OVMSA-2016-0001

OVMSA-2016-0001 - openssl security update

Type:SECURITY
Impact:MODERATE
Release Date:2016-01-07

Description


[1.0.1e-42.2]
- fix CVE-2015-7575 - disallow use of MD5 in TLS1.2

[1.0.1e-42.1]
- fix CVE-2015-3194 - certificate verify crash with missing PSS parameter
- fix CVE-2015-3195 - X509_ATTRIBUTE memory leak
- fix CVE-2015-3196 - race condition when handling PSK identity hint


Related CVEs


CVE-2015-7575

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle VM 3.3 (x86_64) openssl-1.0.1e-42.el6_7.2.src.rpm6d13a1e30e65dfe2686d580fbc22db2cf73c7e01842d024b85fae55c800f071cOVMSA-2023-0013ovm3_x86_64_3.3_patch
openssl-1.0.1e-42.el6_7.2.x86_64.rpm1a5ca0676f5c99a21002bdd85d1f5db371f6fe8257868612b2219ae81e493ef6OVMSA-2023-0013ovm3_x86_64_3.3_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete