Oval Definition:oval:org.opensuse.security:def:56241
Revision Date:2020-12-01Version:1
Title:Security update for openssl (Moderate)
Description:



This update for openssl fixes the following issues contained in the OpenSSL Security Advisory [26 Jan 2017] (bsc#1021641)

Security issues fixed: - CVE-2016-7055: The x86_64 optimized montgomery multiplication may produce incorrect results (bsc#1009528) - CVE-2017-3731: Truncated packet could crash via OOB read (bsc#1022085) - CVE-2017-3732: BN_mod_exp may produce incorrect results on x86_64 (bsc#1022086) - Degrade the 3DES cipher to MEDIUM in SSLv2 (bsc#1001912)

Non-security issues fixed: - fix crash in openssl speed (bsc#1000677) - fix X509_CERT_FILE path (bsc#1022271) - AES XTS key parts must not be identical in FIPS mode (bsc#1019637)
Family:unixClass:patch
Status:Reference(s):1000677
1001912
1004490
1006368
1007249
1009528
1009961
1010470
1012382
1019637
1021641
1022085
1022086
1022271
1034849
1045330
1047626
1055755
1059465
1062568
1063416
1066001
1066471
1066472
1067118
1068032
1069496
1072689
1072865
1074488
1075617
1075621
1077182
1077560
1077779
1078669
1078672
1078673
1078674
1080255
1080287
1080464
1080757
1081512
1082299
1083125
1083244
1083483
1083494
1083640
1084323
1085107
1085114
1085447
1090368
1090646
1114592
1135254
1141897
1142649
1142654
1148517
1149145
758040
860993
904035
912738
915183
924919
933782
937444
940017
940946
942082
947128
948330
949298
951392
951815
952976
953369
954992
955308
955654
955837
955925
956084
956375
956514
956708
956949
957986
957988
957990
958000
958463
958886
958906
958912
958951
959190
959312
959399
959649
959705
961500
961509
961516
961658
962965
963276
963561
963765
963767
964201
964818
966094
966137
966437
966693
967042
967812
967814
967815
967964
967965
967966
967967
967972
967973
967974
967975
968011
968012
968013
969307
974208
975788
978260
983015
987198
988408
989566
995058
995102
995620
996015
999582
CVE-2009-1886
CVE-2009-1888
CVE-2009-2813
CVE-2009-2906
CVE-2009-2948
CVE-2009-3297
CVE-2009-4029
CVE-2010-0547
CVE-2010-0728
CVE-2010-0787
CVE-2010-0926
CVE-2010-1635
CVE-2010-1642
CVE-2010-2063
CVE-2010-3069
CVE-2011-0541
CVE-2011-0719
CVE-2011-2522
CVE-2011-2694
CVE-2012-0817
CVE-2012-0870
CVE-2012-1182
CVE-2012-2111
CVE-2012-6150
CVE-2013-0172
CVE-2013-0213
CVE-2013-0214
CVE-2013-0454
CVE-2013-1863
CVE-2013-1982
CVE-2013-1992
CVE-2013-4124
CVE-2013-4408
CVE-2013-4475
CVE-2013-4476
CVE-2013-4496
CVE-2013-6442
CVE-2013-7446
CVE-2014-0038
CVE-2014-0178
CVE-2014-0239
CVE-2014-0244
CVE-2014-3493
CVE-2014-3560
CVE-2014-3618
CVE-2014-8143
CVE-2014-9273
CVE-2015-0240
CVE-2015-3202
CVE-2015-3223
CVE-2015-5174
CVE-2015-5252
CVE-2015-5296
CVE-2015-5299
CVE-2015-5330
CVE-2015-5345
CVE-2015-5346
CVE-2015-5351
CVE-2015-5370
CVE-2015-7515
CVE-2015-7550
CVE-2015-7560
CVE-2015-8467
CVE-2015-8539
CVE-2015-8543
CVE-2015-8543
CVE-2015-8550
CVE-2015-8551
CVE-2015-8552
CVE-2015-8569
CVE-2015-8575
CVE-2015-8767
CVE-2015-8785
CVE-2015-8812
CVE-2016-0706
CVE-2016-0714
CVE-2016-0723
CVE-2016-0763
CVE-2016-0771
CVE-2016-2069
CVE-2016-2110
CVE-2016-2111
CVE-2016-2112
CVE-2016-2113
CVE-2016-2115
CVE-2016-2118
CVE-2016-2119
CVE-2016-2384
CVE-2016-2543
CVE-2016-2544
CVE-2016-2545
CVE-2016-2546
CVE-2016-2547
CVE-2016-2548
CVE-2016-2549
CVE-2016-7055
CVE-2016-7915
CVE-2016-8867
CVE-2017-1000405
CVE-2017-12190
CVE-2017-12193
CVE-2017-13166
CVE-2017-15102
CVE-2017-15299
CVE-2017-16525
CVE-2017-16527
CVE-2017-16529
CVE-2017-16531
CVE-2017-16535
CVE-2017-16536
CVE-2017-16537
CVE-2017-16644
CVE-2017-16649
CVE-2017-16650
CVE-2017-16911
CVE-2017-16912
CVE-2017-16913
CVE-2017-16914
CVE-2017-16939
CVE-2017-18017
CVE-2017-18204
CVE-2017-18208
CVE-2017-18221
CVE-2017-3509
CVE-2017-3511
CVE-2017-3512
CVE-2017-3514
CVE-2017-3526
CVE-2017-3533
CVE-2017-3539
CVE-2017-3544
CVE-2017-3731
CVE-2017-3732
CVE-2018-1066
CVE-2018-1068
CVE-2018-5332
CVE-2018-5333
CVE-2018-6927
CVE-2018-7566
CVE-2018-8781
CVE-2018-8897
CVE-2019-14250
CVE-2019-15847
SUSE-SU-2016:0769-1
SUSE-SU-2016:0911-1
SUSE-SU-2016:3084-1
SUSE-SU-2017:0441-1
SUSE-SU-2017:1445-1
SUSE-SU-2017:3210-1
SUSE-SU-2018:0848-1
SUSE-SU-2018:1513-1
SUSE-SU-2020:0394-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • freerdp-2.0.0~rc2-lp150.1 is installed
  • OR libfreerdp2-2.0.0~rc2-lp150.1 is installed
  • OR libwinpr2-2.0.0~rc2-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libmariadb-devel-3.1.2-lp151.3.3 is installed
  • OR libmariadb3-3.1.2-lp151.3.3 is installed
  • OR libmariadb3-32bit-3.1.2-lp151.3.3 is installed
  • OR libmariadb_plugins-3.1.2-lp151.3.3 is installed
  • OR libmariadbprivate-3.1.2-lp151.3.3 is installed
  • OR libmysqld-devel-10.2.25-lp151.2.3 is installed
  • OR libmysqld19-10.2.25-lp151.2.3 is installed
  • OR mariadb-10.2.25-lp151.2.3 is installed
  • OR mariadb-bench-10.2.25-lp151.2.3 is installed
  • OR mariadb-client-10.2.25-lp151.2.3 is installed
  • OR mariadb-connector-c-3.1.2-lp151.3.3 is installed
  • OR mariadb-errormessages-10.2.25-lp151.2.3 is installed
  • OR mariadb-galera-10.2.25-lp151.2.3 is installed
  • OR mariadb-test-10.2.25-lp151.2.3 is installed
  • OR mariadb-tools-10.2.25-lp151.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • kernel-default-3.0.101-71 is installed
  • OR kernel-default-base-3.0.101-71 is installed
  • OR kernel-default-devel-3.0.101-71 is installed
  • OR kernel-default-extra-3.0.101-71 is installed
  • OR kernel-pae-3.0.101-71 is installed
  • OR kernel-pae-base-3.0.101-71 is installed
  • OR kernel-pae-devel-3.0.101-71 is installed
  • OR kernel-pae-extra-3.0.101-71 is installed
  • OR kernel-source-3.0.101-71 is installed
  • OR kernel-syms-3.0.101-71 is installed
  • OR kernel-trace-3.0.101-71 is installed
  • OR kernel-trace-devel-3.0.101-71 is installed
  • OR kernel-xen-3.0.101-71 is installed
  • OR kernel-xen-base-3.0.101-71 is installed
  • OR kernel-xen-devel-3.0.101-71 is installed
  • OR kernel-xen-extra-3.0.101-71 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-59 is installed
  • OR libopenssl1_0_0-1.0.2j-59 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-59 is installed
  • OR openssl-1.0.2j-59 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • automake-1.13.4-4 is installed
  • OR m4-1.4.16-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kernel-default-3.12.74-60.64.66 is installed
  • OR kernel-default-base-3.12.74-60.64.66 is installed
  • OR kernel-default-devel-3.12.74-60.64.66 is installed
  • OR kernel-default-man-3.12.74-60.64.66 is installed
  • OR kernel-devel-3.12.74-60.64.66 is installed
  • OR kernel-macros-3.12.74-60.64.66 is installed
  • OR kernel-source-3.12.74-60.64.66 is installed
  • OR kernel-syms-3.12.74-60.64.66 is installed
  • OR kernel-xen-3.12.74-60.64.66 is installed
  • OR kernel-xen-base-3.12.74-60.64.66 is installed
  • OR kernel-xen-devel-3.12.74-60.64.66 is installed
  • OR kgraft-patch-3_12_74-60_64_66-default-1-2 is installed
  • OR kgraft-patch-3_12_74-60_64_66-xen-1-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_23-1-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libXext6-1.3.2-3 is installed
  • OR libXext6-32bit-1.3.2-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.25-38.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_103-92_56-default-12-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_17-12-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.25-38.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libthai-data-0.1.25-4 is installed
  • OR libthai0-0.1.25-4 is installed
  • OR libthai0-32bit-0.1.25-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libtiff5-4.0.9-44.30 is installed
  • OR libtiff5-32bit-4.0.9-44.30 is installed
  • OR tiff-4.0.9-44.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND mutt-1.10.1-55.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • containerd-0.2.4+gitr565_0366d7e-9 is installed
  • OR docker-1.12.3-81 is installed
  • OR runc-0.1.1+gitr2816_02f8fa7-9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND ucode-intel-20180703-13.25 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • curl-7.37.0-37.47 is installed
  • OR libcurl4-7.37.0-37.47 is installed
  • OR libcurl4-32bit-7.37.0-37.47 is installed
  • BACK