OVMSA-2016-0001

OVMSA-2016-0001 - openssl security update

Type:SECURITY
Severity:MODERATE
Release Date:2016-01-07

Description


[1.0.1e-42.2]
- fix CVE-2015-7575 - disallow use of MD5 in TLS1.2

[1.0.1e-42.1]
- fix CVE-2015-3194 - certificate verify crash with missing PSS parameter
- fix CVE-2015-3195 - X509_ATTRIBUTE memory leak
- fix CVE-2015-3196 - race condition when handling PSK identity hint


Related CVEs


CVE-2015-7575

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle VM 3.3 (x86_64) openssl-1.0.1e-42.el6_7.2.src.rpm74edf347c90dbb605a10a191bf46fe77OVMSA-2021-0011
openssl-1.0.1e-42.el6_7.2.x86_64.rpm130977e7459a83a983a7d83fd03cd7d0OVMSA-2021-0011



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete