ELSA-2015-0066

ELSA-2015-0066 - openssl security update

Type:SECURITY
Impact:MODERATE
Release Date:2015-01-20

Description


[1.0.1e-34.7]
- fix CVE-2014-3570 - incorrect computation in BN_sqr()
- fix CVE-2014-3571 - possible crash in dtls1_get_record()
- fix CVE-2014-3572 - possible downgrade of ECDH ciphersuite to non-PFS state
- fix CVE-2014-8275 - various certificate fingerprint issues
- fix CVE-2015-0204 - remove support for RSA ephemeral keys for non-export
ciphersuites and on server
- fix CVE-2015-0205 - do not allow unauthenticated client DH certificate
- fix CVE-2015-0206 - possible memory leak when buffering DTLS records


Related CVEs


CVE-2014-3572
CVE-2015-0206
CVE-2015-0205
CVE-2014-3571
CVE-2014-3570
CVE-2014-8275
CVE-2015-0204

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 6 (i386) openssl-1.0.1e-30.el6_6.5.src.rpm91524fd8572558f3fc676a67baad835898da152124cc593276b8cd197a2ee20dELSA-2023-12326ol6_i386_latest_archive
openssl-1.0.1e-30.el6_6.5.src.rpm91524fd8572558f3fc676a67baad835898da152124cc593276b8cd197a2ee20dELSA-2023-12326ol6_u6_i386_patch
openssl-1.0.1e-30.el6_6.5.i686.rpm166cb94c892c104eaea088ae472dd27dad8e91c9f92a9d8a6a5450793064d93eELSA-2023-12326ol6_i386_latest_archive
openssl-1.0.1e-30.el6_6.5.i686.rpm166cb94c892c104eaea088ae472dd27dad8e91c9f92a9d8a6a5450793064d93eELSA-2023-12326ol6_u6_i386_patch
openssl-devel-1.0.1e-30.el6_6.5.i686.rpm0c567f8fcb94876d8cc2004a1d0bb4598fc7b83bf6397cc2c150f260ad1939e4ELSA-2023-12326ol6_i386_latest_archive
openssl-devel-1.0.1e-30.el6_6.5.i686.rpm0c567f8fcb94876d8cc2004a1d0bb4598fc7b83bf6397cc2c150f260ad1939e4ELSA-2023-12326ol6_u6_i386_patch
openssl-perl-1.0.1e-30.el6_6.5.i686.rpm1719b26e752fbbe76a3e9b0fab49107f7e9b423901ef37cd987f07f7c1d0a76cELSA-2023-12326ol6_i386_latest_archive
openssl-perl-1.0.1e-30.el6_6.5.i686.rpm1719b26e752fbbe76a3e9b0fab49107f7e9b423901ef37cd987f07f7c1d0a76cELSA-2023-12326ol6_u6_i386_patch
openssl-static-1.0.1e-30.el6_6.5.i686.rpm45a39dc1a1e7e1a031039d81849a10c53c7bf67d4d122a8835d8d8fac8b0691dELSA-2023-12326ol6_i386_latest_archive
openssl-static-1.0.1e-30.el6_6.5.i686.rpm45a39dc1a1e7e1a031039d81849a10c53c7bf67d4d122a8835d8d8fac8b0691dELSA-2023-12326ol6_u6_i386_patch
Oracle Linux 6 (x86_64) openssl-1.0.1e-30.el6_6.5.src.rpm91524fd8572558f3fc676a67baad835898da152124cc593276b8cd197a2ee20dELSA-2023-12326ol6_u6_x86_64_patch
openssl-1.0.1e-30.el6_6.5.src.rpm91524fd8572558f3fc676a67baad835898da152124cc593276b8cd197a2ee20dELSA-2023-12326ol6_x86_64_latest_archive
openssl-1.0.1e-30.el6_6.5.i686.rpm166cb94c892c104eaea088ae472dd27dad8e91c9f92a9d8a6a5450793064d93eELSA-2023-12326ol6_u6_x86_64_patch
openssl-1.0.1e-30.el6_6.5.i686.rpm166cb94c892c104eaea088ae472dd27dad8e91c9f92a9d8a6a5450793064d93eELSA-2023-12326ol6_x86_64_latest_archive
openssl-1.0.1e-30.el6_6.5.x86_64.rpm53d3814199daaddcb4eb724c6b0e6417d31618e05be6a921a5009c1c382ba5a3ELSA-2023-12326exadata_dbserver_12.1.2.1.1_x86_64_base
openssl-1.0.1e-30.el6_6.5.x86_64.rpm53d3814199daaddcb4eb724c6b0e6417d31618e05be6a921a5009c1c382ba5a3ELSA-2023-12326ol6_u6_x86_64_patch
openssl-1.0.1e-30.el6_6.5.x86_64.rpm53d3814199daaddcb4eb724c6b0e6417d31618e05be6a921a5009c1c382ba5a3ELSA-2023-12326ol6_x86_64_latest_archive
openssl-devel-1.0.1e-30.el6_6.5.i686.rpm0c567f8fcb94876d8cc2004a1d0bb4598fc7b83bf6397cc2c150f260ad1939e4ELSA-2023-12326ol6_u6_x86_64_patch
openssl-devel-1.0.1e-30.el6_6.5.i686.rpm0c567f8fcb94876d8cc2004a1d0bb4598fc7b83bf6397cc2c150f260ad1939e4ELSA-2023-12326ol6_x86_64_latest_archive
openssl-devel-1.0.1e-30.el6_6.5.x86_64.rpm69d935a0238e4fe840b40a7fd7d726d662782ff64851b7fa5697c575e3365280ELSA-2023-12326ol6_u6_x86_64_patch
openssl-devel-1.0.1e-30.el6_6.5.x86_64.rpm69d935a0238e4fe840b40a7fd7d726d662782ff64851b7fa5697c575e3365280ELSA-2023-12326ol6_x86_64_latest_archive
openssl-perl-1.0.1e-30.el6_6.5.x86_64.rpm22b9ec9ae9e3a41afea9b6ea3ff49491ed7ada9c64b1a87adade5d3e4d68daedELSA-2023-12326ol6_u6_x86_64_patch
openssl-perl-1.0.1e-30.el6_6.5.x86_64.rpm22b9ec9ae9e3a41afea9b6ea3ff49491ed7ada9c64b1a87adade5d3e4d68daedELSA-2023-12326ol6_x86_64_latest_archive
openssl-static-1.0.1e-30.el6_6.5.x86_64.rpm546ee781a83b06672b9998d4468e0a9454e1b8dd65baa563b3a5613849271a88ELSA-2023-12326ol6_u6_x86_64_patch
openssl-static-1.0.1e-30.el6_6.5.x86_64.rpm546ee781a83b06672b9998d4468e0a9454e1b8dd65baa563b3a5613849271a88ELSA-2023-12326ol6_x86_64_latest_archive
Oracle Linux 7 (x86_64) openssl-1.0.1e-34.el7_0.7.src.rpm10dbe2080dcf2c24aee441a49709955f289d1ee99c90666e51bce290dfda1317ELSA-2017-3518ol7_x86_64_latest_archive
openssl-1.0.1e-34.el7_0.7.src.rpm10dbe2080dcf2c24aee441a49709955f289d1ee99c90666e51bce290dfda1317ELSA-2017-3518ol7_x86_64_optional_archive
openssl-1.0.1e-34.el7_0.7.src.rpm10dbe2080dcf2c24aee441a49709955f289d1ee99c90666e51bce290dfda1317ELSA-2017-3518ol7_x86_64_u0_patch
openssl-1.0.1e-34.el7_0.7.x86_64.rpm07b189fda2964b71ac22f65d6c8b7c93bb6ff3c290cf631b3a2405085298696fELSA-2017-3518ol7_x86_64_latest_archive
openssl-1.0.1e-34.el7_0.7.x86_64.rpm07b189fda2964b71ac22f65d6c8b7c93bb6ff3c290cf631b3a2405085298696fELSA-2017-3518ol7_x86_64_u0_patch
openssl-devel-1.0.1e-34.el7_0.7.i686.rpmbf9edc025d7e52f64a21a4db70a9f9d1f197241d3fdbd382527305caa29c1d3cELSA-2017-3518ol7_x86_64_latest_archive
openssl-devel-1.0.1e-34.el7_0.7.i686.rpmbf9edc025d7e52f64a21a4db70a9f9d1f197241d3fdbd382527305caa29c1d3cELSA-2017-3518ol7_x86_64_u0_patch
openssl-devel-1.0.1e-34.el7_0.7.x86_64.rpm1fb878968e81459f90b7368184e71609aede8a1bd137b15b3b63ef1d2d90cffeELSA-2017-3518ol7_x86_64_latest_archive
openssl-devel-1.0.1e-34.el7_0.7.x86_64.rpm1fb878968e81459f90b7368184e71609aede8a1bd137b15b3b63ef1d2d90cffeELSA-2017-3518ol7_x86_64_u0_patch
openssl-libs-1.0.1e-34.el7_0.7.i686.rpm0f06a8cc87d2480990cac2e3557725f472c7127c32b978ffc1b7653a3f75d237ELSA-2017-3518ol7_x86_64_latest_archive
openssl-libs-1.0.1e-34.el7_0.7.i686.rpm0f06a8cc87d2480990cac2e3557725f472c7127c32b978ffc1b7653a3f75d237ELSA-2017-3518ol7_x86_64_u0_patch
openssl-libs-1.0.1e-34.el7_0.7.x86_64.rpm5b6ef945d7a1978f13e21612cb831c1f302ca4a4d9451a7da58d0d34fb3cfaa0ELSA-2017-3518ol7_x86_64_latest_archive
openssl-libs-1.0.1e-34.el7_0.7.x86_64.rpm5b6ef945d7a1978f13e21612cb831c1f302ca4a4d9451a7da58d0d34fb3cfaa0ELSA-2017-3518ol7_x86_64_u0_patch
openssl-perl-1.0.1e-34.el7_0.7.x86_64.rpm596ce58cc3856c4646e19f7698df8c34671281d2a84a9b9344a25ec3df71c312ELSA-2017-3518ol7_x86_64_optional_archive
openssl-static-1.0.1e-34.el7_0.7.i686.rpm6842ecb51af5ced6a145781a74196659b6b0a851cc45a740d615f06d13aa269cELSA-2017-3518ol7_x86_64_optional_archive
openssl-static-1.0.1e-34.el7_0.7.x86_64.rpm71bb04e6c424789bc832e40152b3c04a3536c1c0564dab03e538d53a6724cb5dELSA-2017-3518ol7_x86_64_optional_archive



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete