Revision Date: | 2021-03-25 | Version: | 1 |
Title: | Security update for openssl-1_1 (Important) |
Description: |
This update for openssl-1_1 fixes the following security issue:
CVE-2021-3449: An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension but includes a signature_algorithms_cert extension, then a NULL pointer dereference will result, leading to a crash and a denial of service attack. OpenSSL TLS clients are not impacted by this issue. [bsc#1183852]
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1012382 1015342 1015343 1017967 1019695 1019699 1020412 1021121 1022604 1024361 1024365 1024376 1027968 1030552 1033962 1042286 1042812 1042826 1043289 1048317 1049072 1050431 1053685 1055014 1056596 1062604 1063646 1064232 1065364 1066223 1068032 1068075 1069138 1077445 1078921 1080157 1082063 1082210 1083417 1083420 1083422 1083424 1083426 1083663 1085042 1085536 1085539 1086457 1087092 1089066 1090888 1091171 1091860 1092903 1096254 1096748 1097105 1097356 1098253 1098822 1099597 1099810 1099811 1099813 1099832 1099844 1099845 1099846 1099849 1099863 1099864 1099922 1099999 1100000 1100001 1100132 1101822 1101841 1102346 1102486 1102517 1102715 1102797 1103269 1103445 1103737 1104319 1104485 1104494 1104495 1104683 1104897 1105271 1105292 1105322 1105392 1105396 1105524 1105536 1105769 1106016 1106105 1106185 1106229 1106271 1106275 1106276 1106278 1106281 1106283 1106369 1106509 1106511 1106594 1106697 1106914 1106929 1106934 1106995 1107060 1107078 1107319 1107320 1107689 1107735 1107966 1114674 1117632 1117951 1155787 1158809 1160163 1160968 1166844 1168422 1169511 1171352 1172277 1174157 1183852 963575 966170 966172 969470 969476 969477 970506 CVE-2009-3700 CVE-2009-3826 CVE-2015-8936 CVE-2016-10164 CVE-2016-1549 CVE-2017-11403 CVE-2017-2518 CVE-2017-9439 CVE-2017-9440 CVE-2017-9501 CVE-2018-10876 CVE-2018-10877 CVE-2018-10878 CVE-2018-10879 CVE-2018-10880 CVE-2018-10881 CVE-2018-10882 CVE-2018-10883 CVE-2018-10902 CVE-2018-10938 CVE-2018-10940 CVE-2018-1128 CVE-2018-1129 CVE-2018-12896 CVE-2018-13093 CVE-2018-13094 CVE-2018-13095 CVE-2018-14424 CVE-2018-15572 CVE-2018-16476 CVE-2018-16658 CVE-2018-18311 CVE-2018-5848 CVE-2018-6554 CVE-2018-6555 CVE-2018-7170 CVE-2018-7182 CVE-2018-7183 CVE-2018-7184 CVE-2018-7185 CVE-2018-9363 CVE-2019-1551 CVE-2019-2949 CVE-2020-10531 CVE-2020-14577 CVE-2020-14578 CVE-2020-14579 CVE-2020-14581 CVE-2020-14583 CVE-2020-14593 CVE-2020-14621 CVE-2020-2654 CVE-2020-2754 CVE-2020-2755 CVE-2020-2756 CVE-2020-2757 CVE-2020-2781 CVE-2020-2800 CVE-2020-2803 CVE-2020-2805 CVE-2020-2830 CVE-2020-3898 CVE-2021-3449 SUSE-SU-2017:2199-1 SUSE-SU-2018:2527-1 SUSE-SU-2018:2835-1 SUSE-SU-2018:2858-1 SUSE-SU-2019:0152-1 SUSE-SU-2019:3050-1 SUSE-SU-2020:0474-1 SUSE-SU-2020:1180-1 SUSE-SU-2020:1685-1 SUSE-SU-2020:2861-1
|
Platform(s): | openSUSE Leap 15.0 openSUSE Leap 15.1 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 12 SP4-ESPOS SUSE OpenStack Cloud 8 SUSE OpenStack Cloud Crowbar 8 SUSE OpenStack Cloud Crowbar 9
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND libvdpau1-1.1.1-lp150.1 is installed
|
Definition Synopsis |
openSUSE Leap 15.1 is installed
AND Package Information
libu2f-host-1.1.6-lp151.2.6 is installed
OR libu2f-host-devel-1.1.6-lp151.2.6 is installed
OR libu2f-host-doc-1.1.6-lp151.2.6 is installed
OR libu2f-host0-1.1.6-lp151.2.6 is installed
OR pam_u2f-1.0.8-lp151.2.3 is installed
OR u2f-host-1.1.6-lp151.2.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND Package Information
icu-52.1-8.10 is installed
OR libicu-doc-52.1-8.10 is installed
OR libicu52_1-52.1-8.10 is installed
OR libicu52_1-32bit-52.1-8.10 is installed
OR libicu52_1-data-52.1-8.10 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
ntp-4.2.8p11-64.5 is installed
OR ntp-doc-4.2.8p11-64.5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND Package Information
libXpm4-3.5.11-5 is installed
OR libXpm4-32bit-3.5.11-5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND Package Information
libpolkit0-0.113-5.18 is installed
OR polkit-0.113-5.18 is installed
OR typelib-1_0-Polkit-1_0-0.113-5.18 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND squid-3.5.21-26.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND Package Information
perl-5.18.2-12.20 is installed
OR perl-32bit-5.18.2-12.20 is installed
OR perl-base-5.18.2-12.20 is installed
OR perl-doc-5.18.2-12.20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND Package Information
ImageMagick-6.8.8.1-71.74 is installed
OR libMagickCore-6_Q16-1-6.8.8.1-71.74 is installed
OR libMagickWand-6_Q16-1-6.8.8.1-71.74 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND Package Information
dracut-044.1-9 is installed
OR dracut-fips-044.1-9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
AND Package Information
libopenssl1_1-1.1.1d-2.33.1 is installed
OR libopenssl1_1-32bit-1.1.1d-2.33.1 is installed
OR openssl-1_1-1.1.1d-2.33.1 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 8 is installed
AND Package Information
libsqlite3-0-3.8.10.2-9.15 is installed
OR libsqlite3-0-32bit-3.8.10.2-9.15 is installed
OR sqlite3-3.8.10.2-9.15 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 8 is installed
AND Package Information
ruby2.1-rubygem-activejob-4_2-4.2.9-3.6 is installed
OR rubygem-activejob-4_2-4.2.9-3.6 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 9 is installed
AND Package Information
libdcerpc-binding0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libdcerpc-binding0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libdcerpc0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libdcerpc0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libndr-krb5pac0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libndr-krb5pac0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libndr-nbt0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libndr-nbt0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libndr-standard0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libndr-standard0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libndr0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libndr0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libnetapi0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libnetapi0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-credentials0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-credentials0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-errors0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-errors0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-hostconfig0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-hostconfig0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-passdb0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-passdb0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-util0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamba-util0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamdb0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsamdb0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsmbclient0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsmbclient0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsmbconf0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsmbconf0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsmbldap0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libsmbldap0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libtevent-util0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libtevent-util0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libwbclient0-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR libwbclient0-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR samba-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR samba-client-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR samba-client-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR samba-doc-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR samba-libs-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR samba-libs-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR samba-winbind-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
OR samba-winbind-32bit-4.6.16+git.186.c6d77b0d5a6-3.52 is installed
|