ELSA-2010-0166

ELSA-2010-0166 - gnutls security update

Type:SECURITY
Severity:MODERATE
Release Date:2010-03-25

Description



[1.4.1-3.8]
- fix safe renegotiation on SSL3 protocol

[1.4.1-3.7]
- implement safe renegotiation - CVE-2009-3555 (#533125)
- do not allow MD2 in certificate signatures by default - CVE-2009-2409
(#510197)


Related CVEs


CVE-2009-2409
CVE-2009-3555

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 5 (i386) gnutls-1.4.1-3.el5_4.8.src.rpm57511004da8503957dbd4e33497d5db9ELSA-2014-0594
gnutls-1.4.1-3.el5_4.8.i386.rpma949fa8633413a47fe2a08fe988a51ceELSA-2014-0594
gnutls-devel-1.4.1-3.el5_4.8.i386.rpm59e87f8c216b72d0b54a5b959ef495edELSA-2014-0594
gnutls-utils-1.4.1-3.el5_4.8.i386.rpm22e3e408df3079dfac452c2b0b59e55dELSA-2014-0594
Oracle Linux 5 (ia64) gnutls-1.4.1-3.el5_4.8.src.rpm57511004da8503957dbd4e33497d5db9ELSA-2014-0594
gnutls-1.4.1-3.el5_4.8.i386.rpma949fa8633413a47fe2a08fe988a51ceELSA-2014-0594
gnutls-1.4.1-3.el5_4.8.ia64.rpmb73257b8d59dc5c8775a221a8a5be45bELSA-2014-0594
gnutls-devel-1.4.1-3.el5_4.8.ia64.rpm1763f8f825dc112185089fd8fb517d04ELSA-2014-0594
gnutls-utils-1.4.1-3.el5_4.8.ia64.rpmf41193f1fa047b94cefb7c05b9159998ELSA-2014-0594
Oracle Linux 5 (x86_64) gnutls-1.4.1-3.el5_4.8.src.rpm57511004da8503957dbd4e33497d5db9ELSA-2014-0594
gnutls-1.4.1-3.el5_4.8.i386.rpma949fa8633413a47fe2a08fe988a51ceELSA-2014-0594
gnutls-1.4.1-3.el5_4.8.x86_64.rpm14670b568622ebf92ad3e57919997a45ELSA-2014-0594
gnutls-devel-1.4.1-3.el5_4.8.i386.rpm59e87f8c216b72d0b54a5b959ef495edELSA-2014-0594
gnutls-devel-1.4.1-3.el5_4.8.x86_64.rpmafcb1af3b78d84c510e10ce561d9bef8ELSA-2014-0594
gnutls-utils-1.4.1-3.el5_4.8.x86_64.rpmf3b95085a8d4d9c88e1aef34e19080bdELSA-2014-0594



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete