Oval Definition:oval:org.mitre.oval:def:22343
Revision Date:2014-02-24Version:6
Title:RHSA-2010:0888: openssl security update (Important)
Description:Multiple race conditions in ssl/t1_lib.c in OpenSSL 0.9.8f through 0.9.8o, 1.0.0, and 1.0.0a, when multi-threading and internal caching are enabled on a TLS server, might allow remote attackers to execute arbitrary code via client data that triggers a heap-based buffer overflow, related to (1) the TLS server name extension and (2) elliptic curve cryptography.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2010-3864
RHSA-2010:0888-01
Platform(s):Red Hat Enterprise Linux 6
Product(s):openssl
Definition Synopsis
  • The operating system installed on the system is Red Hat Enterprise Linux 6
  • AND Packages section
  • openssl-devel is earlier than 0:1.0.0-4.el6_0.1
  • OR openssl-static is earlier than 0:1.0.0-4.el6_0.1
  • OR openssl-perl is earlier than 0:1.0.0-4.el6_0.1
  • OR openssl is earlier than 0:1.0.0-4.el6_0.1
  • BACK