Oval Definition:oval:org.opensuse.security:def:60039
Revision Date:2020-12-01Version:1
Title:Security update for openssl (Moderate)
Description:

This update for openssl fixes the following issues:

Security issues fixed:

- The 9 Lives of Bleichenbacher's CAT: Cache Attacks on TLS Implementations (bsc#1117951) - CVE-2019-1559: Fixed OpenSSL 0-byte Record Padding Oracle which under certain circumstances a TLS server can be forced to respond differently to a client and lead to the decryption of the data (bsc#1127080).

Other issues addressed:

- Fixed IV handling in SHAEXT paths: aes/asm/aesni-sha*-x86_64.pl (bsc#1113975). - Set TLS version to 0 in msg_callback for record messages to avoid confusing applications (bsc#1100078).
Family:unixClass:patch
Status:Reference(s):1036304
1045735
1046853
1046858
1047964
1047965
1049344
1049825
1070851
1076192
1088705
1091624
1092413
1096803
1099847
1100028
1100078
1101349
1102429
1113975
1117951
1125330
1127080
1127987
1129821
1130262
1137443
1166844
1167068
1170558
1170771
1171363
1172205
1172798
1172846
1172906
1172935
1173197
1173378
1173380
1173972
1173998
1174753
1174817
1175168
1175194
1175534
1176343
1176344
1176345
1176346
1176347
1176348
1176349
1176350
1178666
1178667
1178668
682920
CVE-2009-0688
CVE-2014-0467
CVE-2014-9116
CVE-2015-5276
CVE-2017-10684
CVE-2017-10685
CVE-2017-11112
CVE-2017-11113
CVE-2017-9269
CVE-2018-18335
CVE-2018-18356
CVE-2018-18506
CVE-2018-7685
CVE-2019-12735
CVE-2019-1559
CVE-2019-5785
CVE-2019-9788
CVE-2019-9790
CVE-2019-9791
CVE-2019-9792
CVE-2019-9793
CVE-2019-9794
CVE-2019-9795
CVE-2019-9796
CVE-2019-9801
CVE-2019-9810
CVE-2019-9813
CVE-2020-0543
CVE-2020-10531
CVE-2020-12108
CVE-2020-12137
CVE-2020-12243
CVE-2020-13753
CVE-2020-13844
CVE-2020-14093
CVE-2020-14154
CVE-2020-14350
CVE-2020-14364
CVE-2020-14954
CVE-2020-15565
CVE-2020-15567
CVE-2020-25595
CVE-2020-25596
CVE-2020-25597
CVE-2020-25599
CVE-2020-25600
CVE-2020-25601
CVE-2020-25603
CVE-2020-25604
CVE-2020-25694
CVE-2020-25695
CVE-2020-25696
CVE-2020-9802
CVE-2020-9803
CVE-2020-9805
CVE-2020-9806
CVE-2020-9807
CVE-2020-9843
CVE-2020-9850
SUSE-SU-2017:2075-1
SUSE-SU-2018:2814-1
SUSE-SU-2019:0852-1
SUSE-SU-2019:1456-1
SUSE-SU-2020:1180-1
SUSE-SU-2020:1193-1
SUSE-SU-2020:1794-1
SUSE-SU-2020:3263-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
openSUSE Leap 15.1 NonFree
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • python-2.7.14-lp150.5 is installed
  • OR python-curses-2.7.14-lp150.5 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libheimdal-7.7.0-lp151.3.3 is installed
  • OR libheimdal-devel-7.7.0-lp151.3.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 NonFree is installed
  • AND opera-68.0.3618.104-lp151.2.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.49 is installed
  • OR libopenssl1_0_0-1.0.2j-60.49 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.49 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.49 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.49 is installed
  • OR openssl-1.0.2j-60.49 is installed
  • OR openssl-doc-1.0.2j-60.49 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • cyrus-sasl-2.1.26-7 is installed
  • OR cyrus-sasl-32bit-2.1.26-7 is installed
  • OR cyrus-sasl-crammd5-2.1.26-7 is installed
  • OR cyrus-sasl-crammd5-32bit-2.1.26-7 is installed
  • OR cyrus-sasl-digestmd5-2.1.26-7 is installed
  • OR cyrus-sasl-gssapi-2.1.26-7 is installed
  • OR cyrus-sasl-gssapi-32bit-2.1.26-7 is installed
  • OR cyrus-sasl-otp-2.1.26-7 is installed
  • OR cyrus-sasl-otp-32bit-2.1.26-7 is installed
  • OR cyrus-sasl-plain-2.1.26-7 is installed
  • OR cyrus-sasl-plain-32bit-2.1.26-7 is installed
  • OR cyrus-sasl-saslauthd-2.1.26-7 is installed
  • OR cyrus-sasl-sqlauxprop-2.1.26-7 is installed
  • OR cyrus-sasl-sqlauxprop-32bit-2.1.26-7 is installed
  • OR libsasl2-3-2.1.26-7 is installed
  • OR libsasl2-3-32bit-2.1.26-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND squid-3.5.21-26.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • icu-52.1-8.10 is installed
  • OR libicu-doc-52.1-8.10 is installed
  • OR libicu52_1-52.1-8.10 is installed
  • OR libicu52_1-32bit-52.1-8.10 is installed
  • OR libicu52_1-data-52.1-8.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • gnome-shell-search-provider-nautilus-3.20.3-23.6 is installed
  • OR libnautilus-extension1-3.20.3-23.6 is installed
  • OR nautilus-3.20.3-23.6 is installed
  • OR nautilus-lang-3.20.3-23.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • bash-4.3-83.15 is installed
  • OR bash-doc-4.3-83.15 is installed
  • OR libreadline6-6.3-83.15 is installed
  • OR libreadline6-32bit-6.3-83.15 is installed
  • OR readline-doc-6.3-83.15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • gcc10-10.2.1+git583-1.3 is installed
  • OR libasan6-10.2.1+git583-1.3 is installed
  • OR libasan6-32bit-10.2.1+git583-1.3 is installed
  • OR libatomic1-10.2.1+git583-1.3 is installed
  • OR libatomic1-32bit-10.2.1+git583-1.3 is installed
  • OR libgcc_s1-10.2.1+git583-1.3 is installed
  • OR libgcc_s1-32bit-10.2.1+git583-1.3 is installed
  • OR libgfortran5-10.2.1+git583-1.3 is installed
  • OR libgfortran5-32bit-10.2.1+git583-1.3 is installed
  • OR libgo16-10.2.1+git583-1.3 is installed
  • OR libgo16-32bit-10.2.1+git583-1.3 is installed
  • OR libgomp1-10.2.1+git583-1.3 is installed
  • OR libgomp1-32bit-10.2.1+git583-1.3 is installed
  • OR libitm1-10.2.1+git583-1.3 is installed
  • OR libitm1-32bit-10.2.1+git583-1.3 is installed
  • OR liblsan0-10.2.1+git583-1.3 is installed
  • OR libobjc4-10.2.1+git583-1.3 is installed
  • OR libobjc4-32bit-10.2.1+git583-1.3 is installed
  • OR libquadmath0-10.2.1+git583-1.3 is installed
  • OR libquadmath0-32bit-10.2.1+git583-1.3 is installed
  • OR libstdc++6-10.2.1+git583-1.3 is installed
  • OR libstdc++6-32bit-10.2.1+git583-1.3 is installed
  • OR libstdc++6-locale-10.2.1+git583-1.3 is installed
  • OR libstdc++6-pp-gcc10-10.2.1+git583-1.3 is installed
  • OR libstdc++6-pp-gcc10-32bit-10.2.1+git583-1.3 is installed
  • OR libtsan0-10.2.1+git583-1.3 is installed
  • OR libubsan1-10.2.1+git583-1.3 is installed
  • OR libubsan1-32bit-10.2.1+git583-1.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • xen-4.11.4_04-2.30 is installed
  • OR xen-doc-html-4.11.4_04-2.30 is installed
  • OR xen-libs-4.11.4_04-2.30 is installed
  • OR xen-libs-32bit-4.11.4_04-2.30 is installed
  • OR xen-tools-4.11.4_04-2.30 is installed
  • OR xen-tools-domU-4.11.4_04-2.30 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND mutt-1.10.1-55.11 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • tomcat-9.0.36-3.45 is installed
  • OR tomcat-admin-webapps-9.0.36-3.45 is installed
  • OR tomcat-docs-webapp-9.0.36-3.45 is installed
  • OR tomcat-el-3_0-api-9.0.36-3.45 is installed
  • OR tomcat-javadoc-9.0.36-3.45 is installed
  • OR tomcat-jsp-2_3-api-9.0.36-3.45 is installed
  • OR tomcat-lib-9.0.36-3.45 is installed
  • OR tomcat-servlet-4_0-api-9.0.36-3.45 is installed
  • OR tomcat-webapps-9.0.36-3.45 is installed
  • BACK