Описание
ELSA-2015-0800: openssl security update (MODERATE)
[0.9.8e-33]
- fix CVE-2014-8275 (without introduction of CVE-2015-0286) - various certificate fingerprint issues
- fix CVE-2015-0204 - remove support for RSA ephemeral keys for non-export ciphersuites and on server
- fix CVE-2015-0287 - ASN.1 structure reuse decoding memory corruption
- fix CVE-2015-0288 - X509_to_X509_REQ NULL pointer dereference
- fix CVE-2015-0289 - NULL dereference decoding invalid PKCS#7 data
- fix CVE-2015-0292 - integer underflow in base64 decoder
- fix CVE-2015-0293 - triggerable assert in SSLv2 server
Обновленные пакеты
Oracle Linux 5
Oracle Linux ia64
openssl
0.9.8e-33.0.1.el5_11
openssl-devel
0.9.8e-33.0.1.el5_11
openssl-perl
0.9.8e-33.0.1.el5_11
Oracle Linux x86_64
openssl
0.9.8e-33.0.1.el5_11
openssl-devel
0.9.8e-33.0.1.el5_11
openssl-perl
0.9.8e-33.0.1.el5_11
Oracle Linux i386
openssl
0.9.8e-33.0.1.el5_11
openssl-devel
0.9.8e-33.0.1.el5_11
openssl-perl
0.9.8e-33.0.1.el5_11