Oval Definition:
oval:org.opensuse.security:def:86854
Revision Date
:
2018-11-22
Version
:
1
Title
:
Security update for openssl (Moderate)
Description
:
This update for openssl fixes the following issues:
Security issues fixed:
- CVE-2018-0734: Fixed timing vulnerability in DSA signature generation (bsc#1113652). - CVE-2018-5407: Fixed elliptic curve scalar multiplication timing attack defenses (bsc#1113534). - Add missing timing side channel patch for DSA signature generation (bsc#1113742).
Non-security issues fixed:
- Fixed infinite loop in DSA generation with incorrect parameters (bsc#1112209).
Family
:
unix
Class
:
patch
Status
:
Reference(s)
:
1112209
1113534
1113652
1113742
CVE-2018-0734
CVE-2018-5407
Platform(s)
:
SUSE Linux Enterprise Server 12 SP3-TERADATA
Product(s)
:
Definition Synopsis
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND
Package Information
libopenssl-devel-1.0.2j-60.46.1 is installed
OR
libopenssl1_0_0-1.0.2j-60.46.1 is installed
OR
libopenssl1_0_0-32bit-1.0.2j-60.46.1 is installed
OR
libopenssl1_0_0-hmac-1.0.2j-60.46.1 is installed
OR
libopenssl1_0_0-hmac-32bit-1.0.2j-60.46.1 is installed
OR
openssl-1.0.2j-60.46.1 is installed
OR
openssl-doc-1.0.2j-60.46.1 is installed
BACK