Oval Definition:oval:org.mitre.oval:def:23416
Revision Date:2014-05-26Version:15
Title:ELSA-2011:0677: openssl security, bug fix, and enhancement update (Moderate)
Description:ssl/t1_lib.c in OpenSSL 0.9.8h through 0.9.8q and 1.0.0 through 1.0.0c allows remote attackers to cause a denial of service (crash), and possibly obtain sensitive information in applications that use OpenSSL, via a malformed ClientHello handshake message that triggers an out-of-bounds memory access, aka "OCSP stapling vulnerability."
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2011-0014
ELSA-2011:0677-01
Platform(s):Oracle Linux 6
Product(s):openssl
Definition Synopsis
  • Oracle Linux 6.x
  • AND rpm test
  • openssl-devel is earlier than 0:1.0.0-10.el6
  • OR openssl-static is earlier than 0:1.0.0-10.el6
  • OR openssl-perl is earlier than 0:1.0.0-10.el6
  • OR openssl is earlier than 0:1.0.0-10.el6
  • BACK