Collected every two hours from specialised publications — each link leads to the original article.
Timing side-channel in ECDSA signature computation. (CVE-2024-13176) References: - https://bugs.mageia.org/show_bug.cgi?id=33942 - https://openssl-library.org/…
Possible denial of service in X.509 name checks. (CVE-2024-6119) References: - https://bugs.mageia.org/show_bug.cgi?id=33520 - https://openssl-library.org/news…
David Benjamin reported a flaw in the X.509 name checks in OpenSSL, a Secure Sockets Layer toolkit, which may cause an application performing certificate name …
SSL_select_next_proto buffer overread. (CVE-2024-5535) References: - https://bugs.mageia.org/show_bug.cgi?id=33337 - https://openssl.org/news/secadv/20240627.t…
Several security issues were fixed in OpenSSL.
Several security issues were fixed in OpenSSL.
Multiple vulnerabilities have been found in OpenSSL, the worst of which could result in denial of service.
Two vunerabilities were discovered in openssl, a Secure Sockets Layer toolkit: CVE-2023-3446, CVE-2023-3817
OpenSSL could be made to consume resources and cause long delays if it processed certain input.
Possible DoS translating ASN.1 object identifiers. (CVE-2023-2650) References: - https://bugs.mageia.org/show_bug.cgi?id=31981 - https://www.openssl.org/news/s…
Multiple vulnerabilities have been discovered in OpenSSL, a Secure Sockets Layer toolkit. CVE-2023-0464
Multiple important denial of service (DoS) vulnerabilities (CVE-2023-0464 and CVE-2023-2650) have been discovered in the OpenSSL Secure Sockets Layer toolkit. …
An update for openssl is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a sec…
Multiple vulnerabilities have been discovered in OpenSSL, a Secure Sockets Layer toolkit. CVE-2023-0464
OpenSSL-ibmca could be made to expose sensitive information.
Several security issues were fixed in OpenSSL.
An update for openssl is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as ha…
An update for openssl is now available for Red Hat Enterprise Linux 8.4 Extended Update Support. Red Hat Product Security has rated this update as having a sec…
openssl: X.400 address type confusion in X.509 GeneralName (CVE-2023-0286) For more details about the security issue(s), including the impact, a CVSS score, ac…
An update for openssl is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a sec…
Multiple vulnerabilities have been discovered in OpenSSL, a Secure Sockets Layer toolkit, which may result in incomplete encryption, side channel attacks, deni…
Last week, we wrote about a bunch of memory management bugs that were fixed in the latest security update of the popular OpenSSL encryption library. Along with…
On February 7, 2023 OpenSSL released a security advisory regarding several security vulnerabilities that were recently discovered and fixed, including a high-s…
The OpenSSL Project has released fixes to address several security flaws, including a high-severity bug in the open source encryption toolkit that could potent…