbd7248eELSA-2010-0173el3_u8_x86_64_patch
openssl096b-0.9.6b-16.46.src.rpmc63509921fcac835d09825cd81ddb61b16769dca74678a211bacd872bbd7248eELSA-2010-0173el3_u9_x86_64_base
openssl096b-0.9.6b-16.46.src.rpmc63509921fcac835d09825cd81ddb61b16769dca74678a211bacd872bbd7248eELSA-2010-0173el3_x86_64_latest
openssl-0.9.7a-33.21.i686.rpm507f29c3927f03202da4d924e3d55baf7135eb7d803fbb2dad8b9b6ef9729779ELSA-2010-0163el3_u8_x86_64_patch
openssl-0.9.7a-33.21.i686.rpm507f29c3927f03202da4d924e3d55baf7135eb7d803fbb2dad8b9b6ef9729779ELSA-2010-0163el3_x86_64_latest
openssl-0.9.7a-33.21.x86_64.rpmd78891089ebc472a617864732ddbd6f134643fb4e9d3ed3f0daa13ae7790d6dcELSA-2010-0163el3_u8_x86_64_patch
openssl-0.9.7a-33.21.x86_64.rpmd78891089ebc472a617864732ddbd6f134643fb4e9d3ed3f0daa13ae7790d6dcELSA-2010-0163el3_x86_64_latest
openssl-devel-0.9.7a-33.21.x86_64.rpm869062ef1f862d1493b61c5c2d6399e41e34618c509c362c3faa25da01bc4a9bELSA-2010-0163el3_u8_x86_64_patch
openssl-devel-0.9.7a-33.21.x86_64.rpm869062ef1f862d1493b61c5c2d6399e41e34618c509c362c3faa25da01bc4a9bELSA-2010-0163el3_x86_64_latest
openssl-perl-0.9.7a-33.21.x86_64.rpm3b16efe9465435a9fd016b010139c1836abd89ae9d3f71c89da4cd505d6b4f5dELSA-2010-0163el3_u8_x86_64_patch
openssl-perl-0.9.7a-33.21.x86_64.rpm3b16efe9465435a9fd016b010139c1836abd89ae9d3f71c89da4cd505d6b4f5dELSA-2010-0163el3_x86_64_latest
openssl096b-0.9.6b-16.46.i386.rpmd5edc71438ad0ac57dd5e7cfb49afc2826b6a280aac1997b22d49fecd7c551b8ELSA-2010-0173el3_u8_x86_64_patch
openssl096b-0.9.6b-16.46.i386.rpmd5edc71438ad0ac57dd5e7cfb49afc2826b6a280aac1997b22d49fecd7c551b8ELSA-2010-0173el3_u9_x86_64_base
openssl096b-0.9.6b-16.46.i386.rpmd5edc71438ad0ac57dd5e7cfb49afc2826b6a280aac1997b22d49fecd7c551b8ELSA-2010-0173el3_x86_64_latest
openssl096b-0.9.6b-16.46.x86_64.rpm4acc548381b1d8ccbfb0cbc42d9682c02f387421afd03cde74367790c2e44c3dELSA-2010-0173el3_u8_x86_64_patch
openssl096b-0.9.6b-16.46.x86_64.rpm4acc548381b1d8ccbfb0cbc42d9682c02f387421afd03cde74367790c2e44c3dELSA-2010-0173el3_u9_x86_64_base
openssl096b-0.9.6b-16.46.x86_64.rpm4acc548381b1d8ccbfb0cbc42d9682c02f387421afd03cde74367790c2e44c3dELSA-2010-0173el3_x86_64_latest
Oracle Linux 4 (i386) openssl-0.9.7a-43.14.src.rpmce7d2617df3dc887ae8dec5d4ac4be3feb3a6ffa6306bfe990a672ead3f2e283ELSA-2012-0086el4_i386_latest
openssl-0.9.7a-43.14.src.rpmce7d2617df3dc887ae8dec5d4ac4be3feb3a6ffa6306bfe990a672ead3f2e283ELSA-2012-0086el4_u4_i386_patch
openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_i386_latest
openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_u4_i386_patch
openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_u5_i386_base
openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_u6_i386_base
openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_u7_i386_base
openssl-0.9.7a-43.14.i386.rpm4c3e30436c910f5ff1ef880890df91454beadbadc7b7d0371ff4a07e84c424afELSA-2012-0086el4_i386_latest
openssl-0.9.7a-43.14.i386.rpm4c3e30436c910f5ff1ef880890df91454beadbadc7b7d0371ff4a07e84c424afELSA-2012-0086el4_u4_i386_patch
openssl-0.9.7a-43.14.i686.rpm5051b8bb646304413945eefdccf58eeb080b9bfb11db6038cfc27bafb18ae349ELSA-2012-0086el4_i386_latest
openssl-0.9.7a-43.14.i686.rpm5051b8bb646304413945eefdccf58eeb080b9bfb11db6038cfc27bafb18ae349ELSA-2012-0086el4_u4_i386_patch
openssl-devel-0.9.7a-43.14.i386.rpmd7fa97e155fd14b0cbafbcf3add6db100babd1cb5d4bf80964a78b0d7afa64ecELSA-2012-0086el4_i386_latest
openssl-devel-0.9.7a-43.14.i386.rpmd7fa97e155fd14b0cbafbcf3add6db100babd1cb5d4bf80964a78b0d7afa64ecELSA-2012-0086el4_u4_i386_patch
openssl-perl-0.9.7a-43.14.i386.rpm0a1023ef96f337a23b36890f94636d2b8e5d9e80a49e491ecfe77dd903ae74d5ELSA-2012-0086el4_i386_latest
openssl-perl-0.9.7a-43.14.i386.rpm0a1023ef96f337a23b36890f94636d2b8e5d9e80a49e491ecfe77dd903ae74d5ELSA-2012-0086el4_u4_i386_patch
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_i386_latest
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u4_i386_patch
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u5_i386_base
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u6_i386_base
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u7_i386_base
Oracle Linux 4 (ia64) openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_ia64_latest
openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_u6_ia64_base
openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_u7_ia64_base
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_ia64_latest
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u6_ia64_base
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u7_ia64_base
openssl096b-0.9.6b-22.46.ia64.rpmf2b956076ada35ca50a070ab570e31a9a341b2600b99a158870d53bbc3cc0a29ELSA-2010-0173el4_ia64_latest
openssl096b-0.9.6b-22.46.ia64.rpmf2b956076ada35ca50a070ab570e31a9a341b2600b99a158870d53bbc3cc0a29ELSA-2010-0173el4_u6_ia64_base
openssl096b-0.9.6b-22.46.ia64.rpmf2b956076ada35ca50a070ab570e31a9a341b2600b99a158870d53bbc3cc0a29ELSA-2010-0173el4_u7_ia64_base
Oracle Linux 4 (x86_64) openssl-0.9.7a-43.14.src.rpmb14587ab5cf21e21b7c7b1451e3ce73307c8112e0ef7744b6d5968b7b3749233ELSA-2012-0086el4_u4_x86_64_patch
openssl-0.9.7a-43.14.src.rpmb14587ab5cf21e21b7c7b1451e3ce73307c8112e0ef7744b6d5968b7b3749233ELSA-2012-0086el4_x86_64_latest
openssl096b-0.9.6b-22.46.src.rpmbf06b69304f4b9ddf6bc73657722a91238cac0139de5006da72703ce1d4c65fbELSA-2010-0173el4_u4_x86_64_patch
openssl096b-0.9.6b-22.46.src.rpmbf06b69304f4b9ddf6bc73657722a91238cac0139de5006da72703ce1d4c65fbELSA-2010-0173el4_u7_x86_64_base
openssl096b-0.9.6b-22.46.src.rpmbf06b69304f4b9ddf6bc73657722a91238cac0139de5006da72703ce1d4c65fbELSA-2010-0173el4_x86_64_latest
openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_u5_x86_64_base
openssl096b-0.9.6b-22.46.src.rpmc701f80a16503678dabcbfdcc60194b1db7cd648891bf22123a911bfc9b949d2ELSA-2010-0173el4_u6_x86_64_base
openssl-0.9.7a-43.14.i686.rpm5051b8bb646304413945eefdccf58eeb080b9bfb11db6038cfc27bafb18ae349ELSA-2012-0086el4_u4_x86_64_patch
openssl-0.9.7a-43.14.i686.rpm5051b8bb646304413945eefdccf58eeb080b9bfb11db6038cfc27bafb18ae349ELSA-2012-0086el4_x86_64_latest
openssl-0.9.7a-43.14.x86_64.rpmb083c37d36dfe1a216641e120e6f2a244aa3379dfe677a7439eda07ffd8c9876ELSA-2012-0086el4_u4_x86_64_patch
openssl-0.9.7a-43.14.x86_64.rpmb083c37d36dfe1a216641e120e6f2a244aa3379dfe677a7439eda07ffd8c9876ELSA-2012-0086el4_x86_64_latest
openssl-devel-0.9.7a-43.14.x86_64.rpmfa94e5f765a85379245162edf27888cefffc62201d7e28a7cf180ecc8e4678a3ELSA-2012-0086el4_u4_x86_64_patch
openssl-devel-0.9.7a-43.14.x86_64.rpmfa94e5f765a85379245162edf27888cefffc62201d7e28a7cf180ecc8e4678a3ELSA-2012-0086el4_x86_64_latest
openssl-perl-0.9.7a-43.14.x86_64.rpm9b4ac62c073ad026625b133364e09e291a3316df990db12372b2b67ae565c233ELSA-2012-0086el4_u4_x86_64_patch
openssl-perl-0.9.7a-43.14.x86_64.rpm9b4ac62c073ad026625b133364e09e291a3316df990db12372b2b67ae565c233ELSA-2012-0086el4_x86_64_latest
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u4_x86_64_patch
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u5_x86_64_base
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u6_x86_64_base
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_u7_x86_64_base
openssl096b-0.9.6b-22.46.i386.rpmf6d39a3015a0458a9b3214104661f6929fc67d65e0190df7061280f3623b432bELSA-2010-0173el4_x86_64_latest
openssl096b-0.9.6b-22.46.x86_64.rpm3f876769a3a684885e317c5f104013680dd29308b58103966c6bc0fdca460aa6ELSA-2010-0173el4_u4_x86_64_patch
openssl096b-0.9.6b-22.46.x86_64.rpm3f876769a3a684885e317c5f104013680dd29308b58103966c6bc0fdca460aa6ELSA-2010-0173el4_u5_x86_64_base
openssl096b-0.9.6b-22.46.x86_64.rpm3f876769a3a684885e317c5f104013680dd29308b58103966c6bc0fdca460aa6ELSA-2010-0173el4_u6_x86_64_base
openssl096b-0.9.6b-22.46.x86_64.rpm3f876769a3a684885e317c5f104013680dd29308b58103966c6bc0fdca460aa6ELSA-2010-0173el4_u7_x86_64_base
openssl096b-0.9.6b-22.46.x86_64.rpm3f876769a3a684885e317c5f104013680dd29308b58103966c6bc0fdca460aa6ELSA-2010-0173el4_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete