ELSA-2022-9249

ELSA-2022-9249 - openssl security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2022-03-30

Description


[1.0.2k-25_fips]
- Change Epoch from 1 to 10
- Fix DH self-test to add shared secret comparison [Orabug: 32467026]
- Add DH support changes for SP 800-56A rev3 requirements [Orabug: 32467059]
- Add TLS KDF self-test [Orabug: 32467193]
- Add EC keys pairwise consistency test [Orabug: 32467059]

[1:1.0.2k-25]
- Fixes CVE-2022-2078 Infinite loop in BN_mod_sqrt() reachable when parsing certificates
- Related: rhbz#2067160


Related CVEs


CVE-2022-0778

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) openssl-1.0.2k-25.el7_9_fips.src.rpmedda5673d0f95738460fe077d77947e26076699f8eb535aa14664cf7c2cddc65ELSA-2017-3518ol7_aarch64_u8_security_validation
openssl-1.0.2k-25.el7_9_fips.aarch64.rpm6d4dfe2f0fe3041965dbc99c654edb2d644662238f761563fbd51150d8dab207ELSA-2017-3518ol7_aarch64_u8_security_validation
openssl-devel-1.0.2k-25.el7_9_fips.aarch64.rpmeafb2ad037b7fbfdf8a159626651e03ec14678756666ef7dc81c9a9e2e093d3cELSA-2017-3518ol7_aarch64_u8_security_validation
openssl-libs-1.0.2k-25.el7_9_fips.aarch64.rpm02015102848bed45790de57eb4069884a2e21ae47ff2e8a209d4167c4655db99ELSA-2017-3518ol7_aarch64_u8_security_validation
openssl-perl-1.0.2k-25.el7_9_fips.aarch64.rpm8379de2220043db8a6a9f8857103de37c7e71b21d6c78b9682e30b35fbe41f0cELSA-2017-3518ol7_aarch64_u8_security_validation
openssl-static-1.0.2k-25.el7_9_fips.aarch64.rpm5ae50a9fcdc9318651041d0d6bf6519fcd38431e70bc0f192a978a8941cec37dELSA-2017-3518ol7_aarch64_u8_security_validation
Oracle Linux 7 (x86_64) openssl-1.0.2k-25.el7_9_fips.src.rpmedda5673d0f95738460fe077d77947e26076699f8eb535aa14664cf7c2cddc65ELSA-2017-3518ol7_x86_64_u8_security_validation
openssl-1.0.2k-25.el7_9_fips.x86_64.rpmf5f2f5d497c52170d50fc0168b22fd5316020ed568e8181715f7483e572fc156ELSA-2017-3518ol7_x86_64_u8_security_validation
openssl-devel-1.0.2k-25.el7_9_fips.i686.rpma54c9bfaace664c713a40b1226ce96c7b66d8ab26b375117e87fabd8618012ccELSA-2017-3518ol7_x86_64_u8_security_validation
openssl-devel-1.0.2k-25.el7_9_fips.x86_64.rpm93bd0df6dac6843ae1fe857c9f5721c47967b286d3f3a784e0c6237de5aa886dELSA-2017-3518ol7_x86_64_u8_security_validation
openssl-libs-1.0.2k-25.el7_9_fips.i686.rpm6baab707f696d8bcc9eec26f8ff114557096ff03ed837290b54006e646f9ac83ELSA-2017-3518ol7_x86_64_u8_security_validation
openssl-libs-1.0.2k-25.el7_9_fips.x86_64.rpm66befd358a9ec6c8f1c2f12ab86c7536da12b65f01d4569cd8c76dde69c2312dELSA-2017-3518ol7_x86_64_u8_security_validation
openssl-perl-1.0.2k-25.el7_9_fips.x86_64.rpm5d630d4a61579ab451d9f55a8c28860371e909c258174e599a1eb2bdb8cea1e3ELSA-2017-3518ol7_x86_64_u8_security_validation
openssl-static-1.0.2k-25.el7_9_fips.i686.rpm2bac0e9d162fd50da24f3cabf70e9938131459563c6a02a4057a1890349f268fELSA-2017-3518ol7_x86_64_u8_security_validation
openssl-static-1.0.2k-25.el7_9_fips.x86_64.rpm5b4ede1781f56e047bdc597f6b0c6b618f0b41033419c356ddf9dd2374b2bb53ELSA-2017-3518ol7_x86_64_u8_security_validation



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete