ELSA-2022-5818

ELSA-2022-5818 - openssl security update

Type:SECURITY
Impact:MODERATE
Release Date:2022-08-02

Description


[1:1.1.1k-7]
- Fix CVE-2022-2097: AES OCB fails to encrypt some bytes on 32-bit x86
Resolves: CVE-2022-2097
- Update expired certificates used in the testsuite
Resolves: rhbz#2100554
- Fix CVE-2022-1292: openssl: c_rehash script allows command injection
Resolves: rhbz#2090371
- Fix CVE-2022-2068: the c_rehash script allows command injection
Resolves: rhbz#2098278


Related CVEs


CVE-2022-2097
CVE-2022-1292
CVE-2022-2068

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) openssl-1.1.1k-7.el8_6.src.rpmf379eaf117d4d96dc25d97f921fdd2121ca5024d66ca65f4a4f83998b6e60490-ol8_aarch64_baseos_latest
openssl-1.1.1k-7.el8_6.src.rpmf379eaf117d4d96dc25d97f921fdd2121ca5024d66ca65f4a4f83998b6e60490-ol8_aarch64_u6_baseos_patch
openssl-1.1.1k-7.el8_6.src.rpmf379eaf117d4d96dc25d97f921fdd2121ca5024d66ca65f4a4f83998b6e60490-ol8_aarch64_u7_baseos_base
openssl-1.1.1k-7.el8_6.aarch64.rpm00772077b1d141f751bd3035d888852c351af2e48caddd6bd3aa455acaa562e4ELSA-2017-3518ol8_aarch64_baseos_latest
openssl-1.1.1k-7.el8_6.aarch64.rpm00772077b1d141f751bd3035d888852c351af2e48caddd6bd3aa455acaa562e4ELSA-2017-3518ol8_aarch64_u6_baseos_patch
openssl-1.1.1k-7.el8_6.aarch64.rpm00772077b1d141f751bd3035d888852c351af2e48caddd6bd3aa455acaa562e4ELSA-2017-3518ol8_aarch64_u7_baseos_base
openssl-devel-1.1.1k-7.el8_6.aarch64.rpmc8080a58e544459dfd055d2bd225cd88b24b173450b7a45252676246392a66b4-ol8_aarch64_baseos_latest
openssl-devel-1.1.1k-7.el8_6.aarch64.rpmc8080a58e544459dfd055d2bd225cd88b24b173450b7a45252676246392a66b4-ol8_aarch64_u6_baseos_patch
openssl-devel-1.1.1k-7.el8_6.aarch64.rpmc8080a58e544459dfd055d2bd225cd88b24b173450b7a45252676246392a66b4-ol8_aarch64_u7_baseos_base
openssl-libs-1.1.1k-7.el8_6.aarch64.rpm6c4d96883afc9815e0844716f449eebdddf5555ea908ad547a26dc4f762bc9abELSA-2017-3518ol8_aarch64_baseos_latest
openssl-libs-1.1.1k-7.el8_6.aarch64.rpm6c4d96883afc9815e0844716f449eebdddf5555ea908ad547a26dc4f762bc9abELSA-2017-3518ol8_aarch64_u6_baseos_patch
openssl-libs-1.1.1k-7.el8_6.aarch64.rpm6c4d96883afc9815e0844716f449eebdddf5555ea908ad547a26dc4f762bc9abELSA-2017-3518ol8_aarch64_u7_baseos_base
openssl-perl-1.1.1k-7.el8_6.aarch64.rpmfe6c48b329fc2c0c725c101558cd23e19abcb4e96989822586fce62b6144c0e0-ol8_aarch64_baseos_latest
openssl-perl-1.1.1k-7.el8_6.aarch64.rpmfe6c48b329fc2c0c725c101558cd23e19abcb4e96989822586fce62b6144c0e0-ol8_aarch64_u6_baseos_patch
openssl-perl-1.1.1k-7.el8_6.aarch64.rpmfe6c48b329fc2c0c725c101558cd23e19abcb4e96989822586fce62b6144c0e0-ol8_aarch64_u7_baseos_base
Oracle Linux 8 (x86_64) openssl-1.1.1k-7.el8_6.src.rpmf379eaf117d4d96dc25d97f921fdd2121ca5024d66ca65f4a4f83998b6e60490-ol8_x86_64_baseos_latest
openssl-1.1.1k-7.el8_6.src.rpmf379eaf117d4d96dc25d97f921fdd2121ca5024d66ca65f4a4f83998b6e60490-ol8_x86_64_u6_baseos_patch
openssl-1.1.1k-7.el8_6.src.rpmf379eaf117d4d96dc25d97f921fdd2121ca5024d66ca65f4a4f83998b6e60490-ol8_x86_64_u7_baseos_base
openssl-1.1.1k-7.el8_6.x86_64.rpmee56228bd7752e21e3ee17c354491abb3e49ab01b4c2792a7d805c44010f425aELSA-2017-3518exadata_dbserver_23.1.0.0.0_x86_64_base
openssl-1.1.1k-7.el8_6.x86_64.rpmee56228bd7752e21e3ee17c354491abb3e49ab01b4c2792a7d805c44010f425aELSA-2017-3518exadata_dbserver_23.1.1.0.0_x86_64_base
openssl-1.1.1k-7.el8_6.x86_64.rpmee56228bd7752e21e3ee17c354491abb3e49ab01b4c2792a7d805c44010f425aELSA-2017-3518ol8_x86_64_baseos_latest
openssl-1.1.1k-7.el8_6.x86_64.rpmee56228bd7752e21e3ee17c354491abb3e49ab01b4c2792a7d805c44010f425aELSA-2017-3518ol8_x86_64_u6_baseos_patch
openssl-1.1.1k-7.el8_6.x86_64.rpmee56228bd7752e21e3ee17c354491abb3e49ab01b4c2792a7d805c44010f425aELSA-2017-3518ol8_x86_64_u7_baseos_base
openssl-devel-1.1.1k-7.el8_6.i686.rpmaf75c3b3910a26b3d35348107ac9ae3a02d3fd116a97a41e1fd56bf7190f902b-ol8_x86_64_baseos_latest
openssl-devel-1.1.1k-7.el8_6.i686.rpmaf75c3b3910a26b3d35348107ac9ae3a02d3fd116a97a41e1fd56bf7190f902b-ol8_x86_64_u6_baseos_patch
openssl-devel-1.1.1k-7.el8_6.i686.rpmaf75c3b3910a26b3d35348107ac9ae3a02d3fd116a97a41e1fd56bf7190f902b-ol8_x86_64_u7_baseos_base
openssl-devel-1.1.1k-7.el8_6.x86_64.rpm84b47cc19f5a53548cc9da8a1aeffd378f455ffc8f1906bfd9a084afa1833cf4-ol8_x86_64_baseos_latest
openssl-devel-1.1.1k-7.el8_6.x86_64.rpm84b47cc19f5a53548cc9da8a1aeffd378f455ffc8f1906bfd9a084afa1833cf4-ol8_x86_64_u6_baseos_patch
openssl-devel-1.1.1k-7.el8_6.x86_64.rpm84b47cc19f5a53548cc9da8a1aeffd378f455ffc8f1906bfd9a084afa1833cf4-ol8_x86_64_u7_baseos_base
openssl-libs-1.1.1k-7.el8_6.i686.rpm73513fd602a44ca2ec7e3fd63a4f8290d49b60075f1680747ca97a5b5d8e4613ELSA-2017-3518ol8_x86_64_baseos_latest
openssl-libs-1.1.1k-7.el8_6.i686.rpm73513fd602a44ca2ec7e3fd63a4f8290d49b60075f1680747ca97a5b5d8e4613ELSA-2017-3518ol8_x86_64_u6_baseos_patch
openssl-libs-1.1.1k-7.el8_6.i686.rpm73513fd602a44ca2ec7e3fd63a4f8290d49b60075f1680747ca97a5b5d8e4613ELSA-2017-3518ol8_x86_64_u7_baseos_base
openssl-libs-1.1.1k-7.el8_6.x86_64.rpmd38caf207c1b529d6a11b3c8386b9c132eabc46d2f3876e89605810b032169e1ELSA-2017-3518exadata_dbserver_23.1.0.0.0_x86_64_base
openssl-libs-1.1.1k-7.el8_6.x86_64.rpmd38caf207c1b529d6a11b3c8386b9c132eabc46d2f3876e89605810b032169e1ELSA-2017-3518exadata_dbserver_23.1.1.0.0_x86_64_base
openssl-libs-1.1.1k-7.el8_6.x86_64.rpmd38caf207c1b529d6a11b3c8386b9c132eabc46d2f3876e89605810b032169e1ELSA-2017-3518ol8_x86_64_baseos_latest
openssl-libs-1.1.1k-7.el8_6.x86_64.rpmd38caf207c1b529d6a11b3c8386b9c132eabc46d2f3876e89605810b032169e1ELSA-2017-3518ol8_x86_64_u6_baseos_patch
openssl-libs-1.1.1k-7.el8_6.x86_64.rpmd38caf207c1b529d6a11b3c8386b9c132eabc46d2f3876e89605810b032169e1ELSA-2017-3518ol8_x86_64_u7_baseos_base
openssl-perl-1.1.1k-7.el8_6.x86_64.rpm9e6a284350e05eb60895fc4e7ad79f42316e4b65a034ab4d78f12844af5fe3e7-ol8_x86_64_baseos_latest
openssl-perl-1.1.1k-7.el8_6.x86_64.rpm9e6a284350e05eb60895fc4e7ad79f42316e4b65a034ab4d78f12844af5fe3e7-ol8_x86_64_u6_baseos_patch
openssl-perl-1.1.1k-7.el8_6.x86_64.rpm9e6a284350e05eb60895fc4e7ad79f42316e4b65a034ab4d78f12844af5fe3e7-ol8_x86_64_u7_baseos_base



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete