SUSE-SU-2014:0539-1 -- Security update for OpenSSL
Description:
OpenSSL has been updated to fix an attack on ECDSA Nonces.Using the FLUSH+RELOAD Cache Side-channel Attack the Noncescould be recovered. (CVE-2014-0076)The update also enables use of SHA-2 family certificateverification of X.509 certificates used in todays SSLcertificate infrastructure.Security Issue reference: * CVE-2014-0076