Oval Definition:oval:org.opensuse.security:def:81590
Revision Date:2018-11-22Version:1
Title:Security update for openssl (Moderate)
Description:

This update for openssl fixes the following issues:

Security issues fixed:

- CVE-2018-0734: Fixed timing vulnerability in DSA signature generation (bsc#1113652). - CVE-2018-5407: Fixed elliptic curve scalar multiplication timing attack defenses (bsc#1113534). - Add missing timing side channel patch for DSA signature generation (bsc#1113742).

Non-security issues fixed:

- Fixed infinite loop in DSA generation with incorrect parameters (bsc#1112209).
Family:unixClass:patch
Status:Reference(s):1112209
1113534
1113652
1113742
CVE-2018-0734
CVE-2018-5407
SUSE-SU-2018:3866-1
Platform(s):SUSE Linux Enterprise Server 12 SP2-LTSS
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.46.1 is installed
  • OR libopenssl1_0_0-1.0.2j-60.46.1 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.46.1 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.46.1 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.46.1 is installed
  • OR openssl-1.0.2j-60.46.1 is installed
  • OR openssl-doc-1.0.2j-60.46.1 is installed
  • BACK