Oval Definition:oval:org.opensuse.security:def:104882
Revision Date:2019-10-04Version:1
Title:Security update for openssl-1_0_0 (Moderate)
Description:

This update for openssl-1_0_0 fixes the following issues:

OpenSSL Security Advisory [10 September 2019]

CVE-2019-1547: Added EC_GROUP_set_generator side channel attack avoidance. (bsc#1150003) * CVE-2019-1563: Fixed Bleichenbacher attack against cms/pkcs7 encryption transported key (bsc#1150250)

In addition fixed invalid curve attacks by validating that an EC point lies on the curve (bsc#1131291).
Family:unixClass:patch
Status:Reference(s):1131291
1150003
1150250
CVE-2019-1547
CVE-2019-1563
SUSE-SU-2019:2561-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise Module for Legacy 15 SP1
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Storage 6
SUSE Manager Proxy 4.0
SUSE Manager Server 4.0
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy 15 SP1 is installed
  • AND Package Information
  • libopenssl-1_0_0-devel-1.0.2p-3.22.1 is installed
  • OR libopenssl1_0_0-1.0.2p-3.22.1 is installed
  • OR openssl-1_0_0-1.0.2p-3.22.1 is installed
  • BACK