Revision Date: | 2020-12-01 | Version: | 1 |
Title: | Security update for openssl (Moderate) |
Description: |
This update for openssl fixes the following issues:
Security issues fixed:
- CVE-2018-0734: Fixed timing vulnerability in DSA signature generation (bsc#1113652). - CVE-2018-5407: Fixed elliptic curve scalar multiplication timing attack defenses (bsc#1113534). - CVE-2018-0737: Corrected the current error detection of the current fix (bsc#1106197). - CVE-2016-8610: Adjusted current fix and add missing error string (bsc#1110018). - Add missing timing side channel patch for DSA signature generation (bsc#1113742). - Fixed the 'One and Done' side-channel attack on RSA (bsc#1104789).
Non-security issues fixed:
- Added openssl(cli) so that the packages that required the openssl binary can require this instead of the new openssl meta package (bsc#1101470).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1058722 1064101 1064115 1065237 1068565 1073230 1076017 1076390 1076391 1076505 1082216 1082233 1082234 1082810 1083488 1085114 1085447 1090638 1090671 1096718 1101470 1104789 1106197 1107832 1110018 1110233 1113534 1113652 1119183 1121816 1121821 1131709 1139083 1163927 1169659 1170313 1170423 1173991 1174284 1175476 1175686 929900 955131 989121 989122 CVE-2015-8946 CVE-2016-6224 CVE-2016-8610 CVE-2017-10268 CVE-2017-10378 CVE-2017-13166 CVE-2017-17833 CVE-2018-0734 CVE-2018-0737 CVE-2018-1000004 CVE-2018-1068 CVE-2018-12015 CVE-2018-14633 CVE-2018-17182 CVE-2018-2579 CVE-2018-2582 CVE-2018-2588 CVE-2018-2599 CVE-2018-2602 CVE-2018-2603 CVE-2018-2618 CVE-2018-2633 CVE-2018-2634 CVE-2018-2637 CVE-2018-2638 CVE-2018-2639 CVE-2018-2641 CVE-2018-2663 CVE-2018-2677 CVE-2018-2678 CVE-2018-5407 CVE-2018-5711 CVE-2018-6797 CVE-2018-6798 CVE-2018-6913 CVE-2018-7566 CVE-2019-12519 CVE-2019-12520 CVE-2019-12521 CVE-2019-12524 CVE-2019-12900 CVE-2019-14559 CVE-2019-14562 CVE-2019-6109 CVE-2019-6111 CVE-2020-11945 CVE-2020-15663 CVE-2020-15664 CVE-2020-15670 SUSE-SU-2018:0260-1 SUSE-SU-2018:0336-1 SUSE-SU-2018:0384-1 SUSE-SU-2018:0665-1 SUSE-SU-2018:1019-1 SUSE-SU-2018:1034-1 SUSE-SU-2018:1972-2 SUSE-SU-2018:3864-1 SUSE-SU-2019:1524-1 SUSE-SU-2019:2013-1 SUSE-SU-2020:1227-1 SUSE-SU-2020:2544-1 SUSE-SU-2020:3126-1
|
Platform(s): | openSUSE Leap 15.0 openSUSE Leap 42.3 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 11 SP4 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Module for additional PackageHub packages 15 SUSE Linux Enterprise Module for Basesystem 15 SUSE Linux Enterprise Module for Basesystem 15 SP1 SUSE Linux Enterprise Module for Containers 15 SP1 SUSE Linux Enterprise Module for Desktop Applications 15 SUSE Linux Enterprise Module for Desktop Applications 15 SP1 SUSE Linux Enterprise Module for Development Tools 15 SUSE Linux Enterprise Module for Development Tools 15 SP1 SUSE Linux Enterprise Module for Legacy Software 15 SUSE Linux Enterprise Module for Live Patching 15 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 SUSE Linux Enterprise Module for Public Cloud 15 SP1 SUSE Linux Enterprise Module for Python2 packages 15 SP1 SUSE Linux Enterprise Module for Server Applications 15 SUSE Linux Enterprise Module for Server Applications 15 SP1 SUSE Linux Enterprise Module for Web Scripting 15 SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 12 SP5 SUSE Linux Enterprise Server for SAP Applications 12 SP1-LTSS SUSE Linux Enterprise Server for SAP Applications 12 SP2 SUSE Linux Enterprise Server for SAP Applications 12 SP2-BCL SUSE Linux Enterprise Server for SAP Applications 12 SP2-ESPOS SUSE Linux Enterprise Server for SAP Applications 12 SP2-LTSS SUSE Linux Enterprise Server for SAP Applications 12 SP3 SUSE Linux Enterprise Server for SAP Applications 12 SP3-BCL SUSE Linux Enterprise Server for SAP Applications 12 SP3-ESPOS SUSE Linux Enterprise Server for SAP Applications 12 SP3-LTSS SUSE Linux Enterprise Server for SAP Applications 12 SP3-TERADATA SUSE Linux Enterprise Server for SAP Applications 12 SP4 SUSE Linux Enterprise Server for SAP Applications 12 SP5 SUSE Linux Enterprise Server for SAP Applications 15 SUSE Linux Enterprise Workstation Extension 12 SP1 SUSE Linux Enterprise Workstation Extension 12 SP2 SUSE Linux Enterprise Workstation Extension 12 SP3 SUSE Linux Enterprise Workstation Extension 12 SP4 SUSE Linux Enterprise Workstation Extension 15 SUSE OpenStack Cloud 6 SUSE OpenStack Cloud 7
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND libXinerama1-1.1.3-lp150.1 is installed
|
Definition Synopsis |
openSUSE Leap 42.3 is installed
AND Package Information
ImageMagick-6.8.8.1-79 is installed
OR ImageMagick-devel-6.8.8.1-79 is installed
OR ImageMagick-devel-32bit-6.8.8.1-79 is installed
OR ImageMagick-doc-6.8.8.1-79 is installed
OR ImageMagick-extra-6.8.8.1-79 is installed
OR libMagick++-6_Q16-3-6.8.8.1-79 is installed
OR libMagick++-6_Q16-3-32bit-6.8.8.1-79 is installed
OR libMagick++-devel-6.8.8.1-79 is installed
OR libMagick++-devel-32bit-6.8.8.1-79 is installed
OR libMagickCore-6_Q16-1-6.8.8.1-79 is installed
OR libMagickCore-6_Q16-1-32bit-6.8.8.1-79 is installed
OR libMagickWand-6_Q16-1-6.8.8.1-79 is installed
OR libMagickWand-6_Q16-1-32bit-6.8.8.1-79 is installed
OR perl-PerlMagick-6.8.8.1-79 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP2 is installed
AND kvm-0.15.1-0.27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed
AND cabextract-1.2-2.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP4 is installed
AND cabextract-1.2-2.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND clamav-0.98.4-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND Package Information
ImageMagick-6.8.8.1-8 is installed
OR libMagick++-6_Q16-3-6.8.8.1-8 is installed
OR libMagickCore-6_Q16-1-6.8.8.1-8 is installed
OR libMagickCore-6_Q16-1-32bit-6.8.8.1-8 is installed
OR libMagickWand-6_Q16-1-6.8.8.1-8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
colord-1.3.3-10 is installed
OR colord-gtk-lang-0.1.26-6 is installed
OR colord-lang-1.3.3-10 is installed
OR libcolord-gtk1-0.1.26-6 is installed
OR libcolord2-1.3.3-10 is installed
OR libcolord2-32bit-1.3.3-10 is installed
OR libcolorhug2-1.3.3-10 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
libjpeg-turbo-1.3.1-30 is installed
OR libjpeg62-62.1.0-30 is installed
OR libjpeg62-32bit-62.1.0-30 is installed
OR libjpeg62-turbo-1.3.1-30 is installed
OR libjpeg8-8.0.2-30 is installed
OR libjpeg8-32bit-8.0.2-30 is installed
OR libturbojpeg0-8.0.2-30 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
AND tiff-4.0.9-5.27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 is installed
AND lftp-4.8.3-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
AND Package Information
glibc-32bit-2.26-8 is installed
OR glibc-locale-32bit-2.26-8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Containers 15 SP1 is installed
AND docker-libnetwork-0.7.0.1+gitr2711_2cfbf9b1f981-4.9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Desktop Applications 15 is installed
AND hplip-3.17.9-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
AND Package Information
libquicktime-1.2.4cvs20150223-4 is installed
OR libquicktime-devel-1.2.4cvs20150223-4 is installed
OR libquicktime0-1.2.4cvs20150223-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Development Tools 15 is installed
AND cvs-1.12.12-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Development Tools 15 SP1 is installed
AND Package Information
ImageMagick-7.0.7.34-3.72 is installed
OR perl-PerlMagick-7.0.7.34-3.72 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Legacy Software 15 is installed
AND Package Information
java-1_8_0-openjdk-1.8.0.171-3.3 is installed
OR java-1_8_0-openjdk-demo-1.8.0.171-3.3 is installed
OR java-1_8_0-openjdk-devel-1.8.0.171-3.3 is installed
OR java-1_8_0-openjdk-headless-1.8.0.171-3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 is installed
AND Package Information
kernel-livepatch-4_12_14-25_3-default-7-2 is installed
OR kernel-livepatch-SLE15_Update_1-7-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 is installed
AND tiff-4.0.9-5.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
AND Package Information
gnome-shell-3.26.2+20180130.0d9c74212-4.19 is installed
OR gnome-shell-browser-plugin-3.26.2+20180130.0d9c74212-4.19 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Public Cloud 15 SP1 is installed
AND apache2-mod_wsgi-4.5.18-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Python2 packages 15 SP1 is installed
AND Package Information
python-libxml2-python-2.9.7-3.12 is installed
OR python2-libxml2-python-2.9.7-3.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 is installed
AND apache2-mod_jk-1.2.43-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
AND apache2-mod_apparmor-2.12.2-7.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Web Scripting 15 is installed
AND Package Information
nodejs8-8.16.1-3.20 is installed
OR nodejs8-devel-8.16.1-3.20 is installed
OR nodejs8-docs-8.16.1-3.20 is installed
OR npm8-8.16.1-3.20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 is installed
AND Package Information
libXfont-1.4.7-4 is installed
OR libXfont1-1.4.7-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
fetchmail-6.3.26-5 is installed
OR fetchmailconf-6.3.26-5 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND
libopenssl1_0_0-1.0.1i-54.20 is installed
OR libopenssl1_0_0-32bit-1.0.1i-54.20 is installed
OR libopenssl1_0_0-hmac-1.0.1i-54.20 is installed
OR libopenssl1_0_0-hmac-32bit-1.0.1i-54.20 is installed
OR openssl-1.0.1i-54.20 is installed
OR openssl-doc-1.0.1i-54.20 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP1-LTSS is installed
AND
libopenssl1_0_0-1.0.1i-54.20 is installed
OR libopenssl1_0_0-32bit-1.0.1i-54.20 is installed
OR libopenssl1_0_0-hmac-1.0.1i-54.20 is installed
OR libopenssl1_0_0-hmac-32bit-1.0.1i-54.20 is installed
OR openssl-1.0.1i-54.20 is installed
OR openssl-doc-1.0.1i-54.20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
kgraft-patch-3_12_74-60_64_40-default-4-2 is installed
OR kgraft-patch-3_12_74-60_64_40-xen-4-2 is installed
OR kgraft-patch-SLE12-SP1_Update_15-4-2 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP2 is installed
AND gd-2.1.0-24.6 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP2 is installed
AND gd-2.1.0-24.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND libmodplug1-0.8.8.4-13 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND
perl-5.18.2-12.14 is installed
OR perl-32bit-5.18.2-12.14 is installed
OR perl-base-5.18.2-12.14 is installed
OR perl-doc-5.18.2-12.14 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP2-BCL is installed
AND
perl-5.18.2-12.14 is installed
OR perl-32bit-5.18.2-12.14 is installed
OR perl-base-5.18.2-12.14 is installed
OR perl-doc-5.18.2-12.14 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND
openslp-2.0.0-18.17 is installed
OR openslp-32bit-2.0.0-18.17 is installed
OR openslp-server-2.0.0-18.17 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP2-ESPOS is installed
AND
openslp-2.0.0-18.17 is installed
OR openslp-32bit-2.0.0-18.17 is installed
OR openslp-server-2.0.0-18.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
ntp-4.2.8p13-85 is installed
OR ntp-doc-4.2.8p13-85 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND
kgraft-patch-4_4_59-92_20-default-10-2 is installed
OR kgraft-patch-SLE12-SP2_Update_8-10-2 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP2-LTSS is installed
AND
kgraft-patch-4_4_59-92_20-default-10-2 is installed
OR kgraft-patch-SLE12-SP2_Update_8-10-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND Package Information
ntp-4.2.8p11-64.5 is installed
OR ntp-doc-4.2.8p11-64.5 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3 is installed
AND
xerces-j2-2.8.1-268.6 is installed
OR xerces-j2-xml-apis-2.8.1-268.6 is installed
OR xerces-j2-xml-resolver-2.8.1-268.6 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP3 is installed
AND
xerces-j2-2.8.1-268.6 is installed
OR xerces-j2-xml-apis-2.8.1-268.6 is installed
OR xerces-j2-xml-resolver-2.8.1-268.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND apache2-mod_nss-1.0.14-18 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND clamav-0.100.3-33.26 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP3-BCL is installed
AND clamav-0.100.3-33.26 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND
kgraft-patch-4_4_162-94_69-default-6-2 is installed
OR kgraft-patch-SLE12-SP3_Update_21-6-2 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP3-ESPOS is installed
AND
kgraft-patch-4_4_162-94_69-default-6-2 is installed
OR kgraft-patch-SLE12-SP3_Update_21-6-2 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND permissions-2015.09.28.1626-17.20 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP3-LTSS is installed
AND permissions-2015.09.28.1626-17.20 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND
git-2.12.3-27.17 is installed
OR git-core-2.12.3-27.17 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP3-TERADATA is installed
AND
git-2.12.3-27.17 is installed
OR git-core-2.12.3-27.17 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP4 is installed
AND tcpdump-4.9.2-14.8 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
AND tcpdump-4.9.2-14.8 is installed
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP5 is installed
AND
libmysqlclient18-10.0.40.2-2.12 is installed
OR libmysqlclient18-32bit-10.0.40.2-2.12 is installed
OR mariadb-100-10.0.40.2-2.12 is installed
OR mariadb-100-errormessages-10.0.40.2-2.12 is installed
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
AND
libmysqlclient18-10.0.40.2-2.12 is installed
OR libmysqlclient18-32bit-10.0.40.2-2.12 is installed
OR mariadb-100-10.0.40.2-2.12 is installed
OR mariadb-100-errormessages-10.0.40.2-2.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 15 is installed
AND Package Information
libpcp-devel-3.11.9-5.8 is installed
OR libpcp3-3.11.9-5.8 is installed
OR libpcp_gui2-3.11.9-5.8 is installed
OR libpcp_import1-3.11.9-5.8 is installed
OR libpcp_mmv1-3.11.9-5.8 is installed
OR libpcp_trace2-3.11.9-5.8 is installed
OR libpcp_web1-3.11.9-5.8 is installed
OR pcp-3.11.9-5.8 is installed
OR pcp-conf-3.11.9-5.8 is installed
OR pcp-devel-3.11.9-5.8 is installed
OR pcp-doc-3.11.9-5.8 is installed
OR pcp-import-iostat2pcp-3.11.9-5.8 is installed
OR pcp-import-mrtg2pcp-3.11.9-5.8 is installed
OR pcp-import-sar2pcp-3.11.9-5.8 is installed
OR perl-PCP-LogImport-3.11.9-5.8 is installed
OR perl-PCP-LogSummary-3.11.9-5.8 is installed
OR perl-PCP-MMV-3.11.9-5.8 is installed
OR perl-PCP-PMDA-3.11.9-5.8 is installed
OR python-pcp-3.11.9-5.8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
AND Package Information
imap-2007e_suse-19 is installed
OR libc-client2007e_suse-2007e_suse-19 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
AND Package Information
libmysqlclient_r18-10.0.28-17 is installed
OR libmysqlclient_r18-32bit-10.0.28-17 is installed
OR mariadb-10.0.28-17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
AND Package Information
libSoundTouch0-32bit-1.7.1-5.6 is installed
OR soundtouch-1.7.1-5.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
AND Package Information
libwpd-0.10.2-2.7 is installed
OR libwpd-0_10-10-0.10.2-2.7 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 is installed
AND Package Information
freerdp-2.0.0~rc4-3.3 is installed
OR freerdp-devel-2.0.0~rc4-3.3 is installed
OR libfreerdp2-2.0.0~rc4-3.3 is installed
OR libwinpr2-2.0.0~rc4-3.3 is installed
OR winpr2-devel-2.0.0~rc4-3.3 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 6 is installed
AND mongodb-2.4.14-1 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND python-oslo.middleware-3.19.0-3 is installed
|