Oval Definition:oval:org.opensuse.security:def:78087
Revision Date:2014-12-01Version:1
Title:Security update for compat-openssl098 (Moderate)
Description:

compat-openssl098 was updated to fix three security issues. NOTE: this update alone DOESN'T FIX the POODLE SSL protocol vulnerability. OpenSSL only adds downgrade detection support for client applications. See https://www.suse.com/support/kb/doc.php?id=7015773 for mitigations.

These security issues were fixed: - Session ticket memory leak (CVE-2014-3567). - Fixed build option no-ssl3 (CVE-2014-3568). - Added support for TLS_FALLBACK_SCSV (CVE-2014-3566).
Family:unixClass:patch
Status:Reference(s):901223
901277
CVE-2014-3566
CVE-2014-3567
CVE-2014-3568
Platform(s):SUSE Linux Enterprise Desktop 12
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • libopenssl0_9_8-0.9.8j-66.3 is installed
  • OR libopenssl0_9_8-32bit-0.9.8j-66.3 is installed
  • BACK