Collected every two hours from specialised publications — each link leads to the original article.
New openssl packages are available for Slackware 14.0, 14.1, 14.2, 15.0, and -current to fix a security issue.
Security fix for CVE-2022-1292 Upgrade to 1.1.1o, rhbz#2095817. See https://www.openssl.org/news/secadv/20220503.txt.
OpenSSL could be made to crash or run programs when the c_rehash script is used.
An update for compat-openssl11 is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of I…
Several security issues were fixed in OpenSSL.
Elison Niven discovered that the c_rehash script included in OpenSSL did not sanitise shell meta characters which could result in the execution of arbitrary co…
The c_rehash script allows command injection. (CVE-2022-1292) References: - https://bugs.mageia.org/show_bug.cgi?id=30369 - https://www.openssl.org/news/secadv…
New openssl packages are available for Slackware 14.2, 15.0, and -current to fix security issues.
Several security issues were fixed in OpenSSL.
Network-attached storage (NAS) maker QNAP has warned that most of its NAS devices are impacted by a high severity OpenSSL bug disclosed two weeks ago .
An update for openssl is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as ha…
An update for openssl is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a sec…
openssl: Infinite loop in BN_mod_sqrt() reachable when parsing certificates (CVE-2022-0778) For more details about the security issue(s), including the impact,…
An update for openssl is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important.…
An update for openssl is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important.…
An update for openssl is now available for Red Hat Enterprise Linux 6 Extended Lifecycle Support. Red Hat Product Security has rated this update as having a se…
New openssl packages are available for Slackware 14.2, 15.0, and -current to fix a security issue.
Tavis Ormandy discovered that the BN_mod_sqrt() function of OpenSSL could be tricked into an infinite loop. This could result in denial of service via malforme…
Tavis Ormandy discovered that the BN_mod_sqrt() function of OpenSSL could be tricked into an infinite loop. This could result in denial of service via malforme…
OpenSSL could be made to stop responding if it opened a specially crafted certificate.
OpenSSL could be made to stop responding if it opened a specially crafted certificate.
Tavis Ormandy discovered that the BN_mod_sqrt() function of OpenSSL could be tricked into an infinite loop. This could result in denial of service via malforme…
openssl: Read buffer overruns processing ASN.1 strings (CVE-2021-3712) For more details about the security issue(s), including the impact, a CVSS score, acknow…
An update for openssl is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. …