ELSA-2013-0587

ELSA-2013-0587 - openssl security update

Type:SECURITY
Impact:MODERATE
Release Date:2013-03-04

Description


[1.0.0-27.2]
- fix for CVE-2013-0169 - SSL/TLS CBC timing attack (#907589)
- fix for CVE-2013-0166 - DoS in OCSP signatures checking (#908052)
- enable compression only if explicitly asked for or OPENSSL_DEFAULT_ZLIB
environment variable is set (fixes CVE-2012-4929 #857051)
- use __secure_getenv() everywhere instead of getenv() (#839735)


Related CVEs


CVE-2013-0166
CVE-2012-4929
CVE-2013-0169

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 5 (i386) openssl-0.9.8e-26.el5_9.1.src.rpm6b6bdb316915152ad9e4bc77dcf58571aeea52d40dc1738774451ecfce0ba6d5ELEA-2017-1391ol5_i386_latest
openssl-0.9.8e-26.el5_9.1.src.rpm6b6bdb316915152ad9e4bc77dcf58571aeea52d40dc1738774451ecfce0ba6d5ELEA-2017-1391ol5_u10_i386_base
openssl-0.9.8e-26.el5_9.1.src.rpm6b6bdb316915152ad9e4bc77dcf58571aeea52d40dc1738774451ecfce0ba6d5ELEA-2017-1391ol5_u9_i386_patch
openssl-0.9.8e-26.el5_9.1.i386.rpm4fb9c2fb695d2ba8eb1146636caf9d53bf9353176e88c33a0d5016a26ece6ba8ELEA-2017-1391ol5_i386_latest
openssl-0.9.8e-26.el5_9.1.i386.rpm4fb9c2fb695d2ba8eb1146636caf9d53bf9353176e88c33a0d5016a26ece6ba8ELEA-2017-1391ol5_u10_i386_base
openssl-0.9.8e-26.el5_9.1.i386.rpm4fb9c2fb695d2ba8eb1146636caf9d53bf9353176e88c33a0d5016a26ece6ba8ELEA-2017-1391ol5_u9_i386_patch
openssl-0.9.8e-26.el5_9.1.i686.rpm684d3237722b71e65a50b38b0c54b357b0c4fb523615a4f03d0e8ac33fa9207aELEA-2017-1391ol5_i386_latest
openssl-0.9.8e-26.el5_9.1.i686.rpm684d3237722b71e65a50b38b0c54b357b0c4fb523615a4f03d0e8ac33fa9207aELEA-2017-1391ol5_u10_i386_base
openssl-0.9.8e-26.el5_9.1.i686.rpm684d3237722b71e65a50b38b0c54b357b0c4fb523615a4f03d0e8ac33fa9207aELEA-2017-1391ol5_u9_i386_patch
openssl-devel-0.9.8e-26.el5_9.1.i386.rpm19ae689d6115bc681064342c5fd01e94ea40afbce4c750e105d6a4aa74bd896fELEA-2017-1391ol5_i386_latest
openssl-devel-0.9.8e-26.el5_9.1.i386.rpm19ae689d6115bc681064342c5fd01e94ea40afbce4c750e105d6a4aa74bd896fELEA-2017-1391ol5_u10_i386_base
openssl-devel-0.9.8e-26.el5_9.1.i386.rpm19ae689d6115bc681064342c5fd01e94ea40afbce4c750e105d6a4aa74bd896fELEA-2017-1391ol5_u9_i386_patch
openssl-perl-0.9.8e-26.el5_9.1.i386.rpm46a6136fe695f82c82a4b9ceb8195ab24c57cb971384bbc73be1730690853749ELEA-2017-1391ol5_i386_latest
openssl-perl-0.9.8e-26.el5_9.1.i386.rpm46a6136fe695f82c82a4b9ceb8195ab24c57cb971384bbc73be1730690853749ELEA-2017-1391ol5_u10_i386_base
openssl-perl-0.9.8e-26.el5_9.1.i386.rpm46a6136fe695f82c82a4b9ceb8195ab24c57cb971384bbc73be1730690853749ELEA-2017-1391ol5_u9_i386_patch
Oracle Linux 5 (ia64) openssl-0.9.8e-26.el5_9.1.src.rpm6b6bdb316915152ad9e4bc77dcf58571aeea52d40dc1738774451ecfce0ba6d5ELEA-2017-1391ol5_ia64_latest
openssl-0.9.8e-26.el5_9.1.src.rpm6b6bdb316915152ad9e4bc77dcf58571aeea52d40dc1738774451ecfce0ba6d5ELEA-2017-1391ol5_u10_ia64_base
openssl-0.9.8e-26.el5_9.1.src.rpm6b6bdb316915152ad9e4bc77dcf58571aeea52d40dc1738774451ecfce0ba6d5ELEA-2017-1391ol5_u9_ia64_patch
openssl-0.9.8e-26.el5_9.1.i686.rpm684d3237722b71e65a50b38b0c54b357b0c4fb523615a4f03d0e8ac33fa9207aELEA-2017-1391ol5_ia64_latest
openssl-0.9.8e-26.el5_9.1.i686.rpm684d3237722b71e65a50b38b0c54b357b0c4fb523615a4f03d0e8ac33fa9207aELEA-2017-1391ol5_u10_ia64_base
openssl-0.9.8e-26.el5_9.1.i686.rpm684d3237722b71e65a50b38b0c54b357b0c4fb523615a4f03d0e8ac33fa9207aELEA-2017-1391ol5_u9_ia64_patch
openssl-0.9.8e-26.el5_9.1.ia64.rpm590790f6be622f645bae4bc00f4ba635bcb670496743a69c1ccc26db28fd69b3ELEA-2017-1391ol5_ia64_latest
openssl-0.9.8e-26.el5_9.1.ia64.rpm590790f6be622f645bae4bc00f4ba635bcb670496743a69c1ccc26db28fd69b3ELEA-2017-1391ol5_u10_ia64_base
openssl-0.9.8e-26.el5_9.1.ia64.rpm590790f6be622f645bae4bc00f4ba635bcb670496743a69c1ccc26db28fd69b3ELEA-2017-1391ol5_u9_ia64_patch
openssl-devel-0.9.8e-26.el5_9.1.ia64.rpm9ef1e6ba9df15dc9250703e71050ae93b39473bfd334ca3e8d8ee83597f33904ELEA-2017-1391ol5_ia64_latest
openssl-devel-0.9.8e-26.el5_9.1.ia64.rpm9ef1e6ba9df15dc9250703e71050ae93b39473bfd334ca3e8d8ee83597f33904ELEA-2017-1391ol5_u10_ia64_base
openssl-devel-0.9.8e-26.el5_9.1.ia64.rpm9ef1e6ba9df15dc9250703e71050ae93b39473bfd334ca3e8d8ee83597f33904ELEA-2017-1391ol5_u9_ia64_patch
openssl-perl-0.9.8e-26.el5_9.1.ia64.rpm5a0042d11f3cbe600843ca592ad05e10166aa5f599d781a05ea98bda3b433360ELEA-2017-1391ol5_ia64_latest
openssl-perl-0.9.8e-26.el5_9.1.ia64.rpm5a0042d11f3cbe600843ca592ad05e10166aa5f599d781a05ea98bda3b433360ELEA-2017-1391ol5_u10_ia64_base
openssl-perl-0.9.8e-26.el5_9.1.ia64.rpm5a0042d11f3cbe600843ca592ad05e10166aa5f599d781a05ea98bda3b433360ELEA-2017-1391ol5_u9_ia64_patch
Oracle Linux 5 (x86_64) openssl-0.9.8e-26.el5_9.1.src.rpm6b6bdb316915152ad9e4bc77dcf58571aeea52d40dc1738774451ecfce0ba6d5ELEA-2017-1391ol5_u10_x86_64_base
openssl-0.9.8e-26.el5_9.1.src.rpm6b6bdb316915152ad9e4bc77dcf58571aeea52d40dc1738774451ecfce0ba6d5ELEA-2017-1391ol5_u9_x86_64_patch
openssl-0.9.8e-26.el5_9.1.src.rpm6b6bdb316915152ad9e4bc77dcf58571aeea52d40dc1738774451ecfce0ba6d5ELEA-2017-1391ol5_x86_64_latest
openssl-0.9.8e-26.el5_9.1.i686.rpm684d3237722b71e65a50b38b0c54b357b0c4fb523615a4f03d0e8ac33fa9207aELEA-2017-1391ol5_u10_x86_64_base
openssl-0.9.8e-26.el5_9.1.i686.rpm684d3237722b71e65a50b38b0c54b357b0c4fb523615a4f03d0e8ac33fa9207aELEA-2017-1391ol5_u9_x86_64_patch
openssl-0.9.8e-26.el5_9.1.i686.rpm684d3237722b71e65a50b38b0c54b357b0c4fb523615a4f03d0e8ac33fa9207aELEA-2017-1391ol5_x86_64_latest
openssl-0.9.8e-26.el5_9.1.x86_64.rpma4fbe4051eead65dc7ae31c58a89e825c1c17e1951ed6e36fd27a2e70f23c571ELEA-2017-1391exadata_dbserver_11.2.3.3.0_x86_64_base
openssl-0.9.8e-26.el5_9.1.x86_64.rpma4fbe4051eead65dc7ae31c58a89e825c1c17e1951ed6e36fd27a2e70f23c571ELEA-2017-1391exadata_dbserver_11.2_x86_64_latest
openssl-0.9.8e-26.el5_9.1.x86_64.rpma4fbe4051eead65dc7ae31c58a89e825c1c17e1951ed6e36fd27a2e70f23c571ELEA-2017-1391exadata_dbserver_12.1.1.1.0_x86_64_base
openssl-0.9.8e-26.el5_9.1.x86_64.rpma4fbe4051eead65dc7ae31c58a89e825c1c17e1951ed6e36fd27a2e70f23c571ELEA-2017-1391exadata_dbserver_12.1_x86_64_latest
openssl-0.9.8e-26.el5_9.1.x86_64.rpma4fbe4051eead65dc7ae31c58a89e825c1c17e1951ed6e36fd27a2e70f23c571ELEA-2017-1391ol5_u10_x86_64_base
openssl-0.9.8e-26.el5_9.1.x86_64.rpma4fbe4051eead65dc7ae31c58a89e825c1c17e1951ed6e36fd27a2e70f23c571ELEA-2017-1391ol5_u9_x86_64_patch
openssl-0.9.8e-26.el5_9.1.x86_64.rpma4fbe4051eead65dc7ae31c58a89e825c1c17e1951ed6e36fd27a2e70f23c571ELEA-2017-1391ol5_x86_64_latest
openssl-devel-0.9.8e-26.el5_9.1.i386.rpm19ae689d6115bc681064342c5fd01e94ea40afbce4c750e105d6a4aa74bd896fELEA-2017-1391ol5_u10_x86_64_base
openssl-devel-0.9.8e-26.el5_9.1.i386.rpm19ae689d6115bc681064342c5fd01e94ea40afbce4c750e105d6a4aa74bd896fELEA-2017-1391ol5_u9_x86_64_patch
openssl-devel-0.9.8e-26.el5_9.1.i386.rpm19ae689d6115bc681064342c5fd01e94ea40afbce4c750e105d6a4aa74bd896fELEA-2017-1391ol5_x86_64_latest
openssl-devel-0.9.8e-26.el5_9.1.x86_64.rpmf11f38cbeebee5ad10bf0840ec739901362534f7dc41d24a74e48776a1e7273eELEA-2017-1391ol5_u10_x86_64_base
openssl-devel-0.9.8e-26.el5_9.1.x86_64.rpmf11f38cbeebee5ad10bf0840ec739901362534f7dc41d24a74e48776a1e7273eELEA-2017-1391ol5_u9_x86_64_patch
openssl-devel-0.9.8e-26.el5_9.1.x86_64.rpmf11f38cbeebee5ad10bf0840ec739901362534f7dc41d24a74e48776a1e7273eELEA-2017-1391ol5_x86_64_latest
openssl-perl-0.9.8e-26.el5_9.1.x86_64.rpmc7867a0a5f013304cd2b39e35fafad643b747b7adc8c6c4a1044b4b1239e10d8ELEA-2017-1391ol5_u10_x86_64_base
openssl-perl-0.9.8e-26.el5_9.1.x86_64.rpmc7867a0a5f013304cd2b39e35fafad643b747b7adc8c6c4a1044b4b1239e10d8ELEA-2017-1391ol5_u9_x86_64_patch
openssl-perl-0.9.8e-26.el5_9.1.x86_64.rpmc7867a0a5f013304cd2b39e35fafad643b747b7adc8c6c4a1044b4b1239e10d8ELEA-2017-1391ol5_x86_64_latest
Oracle Linux 6 (i386) openssl-1.0.0-27.el6_4.2.src.rpm1d3e38883aa06be3353811bb4a154be2deac7bb0bae66d05077b5453e1eead69ELSA-2023-12326ol6_i386_latest_archive
openssl-1.0.0-27.el6_4.2.src.rpm1d3e38883aa06be3353811bb4a154be2deac7bb0bae66d05077b5453e1eead69ELSA-2023-12326ol6_u4_i386_patch
openssl-1.0.0-27.el6_4.2.i686.rpm1787ad202920f990ce4dcbea7de7e707eae7de65e271b225085ba80279b4080dELSA-2023-12326ol6_i386_latest_archive
openssl-1.0.0-27.el6_4.2.i686.rpm1787ad202920f990ce4dcbea7de7e707eae7de65e271b225085ba80279b4080dELSA-2023-12326ol6_u4_i386_patch
openssl-devel-1.0.0-27.el6_4.2.i686.rpm50ead5ebb3a7a96cf300d2fa4eabdbfd693589353accac99fffa1d1eeea84341ELSA-2023-12326ol6_i386_latest_archive
openssl-devel-1.0.0-27.el6_4.2.i686.rpm50ead5ebb3a7a96cf300d2fa4eabdbfd693589353accac99fffa1d1eeea84341ELSA-2023-12326ol6_u4_i386_patch
openssl-perl-1.0.0-27.el6_4.2.i686.rpmb9bd138152b64afa22ebe2362c0bd9e8006631959f1d49dfb247e11d4545d08bELSA-2023-12326ol6_i386_latest_archive
openssl-perl-1.0.0-27.el6_4.2.i686.rpmb9bd138152b64afa22ebe2362c0bd9e8006631959f1d49dfb247e11d4545d08bELSA-2023-12326ol6_u4_i386_patch
openssl-static-1.0.0-27.el6_4.2.i686.rpmaf42534fc022c80aad4486d12a083e9b74370ed3089c9a6652abb7f615c19ca0ELSA-2023-12326ol6_i386_latest_archive
openssl-static-1.0.0-27.el6_4.2.i686.rpmaf42534fc022c80aad4486d12a083e9b74370ed3089c9a6652abb7f615c19ca0ELSA-2023-12326ol6_u4_i386_patch
Oracle Linux 6 (x86_64) openssl-1.0.0-27.el6_4.2.src.rpm1d3e38883aa06be3353811bb4a154be2deac7bb0bae66d05077b5453e1eead69ELSA-2023-12326ol6_u4_x86_64_patch
openssl-1.0.0-27.el6_4.2.src.rpm1d3e38883aa06be3353811bb4a154be2deac7bb0bae66d05077b5453e1eead69ELSA-2023-12326ol6_x86_64_latest_archive
openssl-1.0.0-27.el6_4.2.i686.rpm1787ad202920f990ce4dcbea7de7e707eae7de65e271b225085ba80279b4080dELSA-2023-12326ol6_u4_x86_64_patch
openssl-1.0.0-27.el6_4.2.i686.rpm1787ad202920f990ce4dcbea7de7e707eae7de65e271b225085ba80279b4080dELSA-2023-12326ol6_x86_64_latest_archive
openssl-1.0.0-27.el6_4.2.x86_64.rpmaec78ff6a93b0a092cc253ff668735ae33aca293796facc4de1e5c5803a9e9c9ELSA-2023-12326ol6_u4_x86_64_patch
openssl-1.0.0-27.el6_4.2.x86_64.rpmaec78ff6a93b0a092cc253ff668735ae33aca293796facc4de1e5c5803a9e9c9ELSA-2023-12326ol6_x86_64_latest_archive
openssl-devel-1.0.0-27.el6_4.2.i686.rpm50ead5ebb3a7a96cf300d2fa4eabdbfd693589353accac99fffa1d1eeea84341ELSA-2023-12326ol6_u4_x86_64_patch
openssl-devel-1.0.0-27.el6_4.2.i686.rpm50ead5ebb3a7a96cf300d2fa4eabdbfd693589353accac99fffa1d1eeea84341ELSA-2023-12326ol6_x86_64_latest_archive
openssl-devel-1.0.0-27.el6_4.2.x86_64.rpm585d9c50c60fbfaf8cce22e0c7de0c76226917b4dd7a2e83e2ccf048d5487e25ELSA-2023-12326ol6_u4_x86_64_patch
openssl-devel-1.0.0-27.el6_4.2.x86_64.rpm585d9c50c60fbfaf8cce22e0c7de0c76226917b4dd7a2e83e2ccf048d5487e25ELSA-2023-12326ol6_x86_64_latest_archive
openssl-perl-1.0.0-27.el6_4.2.x86_64.rpma1d209d319ac08ad0a094ecc31287d366eb2d070607d4afad1d109d8275a6cd4ELSA-2023-12326ol6_u4_x86_64_patch
openssl-perl-1.0.0-27.el6_4.2.x86_64.rpma1d209d319ac08ad0a094ecc31287d366eb2d070607d4afad1d109d8275a6cd4ELSA-2023-12326ol6_x86_64_latest_archive
openssl-static-1.0.0-27.el6_4.2.x86_64.rpmb4436d92cff637474f99d5ecf2bd98af5a0c6cb4c8e01a740648edd272be09f1ELSA-2023-12326ol6_u4_x86_64_patch
openssl-static-1.0.0-27.el6_4.2.x86_64.rpmb4436d92cff637474f99d5ecf2bd98af5a0c6cb4c8e01a740648edd272be09f1ELSA-2023-12326ol6_x86_64_latest_archive



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete