[CLSA-2025:1760028485] openssl: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2025-10-09 16:48:16 UTC
Description:
- CVE-2019-1547: fix side-channel vulnerability in ECDSA when using explicit EC parameters without cofactor - CVE-2025-9230: fix incorrect check of unwrapped key size
Updated packages:
  • openssl-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:2e47bd224ac5cd21a79dc7de69f85e2b388545a332fd9ca39d3095f768b224a5
  • openssl-devel-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm
    sha:6be45bd503e37451ad28e79721d93c8744a3bf00983c21e6833a31a8de20bdc9
  • openssl-devel-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:1543eabc4dd4bd2d66680001812e2d20a058273917170fbfbc67937754ffab40
  • openssl-libs-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm
    sha:64175ab934b5531dcd394442db420e844eeeefa333125cf7a6dc8d7ef3556ad1
  • openssl-libs-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:f6118782165a28dfa37d4c2876e48892faaf2c6636e4253b48caed3c49ea0d33
  • openssl-perl-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:7deae288fa27aa70f4b810bb7a77b8315bbdf7aa077e8453838cb07c1043abd5
  • openssl-static-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm
    sha:36c1cb1deec688a2c033950ff4f819ba379c2da3d0e3a60070130bf4382cdcce
  • openssl-static-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm
    sha:bc35a36c59f73058b04a11867592f963fbb54251b4febaca3f00c0e21c8dde18
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.