[CLSA-2023:1676026276] openssl: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2023-02-10
Description:
- CVE-2023-0215: Fix a UAF resulting from a bug in BIO_new_NDEF - CVE-2023-0286: Fix GENERAL_NAME_cmp for x400Address
Updated packages:
  • openssl-1.1.1k-5.el8.5.tuxcare.els4.x86_64.rpm
    sha:c4edd2a06cff938fc886f25be580c06815afc27f
  • openssl-devel-1.1.1k-5.el8.5.tuxcare.els4.i686.rpm
    sha:8cb8e89d2449d270f3ff6692b241dc94d166f5c5
  • openssl-devel-1.1.1k-5.el8.5.tuxcare.els4.x86_64.rpm
    sha:65c6f450481a97e701d419de5419dd410edca109
  • openssl-libs-1.1.1k-5.el8.5.tuxcare.els4.i686.rpm
    sha:e365af60e8627803250077093ad5356d0cc3f0c2
  • openssl-libs-1.1.1k-5.el8.5.tuxcare.els4.x86_64.rpm
    sha:96e09f5ce3ceb411ed978b48707e3125be893fb6
  • openssl-perl-1.1.1k-5.el8.5.tuxcare.els4.x86_64.rpm
    sha:5fbbd6ebc05809b4993416dd9e00d59f9ea21ed4
  • openssl-static-1.1.1k-5.el8.5.tuxcare.els4.x86_64.rpm
    sha:d92135f80caac48a671e8023862505efa04d5b7e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.