Oval Definition:oval:org.opensuse.security:def:50894
Revision Date:2020-12-01Version:1
Title:Security update for openssl-1_1 (Moderate)
Description:

This update for openssl-1_1 fixes the following issues:

Security issue fixed:

- CVE-2019-1551: Fixed an overflow bug in the x64_64 Montgomery squaring procedure used in exponentiation with 512-bit moduli (bsc#1158809).

Various FIPS related improvements were done:

- FIPS: Backport SSH KDF to openssl (jsc#SLE-8789, bsc#1157775). - Port FIPS patches from SLE-12 (bsc#1158101). - Use SHA-2 in the RSA pairwise consistency check (bsc#1155346).
Family:unixClass:patch
Status:Reference(s):1046305
1046306
1046307
1051510
1065600
1081917
1082318
1083647
1086288
1086315
1086317
1086327
1086331
1086906
1087092
1090888
1097104
1097577
1097583
1097584
1097585
1097586
1097587
1097588
1097808
1100132
1101480
1101669
1101822
1102517
1102715
1103269
1103277
1103363
1103445
1103886
1104036
1104353
1104365
1104427
1104482
1104494
1104495
1104683
1104708
1104777
1104890
1104897
1105292
1105296
1105322
1105355
1105378
1105396
1105467
1105731
1133297
1140750
1151867
1155346
1157775
1158101
1158809
1158880
1160968
1162972
1163102
1163103
1163104
1164692
1164825
1164860
1167816
1170940
1171252
1171254
1171701
1174628
1174955
1175193
1175194
1176116
1176256
1176257
1176258
1176259
1176262
1177155
802154
971975
CVE-2018-10853
CVE-2018-10902
CVE-2018-15572
CVE-2018-9363
CVE-2019-13314
CVE-2019-1551
CVE-2019-15604
CVE-2019-15605
CVE-2019-15606
CVE-2019-16707
CVE-2019-17569
CVE-2019-20916
CVE-2019-4732
CVE-2020-12653
CVE-2020-12654
CVE-2020-14344
CVE-2020-14349
CVE-2020-14350
CVE-2020-15166
CVE-2020-15708
CVE-2020-1935
CVE-2020-1938
CVE-2020-1983
CVE-2020-25637
CVE-2020-2583
CVE-2020-2593
CVE-2020-2604
CVE-2020-2659
SUSE-SU-2018:2539-1
SUSE-SU-2018:2641-1
SUSE-SU-2020:0069-1
SUSE-SU-2020:0454-1
SUSE-SU-2020:0466-1
SUSE-SU-2020:0631-1
SUSE-SU-2020:1502-1
SUSE-SU-2020:2265-1
SUSE-SU-2020:2784-1
SUSE-SU-2020:2969-1
SUSE-SU-2020:3264-1
Platform(s):SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for Basesystem 15 SP2
SUSE Linux Enterprise Module for Legacy Software 15
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Module for Python2 packages 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Workstation Extension 15
SUSE Linux Enterprise Workstation Extension 15 SP2
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • gpgme-1.1.6-25.32 is installed
  • OR libgpgme11-1.1.6-25.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND groff-1.22.2-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • gpgme-1.5.1-1 is installed
  • OR libgpgme11-1.5.1-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • elfutils-0.158-6 is installed
  • OR libasm1-0.158-6 is installed
  • OR libdw1-0.158-6 is installed
  • OR libdw1-32bit-0.158-6 is installed
  • OR libebl1-0.158-6 is installed
  • OR libebl1-32bit-0.158-6 is installed
  • OR libelf1-0.158-6 is installed
  • OR libelf1-32bit-0.158-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • coreutils-8.25-12 is installed
  • OR coreutils-lang-8.25-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • icu-52.1-8.7 is installed
  • OR libicu52_1-52.1-8.7 is installed
  • OR libicu52_1-32bit-52.1-8.7 is installed
  • OR libicu52_1-data-52.1-8.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1 is installed
  • AND Package Information
  • libunwind-1.2.1-4.2 is installed
  • OR libunwind-32bit-1.2.1-4.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND Package Information
  • libopenssl-1_1-devel-1.1.0i-14.6 is installed
  • OR libopenssl1_1-1.1.0i-14.6 is installed
  • OR libopenssl1_1-32bit-1.1.0i-14.6 is installed
  • OR libopenssl1_1-hmac-1.1.0i-14.6 is installed
  • OR libopenssl1_1-hmac-32bit-1.1.0i-14.6 is installed
  • OR openssl-1_1-1.1.0i-14.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND Package Information
  • libpq5-12.4-8.6 is installed
  • OR libpq5-32bit-12.4-8.6 is installed
  • OR postgresql12-12.4-8.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr6.5-3.33 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr6.5-3.33 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr6.5-3.33 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr6.5-3.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-197_29-default-4-2 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_8-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • hunspell-1.6.2-3.3 is installed
  • OR hunspell-devel-32bit-1.6.2-3.3 is installed
  • OR libhunspell-1_6-0-32bit-1.6.2-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
  • AND Package Information
  • libzstd-devel-static-1.4.4-1.3 is installed
  • OR zstd-1.4.4-1.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Python2 packages 15 SP1 is installed
  • AND Package Information
  • python-pip-10.0.1-3.3 is installed
  • OR python2-pip-10.0.1-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • qemu-3.1.1.1-9.21 is installed
  • OR qemu-arm-3.1.1.1-9.21 is installed
  • OR qemu-audio-alsa-3.1.1.1-9.21 is installed
  • OR qemu-audio-oss-3.1.1.1-9.21 is installed
  • OR qemu-audio-pa-3.1.1.1-9.21 is installed
  • OR qemu-block-curl-3.1.1.1-9.21 is installed
  • OR qemu-block-iscsi-3.1.1.1-9.21 is installed
  • OR qemu-block-rbd-3.1.1.1-9.21 is installed
  • OR qemu-block-ssh-3.1.1.1-9.21 is installed
  • OR qemu-guest-agent-3.1.1.1-9.21 is installed
  • OR qemu-ipxe-1.0.0+-9.21 is installed
  • OR qemu-kvm-3.1.1.1-9.21 is installed
  • OR qemu-lang-3.1.1.1-9.21 is installed
  • OR qemu-ppc-3.1.1.1-9.21 is installed
  • OR qemu-s390-3.1.1.1-9.21 is installed
  • OR qemu-seabios-1.12.0-9.21 is installed
  • OR qemu-sgabios-8-9.21 is installed
  • OR qemu-ui-curses-3.1.1.1-9.21 is installed
  • OR qemu-ui-gtk-3.1.1.1-9.21 is installed
  • OR qemu-vgabios-1.12.0-9.21 is installed
  • OR qemu-x86-3.1.1.1-9.21 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND libarchive13-3.1.2-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • openvpn-2.3.8-16.17 is installed
  • OR openvpn-auth-pam-plugin-2.3.8-16.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND libXvMC1-1.0.8-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND clamav-0.100.1-33.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • git-2.12.3-27.14 is installed
  • OR git-core-2.12.3-27.14 is installed
  • OR git-doc-2.12.3-27.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_103-92_53-default-6-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_16-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • accountsservice-0.6.42-14 is installed
  • OR accountsservice-lang-0.6.42-14 is installed
  • OR libaccountsservice0-0.6.42-14 is installed
  • OR typelib-1_0-AccountsService-1_0-0.6.42-14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libecpg6-10.9-1.12 is installed
  • OR libpq5-10.9-1.12 is installed
  • OR libpq5-32bit-10.9-1.12 is installed
  • OR postgresql10-10.9-1.12 is installed
  • OR postgresql10-contrib-10.9-1.12 is installed
  • OR postgresql10-docs-10.9-1.12 is installed
  • OR postgresql10-libs-10.9-1.12 is installed
  • OR postgresql10-plperl-10.9-1.12 is installed
  • OR postgresql10-plpython-10.9-1.12 is installed
  • OR postgresql10-pltcl-10.9-1.12 is installed
  • OR postgresql10-server-10.9-1.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_162-94_69-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_21-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND clamav-0.100.2-33.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • python-pyOpenSSL-16.0.0-4.6 is installed
  • OR python3-pyOpenSSL-16.0.0-4.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • libvirt-4.0.0-9.35 is installed
  • OR libvirt-admin-4.0.0-9.35 is installed
  • OR libvirt-client-4.0.0-9.35 is installed
  • OR libvirt-daemon-4.0.0-9.35 is installed
  • OR libvirt-daemon-config-network-4.0.0-9.35 is installed
  • OR libvirt-daemon-config-nwfilter-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-interface-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-libxl-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-lxc-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-network-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-nodedev-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-nwfilter-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-qemu-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-secret-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-core-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-disk-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-iscsi-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-logical-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-mpath-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-rbd-4.0.0-9.35 is installed
  • OR libvirt-daemon-driver-storage-scsi-4.0.0-9.35 is installed
  • OR libvirt-daemon-hooks-4.0.0-9.35 is installed
  • OR libvirt-daemon-lxc-4.0.0-9.35 is installed
  • OR libvirt-daemon-qemu-4.0.0-9.35 is installed
  • OR libvirt-daemon-xen-4.0.0-9.35 is installed
  • OR libvirt-devel-4.0.0-9.35 is installed
  • OR libvirt-doc-4.0.0-9.35 is installed
  • OR libvirt-libs-4.0.0-9.35 is installed
  • OR libvirt-lock-sanlock-4.0.0-9.35 is installed
  • OR libvirt-nss-4.0.0-9.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • nodejs8-8.17.0-3.28 is installed
  • OR nodejs8-devel-8.17.0-3.28 is installed
  • OR nodejs8-docs-8.17.0-3.28 is installed
  • OR npm8-8.17.0-3.28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND Package Information
  • kernel-default-4.12.14-25.16 is installed
  • OR kernel-default-extra-4.12.14-25.16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP2 is installed
  • AND Package Information
  • kernel-default-5.3.18-24.29 is installed
  • OR kernel-default-extra-5.3.18-24.29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • openstack-heat-5.0.2~a0~dev9-1 is installed
  • OR openstack-heat-api-5.0.2~a0~dev9-1 is installed
  • OR openstack-heat-api-cfn-5.0.2~a0~dev9-1 is installed
  • OR openstack-heat-api-cloudwatch-5.0.2~a0~dev9-1 is installed
  • OR openstack-heat-engine-5.0.2~a0~dev9-1 is installed
  • OR openstack-heat-plugin-heat_docker-5.0.2~a0~dev9-1 is installed
  • OR python-heat-5.0.2~a0~dev9-1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • ansible-2.2.3.0-5 is installed
  • OR monasca-installer-20170912_10.45-5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND python-Twisted-15.2.1-9.5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • xen-4.9.4_06-3.59 is installed
  • OR xen-doc-html-4.9.4_06-3.59 is installed
  • OR xen-libs-4.9.4_06-3.59 is installed
  • OR xen-libs-32bit-4.9.4_06-3.59 is installed
  • OR xen-tools-4.9.4_06-3.59 is installed
  • OR xen-tools-domU-4.9.4_06-3.59 is installed
  • BACK