ELSA-2015-3010

ELSA-2015-3010 - openssl security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2015-02-26

Description


[0.9.8e-32.0.1]
- Backport openssl 08-Jan-2015 security fixes (John Haxby) [orabug 20409893]
- fix CVE-2014-3570 - Bignum squaring may produce incorrect results
- fix CVE-2014-3571 - DTLS segmentation fault in dtls1_get_record
- fix CVE-2014-3572 - ECDHE silently downgrades to ECDH [Client]
- fix CVE-2014-8275 - Certificate fingerprints can be modified
- fix CVE-2015-0204 - RSA silently downgrades to EXPORT_RSA [Client]


Related CVEs


CVE-2014-8275
CVE-2014-3571
CVE-2014-3570
CVE-2015-0204
CVE-2014-3572

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 5 (i386) openssl-0.9.8e-32.0.1.el5_11.src.rpm1227d80ec883d6ef8e6537e1ff1ffb8cbadd9e0597651cdb9750d71445e9378bELEA-2017-1391ol5_i386_latest
openssl-0.9.8e-32.0.1.el5_11.src.rpm1227d80ec883d6ef8e6537e1ff1ffb8cbadd9e0597651cdb9750d71445e9378bELEA-2017-1391ol5_u11_i386_patch
openssl-0.9.8e-32.0.1.el5_11.i386.rpmdd82adf2da9bdbcc2080a2c50c1d08e0d15174a6c10f90d5c133b82c5ead27a2ELEA-2017-1391ol5_i386_latest
openssl-0.9.8e-32.0.1.el5_11.i386.rpmdd82adf2da9bdbcc2080a2c50c1d08e0d15174a6c10f90d5c133b82c5ead27a2ELEA-2017-1391ol5_u11_i386_patch
openssl-0.9.8e-32.0.1.el5_11.i686.rpme541e68fd84cf9c005fd37ec3cce976ea2735c675ab22a3ad85526876b6d6b61ELEA-2017-1391ol5_i386_latest
openssl-0.9.8e-32.0.1.el5_11.i686.rpme541e68fd84cf9c005fd37ec3cce976ea2735c675ab22a3ad85526876b6d6b61ELEA-2017-1391ol5_u11_i386_patch
openssl-devel-0.9.8e-32.0.1.el5_11.i386.rpmb874f820e726063bf2897c71f63b7ee0b7ac9273343b7b3689b2b4b48b4ea911ELEA-2017-1391ol5_i386_latest
openssl-devel-0.9.8e-32.0.1.el5_11.i386.rpmb874f820e726063bf2897c71f63b7ee0b7ac9273343b7b3689b2b4b48b4ea911ELEA-2017-1391ol5_u11_i386_patch
openssl-perl-0.9.8e-32.0.1.el5_11.i386.rpmf5f52cf6af46daa957d623cf392c282db935201016b5db85469bf90657d8fcc8ELEA-2017-1391ol5_i386_latest
openssl-perl-0.9.8e-32.0.1.el5_11.i386.rpmf5f52cf6af46daa957d623cf392c282db935201016b5db85469bf90657d8fcc8ELEA-2017-1391ol5_u11_i386_patch
Oracle Linux 5 (ia64) openssl-0.9.8e-32.0.1.el5_11.src.rpm1227d80ec883d6ef8e6537e1ff1ffb8cbadd9e0597651cdb9750d71445e9378bELEA-2017-1391ol5_ia64_latest
openssl-0.9.8e-32.0.1.el5_11.src.rpm1227d80ec883d6ef8e6537e1ff1ffb8cbadd9e0597651cdb9750d71445e9378bELEA-2017-1391ol5_u11_ia64_patch
openssl-0.9.8e-32.0.1.el5_11.i686.rpme541e68fd84cf9c005fd37ec3cce976ea2735c675ab22a3ad85526876b6d6b61ELEA-2017-1391ol5_ia64_latest
openssl-0.9.8e-32.0.1.el5_11.i686.rpme541e68fd84cf9c005fd37ec3cce976ea2735c675ab22a3ad85526876b6d6b61ELEA-2017-1391ol5_u11_ia64_patch
openssl-0.9.8e-32.0.1.el5_11.ia64.rpm89e3687b8036b23b2eb8f437aaa382c1d8ce3569cd1b7821569b8a9921be4defELEA-2017-1391ol5_ia64_latest
openssl-0.9.8e-32.0.1.el5_11.ia64.rpm89e3687b8036b23b2eb8f437aaa382c1d8ce3569cd1b7821569b8a9921be4defELEA-2017-1391ol5_u11_ia64_patch
openssl-devel-0.9.8e-32.0.1.el5_11.ia64.rpm1f14eeeae24495d4ae02b86dc1272d5dcc6f364869e45b68745dff6f833a8316ELEA-2017-1391ol5_ia64_latest
openssl-devel-0.9.8e-32.0.1.el5_11.ia64.rpm1f14eeeae24495d4ae02b86dc1272d5dcc6f364869e45b68745dff6f833a8316ELEA-2017-1391ol5_u11_ia64_patch
openssl-perl-0.9.8e-32.0.1.el5_11.ia64.rpm35859f424717bc072a9e046b66916d11ae8dd213f25f1c6aa527e91c23395510ELEA-2017-1391ol5_ia64_latest
openssl-perl-0.9.8e-32.0.1.el5_11.ia64.rpm35859f424717bc072a9e046b66916d11ae8dd213f25f1c6aa527e91c23395510ELEA-2017-1391ol5_u11_ia64_patch
Oracle Linux 5 (x86_64) openssl-0.9.8e-32.0.1.el5_11.src.rpm1227d80ec883d6ef8e6537e1ff1ffb8cbadd9e0597651cdb9750d71445e9378bELEA-2017-1391ol5_u11_x86_64_patch
openssl-0.9.8e-32.0.1.el5_11.src.rpm1227d80ec883d6ef8e6537e1ff1ffb8cbadd9e0597651cdb9750d71445e9378bELEA-2017-1391ol5_x86_64_latest
openssl-0.9.8e-32.0.1.el5_11.i686.rpme541e68fd84cf9c005fd37ec3cce976ea2735c675ab22a3ad85526876b6d6b61ELEA-2017-1391ol5_u11_x86_64_patch
openssl-0.9.8e-32.0.1.el5_11.i686.rpme541e68fd84cf9c005fd37ec3cce976ea2735c675ab22a3ad85526876b6d6b61ELEA-2017-1391ol5_x86_64_latest
openssl-0.9.8e-32.0.1.el5_11.x86_64.rpm7b223713490235a23e4f8efa0d1d564a2a0adb071d993f5cf65fa93033a1ff00ELEA-2017-1391exadata_dbserver_12.1.1.1.2_x86_64_base
openssl-0.9.8e-32.0.1.el5_11.x86_64.rpm7b223713490235a23e4f8efa0d1d564a2a0adb071d993f5cf65fa93033a1ff00ELEA-2017-1391ol5_u11_x86_64_patch
openssl-0.9.8e-32.0.1.el5_11.x86_64.rpm7b223713490235a23e4f8efa0d1d564a2a0adb071d993f5cf65fa93033a1ff00ELEA-2017-1391ol5_x86_64_latest
openssl-devel-0.9.8e-32.0.1.el5_11.i386.rpmb874f820e726063bf2897c71f63b7ee0b7ac9273343b7b3689b2b4b48b4ea911ELEA-2017-1391ol5_u11_x86_64_patch
openssl-devel-0.9.8e-32.0.1.el5_11.i386.rpmb874f820e726063bf2897c71f63b7ee0b7ac9273343b7b3689b2b4b48b4ea911ELEA-2017-1391ol5_x86_64_latest
openssl-devel-0.9.8e-32.0.1.el5_11.x86_64.rpm402f496cf6fde2277f716eabd172e5331e93b232c85a5cd77302924886ee1cc4ELEA-2017-1391ol5_u11_x86_64_patch
openssl-devel-0.9.8e-32.0.1.el5_11.x86_64.rpm402f496cf6fde2277f716eabd172e5331e93b232c85a5cd77302924886ee1cc4ELEA-2017-1391ol5_x86_64_latest
openssl-perl-0.9.8e-32.0.1.el5_11.x86_64.rpm8729cd93594acf79cdf89a3416e510484dafbbaa2d71fb1751a63755a74bdc56ELEA-2017-1391ol5_u11_x86_64_patch
openssl-perl-0.9.8e-32.0.1.el5_11.x86_64.rpm8729cd93594acf79cdf89a3416e510484dafbbaa2d71fb1751a63755a74bdc56ELEA-2017-1391ol5_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete