Vulnerability Name:

CVE-2006-2940 (CCN-29230)

Assigned:2006-09-28
Published:2006-09-28
Updated:2018-10-18
Summary:OpenSSL 0.9.7 before 0.9.7l, 0.9.8 before 0.9.8d, and earlier versions allows attackers to cause a denial of service (CPU consumption) via parasitic public keys with large (1) "public exponent" or (2) "public modulus" values in X.509 certificates that require extra time to process when using RSA signature verification.
CVSS v3 Severity:7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:7.8 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
5.8 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
5.8 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Type:CWE-399
Vulnerability Consequences:Denial of Service
References:Source: NETBSD
Type: UNKNOWN
NetBSD-SA2008-007

Source: SGI
Type: UNKNOWN
20061001-01-P

Source: CCN
Type: Full-Disclosure Mailing List, Thu Sep 28 2006 - 07:44:23 CDT
[SECURITY] OpenSSL 0.9.8d and 0.9.7l released

Source: CCN
Type: Full-Disclosure Mailing List, Mon Jan 08 2007 - 20:17:36 CST
VMware ESX server security updates

Source: MITRE
Type: CNA
CVE-2006-2940

Source: CCN
Type: Apple Security Update 2006-007
About the security content of Security Update 2006-007

Source: CONFIRM
Type: UNKNOWN
http://docs.info.apple.com/article.html?artnum=304829

Source: CCN
Type: HP Security Bulletin HPSBTU02207 SSRT061239 rev.2
HP Tru64 UNIX OpenSSL and BIND Remote Arbitrary Code Execution or Denial of Service (DoS)

Source: CCN
Type: HP Security Bulletin HPSBMA02250 SSRT061275 rev.1
HP System Management Homepage (SMH) for Linux and Windows, Remote Execution of Arbitrary Code and Denial of Service (DoS)

Source: HP
Type: UNKNOWN
HPSBMA02250

Source: CONFIRM
Type: UNKNOWN
http://issues.rpath.com/browse/RPL-613

Source: HP
Type: UNKNOWN
HPSBUX02174

Source: HP
Type: UNKNOWN
SSRT071299

Source: CCN
Type: Kolab Security Issue 11 20061002
openssl

Source: CONFIRM
Type: UNKNOWN
http://kolab.org/security/kolab-vendor-notice-11.txt

Source: APPLE
Type: UNKNOWN
APPLE-SA-2006-11-28

Source: FULLDISC
Type: UNKNOWN
20060928 [SECURITY] OpenSSL 0.9.8d and 0.9.7l released

Source: MLIST
Type: UNKNOWN
[security-announce] 20080317 VMSA-2008-0005 Updated VMware Workstation, VMware Player, VMware Server, VMware ACE, and VMware Fusion resolve critical security issues

Source: MLIST
Type: UNKNOWN
[bind-announce] 20061103 Internet Systems Consortium Security Advisory. [revised]

Source: HP
Type: UNKNOWN
SSRT090208

Source: OPENBSD
Type: UNKNOWN
[3.9] 20061007 013: SECURITY FIX: October 7, 2006

Source: CCN
Type: OpenVPN Web site
OpenVPNT 2.0.x Change Log

Source: CONFIRM
Type: UNKNOWN
http://openvpn.net/changelog.html

Source: CCN
Type: RHSA-2006-0695
openssl security update

Source: CCN
Type: RHSA-2008-0264
Moderate: Red Hat Network Satellite Server Solaris client security update

Source: CCN
Type: RHSA-2008-0525
Moderate: Red Hat Network Satellite Server Solaris client security update

Source: CCN
Type: RHSA-2008-0629
Moderate: Red Hat Network Satellite Server Solaris client security update

Source: CCN
Type: SA22094
FileZilla / FileZilla Server Multiple Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
22094

Source: SECUNIA
Type: Vendor Advisory
22116

Source: CCN
Type: SA22130
OpenSSL Multiple Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
22130

Source: SECUNIA
Type: Vendor Advisory
22165

Source: SECUNIA
Type: Vendor Advisory
22166

Source: SECUNIA
Type: Vendor Advisory
22172

Source: SECUNIA
Type: Vendor Advisory
22186

Source: SECUNIA
Type: Vendor Advisory
22193

Source: SECUNIA
Type: Vendor Advisory
22207

Source: SECUNIA
Type: Vendor Advisory
22212

Source: CCN
Type: SA22216
Kolab Server Multiple Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
22216

Source: SECUNIA
Type: Vendor Advisory
22220

Source: SECUNIA
Type: Vendor Advisory
22240

Source: SECUNIA
Type: Vendor Advisory
22259

Source: SECUNIA
Type: Vendor Advisory
22260

Source: CCN
Type: SA22284
Serv-U FTP Server OpenSSL Multiple Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
22284

Source: SECUNIA
Type: UNKNOWN
22298

Source: SECUNIA
Type: Vendor Advisory
22330

Source: CCN
Type: SA22385
Avaya Products OpenSSL Multiple Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
22385

Source: CCN
Type: SA22460
Sun Grid Engine Multiple OpenSSL Vulnerabilities

Source: SECUNIA
Type: Vendor Advisory
22460

Source: SECUNIA
Type: UNKNOWN
22487

Source: SECUNIA
Type: Vendor Advisory
22500

Source: SECUNIA
Type: Vendor Advisory
22544

Source: CCN
Type: SA22626
SnapGear Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
22626

Source: CCN
Type: SA22671
BIND OpenSSL Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
22671

Source: CCN
Type: SA22758
Cisco Products OpenSSL Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
22758

Source: CCN
Type: SA22772
cwRsync OpenSSL Vulnerabilities and OpenSSH Weakness

Source: SECUNIA
Type: UNKNOWN
22772

Source: CCN
Type: SA22799
Cisco Products OpenSSL Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
22799

Source: CCN
Type: SA23038
IBM HMC OpenSSH / OpenSSL Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
23038

Source: CCN
Type: SA23155
Mac OS X Security Update Fixes Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
23155

Source: SECUNIA
Type: UNKNOWN
23280

Source: SECUNIA
Type: UNKNOWN
23309

Source: CCN
Type: SA23340
Avaya PDS HP-UX Secure Shell / OpenSSL Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
23340

Source: CCN
Type: SA23351
Solaris OpenSSL Denial of Service Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
23351

Source: CCN
Type: SA23680
VMWare ESX Server Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
23680

Source: CCN
Type: SA23794
Oracle Products Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
23794

Source: SECUNIA
Type: UNKNOWN
23915

Source: CCN
Type: SA24930
HP Tru64 UNIX Multiple SSL and BIND Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
24930

Source: CCN
Type: SA24950
HP Insight Management Agents SSL Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
24950

Source: CCN
Type: SA25889
Xerox ESS/ Network Controller OpenSSL Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
25889

Source: CCN
Type: SA26329
HP System Management Homepage Apache and OpenSSL Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
26329

Source: CCN
Type: SA26893
rPath update for openssl

Source: SECUNIA
Type: UNKNOWN
26893

Source: CCN
Type: SA29412
VMware Server Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
30124

Source: SECUNIA
Type: UNKNOWN
31492

Source: CCN
Type: SA31531
Reflection for Secure IT Multiple Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
31531

Source: CCN
Type: FreeBSD-SA-06:23.openssl
Multiple problems in crypto(3)

Source: FREEBSD
Type: UNKNOWN
FreeBSD-SA-06:23.openssl

Source: GENTOO
Type: UNKNOWN
GLSA-200610-11

Source: CCN
Type: SECTRACK ID: 1016943
OpenSSL ASN.1 Bugs, SSL_get_shared_ciphers() Buffer Overflow, and SSLv2 Client Error Lets Remote Users Denial of Service or Execute Arbitrary Code

Source: SECTRACK
Type: UNKNOWN
1016943

Source: CCN
Type: SECTRACK ID: 1017522
Oracle Database and Other Products Have 52 Unspecified Vulnerabilities With Unspecified Impact

Source: SECTRACK
Type: UNKNOWN
1017522

Source: SLACKWARE
Type: UNKNOWN
SSA:2006-272-01

Source: CONFIRM
Type: UNKNOWN
http://sourceforge.net/project/shownotes.php?release_id=461863&group_id=69227

Source: SUNALERT
Type: UNKNOWN
102668

Source: CCN
Type: Sun Alert ID: 102747
Security Vulnerabilities in OpenSSL May Lead to a Denial of Service (DoS) to Applications

Source: SUNALERT
Type: UNKNOWN
102747

Source: SUNALERT
Type: UNKNOWN
200585

Source: SUNALERT
Type: UNKNOWN
201534

Source: CCN
Type: Attachmate Technical Note 2374
Reflection for Secure IT UNIX Client and Server 7.0 Service Pack 1 (SP1): Fixes and Features

Source: CONFIRM
Type: UNKNOWN
http://support.attachmate.com/techdocs/2374.html

Source: CONFIRM
Type: UNKNOWN
http://support.avaya.com/elmodocs2/security/ASA-2006-220.htm

Source: CCN
Type: ASA-2006-220
openssl security update (RHSA-2006-0695)

Source: CONFIRM
Type: UNKNOWN
http://support.avaya.com/elmodocs2/security/ASA-2006-260.htm

Source: CCN
Type: ASA-2006-260
HP-UX OpenSSL Denial of Service (DoS) Increase Privilege (HPSBUX02174)

Source: CCN
Type: ASA-2007-013
Security Vulnerabilities in OpenSSL May Lead to a Denial of Service (DoS) to Applications (Sun 102747)

Source: CCN
Type: ASA-2007-018
HP-UX Apache Remote Execution of Arbitrary Code Denial of Service (DoS) and Unauthorized Access (HPSBUX02186)

Source: CONFIRM
Type: UNKNOWN
http://www.arkoon.fr/upload/alertes/37AK-2006-06-FR-1.1_FAST360_OPENSSL_ASN1.pdf

Source: CONFIRM
Type: UNKNOWN
http://www.arkoon.fr/upload/alertes/41AK-2006-08-FR-1.1_SSL360_OPENSSL_ASN1.pdf

Source: CISCO
Type: UNKNOWN
20061108 Multiple Vulnerabilities in OpenSSL Library

Source: CCN
Type: cisco-sr-20061108-openssl
Cisco Security Response: Multiple Vulnerabilities in OpenSSL Library

Source: CISCO
Type: UNKNOWN
20061108 Multiple Vulnerabilities in OpenSSL library

Source: DEBIAN
Type: UNKNOWN
DSA-1185

Source: DEBIAN
Type: UNKNOWN
DSA-1195

Source: DEBIAN
Type: DSA-1185
openssl -- denial of service

Source: DEBIAN
Type: DSA-1195
openssl096 -- denial of service (multiple)

Source: CCN
Type: GLSA-200610-11
OpenSSL: Multiple vulnerabilities

Source: CCN
Type: GLSA-200612-11
AMD64 x86 emulation base libraries: OpenSSL multiple vulnerabilities

Source: GENTOO
Type: UNKNOWN
GLSA-200612-11

Source: CCN
Type: US-CERT VU#423396
X.509 certificate verification may be vulnerable to resource exhaustion

Source: MANDRIVA
Type: UNKNOWN
MDKSA-2006:172

Source: MANDRIVA
Type: UNKNOWN
MDKSA-2006:177

Source: MANDRIVA
Type: UNKNOWN
MDKSA-2006:178

Source: SUSE
Type: UNKNOWN
SUSE-SR:2006:024

Source: SUSE
Type: UNKNOWN
SUSE-SA:2006:058

Source: CCN
Type: OpenPKG-SA-2006.021
OpenSSL

Source: OPENPKG
Type: UNKNOWN
OpenPKG-SA-2006.021

Source: CCN
Type: OpenSSL Web site
OpenSSL:The Open Source toolkit for SSL/TLS

Source: CCN
Type: OpenSSL Security Advisory [28th September 2006]
New OpenSSL releases are now available to correct four security issues.

Source: CONFIRM
Type: UNKNOWN
http://www.openssl.org/news/secadv_20060928.txt

Source: CONFIRM
Type: UNKNOWN
http://www.oracle.com/technetwork/topics/security/cpujan2007-101493.html

Source: OSVDB
Type: UNKNOWN
29261

Source: CCN
Type: OSVDB ID: 29261
OpenSSL Crafted Public Key CPU Consumption DoS

Source: REDHAT
Type: Vendor Advisory
RHSA-2006:0695

Source: REDHAT
Type: UNKNOWN
RHSA-2008:0629

Source: BUGTRAQ
Type: UNKNOWN
20060928 rPSA-2006-0175-1 openssl openssl-scripts

Source: BUGTRAQ
Type: UNKNOWN
20060929 rPSA-2006-0175-2 openssl openssl-scripts

Source: BUGTRAQ
Type: UNKNOWN
20070110 VMware ESX server security updates

Source: BUGTRAQ
Type: UNKNOWN
20080318 VMSA-2008-0005 Updated VMware Workstation, VMware Player, VMware Server, VMware ACE, and VMware Fusion resolve critical security issues

Source: BID
Type: UNKNOWN
20247

Source: CCN
Type: BID-20247
OpenSSL Public Key Processing Denial of Service Vulnerability

Source: BID
Type: UNKNOWN
22083

Source: CCN
Type: BID-22083
Oracle January 2007 Security Update Multiple Vulnerabilities

Source: BID
Type: UNKNOWN
28276

Source: CCN
Type: BID-28276
VMware Server 1.0.5 and Workstation 6.0.3 Multiple Vulnerabilities

Source: CCN
Type: BID-30723
Attachmate Reflection for Secure IT Multiple Unspecified Security Vulnerabilities

Source: CONFIRM
Type: UNKNOWN
http://www.serv-u.com/releasenotes/

Source: TRUSTIX
Type: UNKNOWN
2006-0054

Source: CCN
Type: TLSA-2006-33
openssl denial of service attack

Source: CCN
Type: USN-353-1
OpenSSL vulnerabilities

Source: UBUNTU
Type: UNKNOWN
USN-353-1

Source: CCN
Type: USN-353-2
OpenSSL vulnerabilities

Source: UBUNTU
Type: UNKNOWN
USN-353-2

Source: MISC
Type: UNKNOWN
http://www.uniras.gov.uk/niscc/docs/re-20060928-00661.pdf?lang=en

Source: CERT
Type: US Government Resource
TA06-333A

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/security/advisories/VMSA-2008-0005.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/ace2/doc/releasenotes_ace2.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/esx2/doc/esx-202-200612-patch.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/esx21/doc/esx-213-200612-patch.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/esx25/doc/esx-253-200612-patch.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/esx25/doc/esx-254-200612-patch.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/player/doc/releasenotes_player.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/player2/doc/releasenotes_player2.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/server/doc/releasenotes_server.html

Source: CCN
Type: VMware Server Web site
Key Features in VMware Server, What's New in Version 1.0.5

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/vi3/doc/esx-3069097-patch.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/vi3/doc/esx-9986131-patch.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/ws55/doc/releasenotes_ws55.html

Source: CONFIRM
Type: UNKNOWN
http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html

Source: CCN
Type: Vmware Workstation Web site
VMware Workstation 6.0 Release Notes, New in Version 6.0.3

Source: VUPEN
Type: UNKNOWN
ADV-2006-3820

Source: VUPEN
Type: UNKNOWN
ADV-2006-3860

Source: VUPEN
Type: UNKNOWN
ADV-2006-3869

Source: VUPEN
Type: UNKNOWN
ADV-2006-3902

Source: VUPEN
Type: UNKNOWN
ADV-2006-3936

Source: VUPEN
Type: UNKNOWN
ADV-2006-4019

Source: VUPEN
Type: UNKNOWN
ADV-2006-4036

Source: VUPEN
Type: UNKNOWN
ADV-2006-4264

Source: VUPEN
Type: UNKNOWN
ADV-2006-4327

Source: VUPEN
Type: UNKNOWN
ADV-2006-4329

Source: VUPEN
Type: UNKNOWN
ADV-2006-4401

Source: VUPEN
Type: UNKNOWN
ADV-2006-4417

Source: VUPEN
Type: UNKNOWN
ADV-2006-4750

Source: VUPEN
Type: UNKNOWN
ADV-2006-4980

Source: VUPEN
Type: UNKNOWN
ADV-2007-0343

Source: VUPEN
Type: UNKNOWN
ADV-2007-1401

Source: VUPEN
Type: UNKNOWN
ADV-2007-2315

Source: VUPEN
Type: UNKNOWN
ADV-2007-2783

Source: VUPEN
Type: UNKNOWN
ADV-2008-0905

Source: VUPEN
Type: UNKNOWN
ADV-2008-2396

Source: CCN
Type: Xerox Web Site
XEROX SECURITY BULLETIN XRX07-001

Source: CONFIRM
Type: UNKNOWN
http://www.xerox.com/downloads/usa/en/c/cert_ESSNetwork_XRX07001_v1.pdf

Source: XF
Type: UNKNOWN
openssl-x509-dos(29230)

Source: XF
Type: UNKNOWN
openssl-publickey-dos(29230)

Source: CONFIRM
Type: UNKNOWN
https://issues.rpath.com/browse/RPL-1633

Source: OVAL
Type: UNKNOWN
oval:org.mitre.oval:def:10311

Source: SUSE
Type: SUSE-SA:2006:058
openssl security problems

Source: SUSE
Type: SUSE-SR:2006:024
SUSE Security Summary Report

Source: CCN
Type: IBM Systems Support Web site
Support for HMC

Source: HP
Type: UNKNOWN
SSRT071304

Vulnerable Configuration:Configuration 1:
  • cpe:/a:openssl:openssl:0.9.1c:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.2b:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.3:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.3a:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.4:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.5:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.5:beta1:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.5:beta2:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.5a:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.5a:beta1:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.5a:beta2:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6:beta1:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6:beta2:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6:beta3:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6a:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6a:beta1:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6a:beta2:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6a:beta3:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6b:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6c:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6d:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6e:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6f:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6g:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6h:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6i:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6j:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6k:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6l:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.6m:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7a:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7b:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7c:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7d:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7e:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7f:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7g:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7h:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7i:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7j:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7k:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.8:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.8a:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.8b:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.8c:*:*:*:*:*:*:*

  • Configuration RedHat 1:
  • cpe:/o:redhat:enterprise_linux:4:*:*:*:*:*:*:*

  • Configuration RedHat 2:
  • cpe:/o:redhat:enterprise_linux:4::as:*:*:*:*:*

  • Configuration RedHat 3:
  • cpe:/o:redhat:enterprise_linux:4::desktop:*:*:*:*:*

  • Configuration RedHat 4:
  • cpe:/o:redhat:enterprise_linux:4::es:*:*:*:*:*

  • Configuration RedHat 5:
  • cpe:/o:redhat:enterprise_linux:4::ws:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:openssl:openssl:0.9.7a:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7b:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7c:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.8a:*:*:*:*:*:*:*
  • OR cpe:/h:xerox:workcentre:7655:*:*:*:*:*:*:*
  • OR cpe:/h:xerox:workcentre:7665:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7:beta1:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7:beta2:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7:beta3:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7:beta4:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7:beta5:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7:beta6:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7d:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7e:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7f:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7g:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7h:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7i:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7j:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.7k:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.8:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.8b:*:*:*:*:*:*:*
  • OR cpe:/a:openssl:openssl:0.9.8c:*:*:*:*:*:*:*
  • AND
  • cpe:/o:freebsd:freebsd:*:*:*:*:*:*:*:*
  • OR cpe:/h:cisco:ids:-:*:*:*:*:*:*:*
  • OR cpe:/a:openpkg:openpkg:current:*:*:*:*:*:*:*
  • OR cpe:/o:gentoo:linux:*:*:*:*:*:*:*:*
  • OR cpe:/o:suse:linux_enterprise_server:8:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:2.1:*:as:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:2.1:*:es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:2.1:*:ws:*:*:*:*:*
  • OR cpe:/o:slackware:slackware_linux:9.0:*:*:*:*:*:*:*
  • OR cpe:/o:slackware:slackware_linux:9.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:application_and_content_networking_software:*:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:ciscoworks_common_management_foundation:-:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3::ws:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3::es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3::as:*:*:*:*:*
  • OR cpe:/a:suse:suse_linux_school_server:-:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:access_registrar:*:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:3::desktop:*:*:*:*:*
  • OR cpe:/o:slackware:slackware_linux:10.0:*:*:*:*:*:*:*
  • OR cpe:/o:suse:suse_linux:9.2:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:2.1::as:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::as:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::desktop:*:*:*:*:*
  • OR cpe:/o:novell:linux_desktop:9:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:4::ws:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x:10.3.9:*:*:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x_server:10.3.9:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:3.1:*:*:*:*:*:*:*
  • OR cpe:/a:novell:open_enterprise_server:*:*:*:*:*:*:*:*
  • OR cpe:/a:mandrakesoft:mandrake_multi_network_firewall:2.0:*:*:*:*:*:*:*
  • OR cpe:/o:suse:suse_linux:10.0::oss:*:*:*:*:*
  • OR cpe:/o:redhat:linux_advanced_workstation:2.1::itanium:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2006:*:*:*:*:*:*:*
  • OR cpe:/h:cisco:gss_4480_global_site_selector:*:*:*:*:*:*:*:*
  • OR cpe:/h:cisco:gss_4490_global_site_selector:*:*:*:*:*:*:*:*
  • OR cpe:/h:cisco:gss_4491_global_site_selector:*:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:secure_access_control_server:*:*:*:*:*:*:*:*
  • OR cpe:/a:openpkg:openpkg:2.5:*:*:*:*:*:*:*
  • OR cpe:/h:xerox:workcentre:232:*:*:*:*:*:*:*
  • OR cpe:/h:xerox:workcentre:238:*:*:*:*:*:*:*
  • OR cpe:/h:xerox:workcentre:245:*:*:*:*:*:*:*
  • OR cpe:/h:xerox:workcentre:255:*:*:*:*:*:*:*
  • OR cpe:/h:xerox:workcentre:265:*:*:*:*:*:*:*
  • OR cpe:/h:xerox:workcentre:275:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:6.06::lts:*:*:*:*:*
  • OR cpe:/h:cisco:callmanager_express:-:*:*:*:*:*:*:*
  • OR cpe:/o:suse:suse_linux:10.1::personal:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:2.1::es:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux:2.1::ws:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2006::x86-64:*:*:*:*:*
  • OR cpe:/a:kolab:kolab_server:2.0.4:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux:2007::x86_64:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:4.0::x86_64:*:*:*:*:*
  • OR cpe:/a:openvpn:openvpn:2.0.9:*:*:*:*:*:*:*
  • OR cpe:/o:mandrakesoft:mandrake_linux_corporate_server:3.0::x86_64:*:*:*:*:*
  • OR cpe:/h:cisco:mds_9500:-:*:*:*:*:*:*:*
  • OR cpe:/h:cisco:ons_15454:*:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:unified_presence_server:*:*:*:*:*:*:*:*
  • OR cpe:/h:cisco:application_control_engine_module:1.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:wide_area_application_services:-:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:ciscoworks_common_services:-:*:*:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x_server:10.4.8:*:*:*:*:*:*:*
  • OR cpe:/o:apple:mac_os_x:10.4.8:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:security_agent:5.1:*:*:*:*:*:*:*
  • OR cpe:/o:turbolinux:turbolinux:fuji:*:*:*:*:*:*:*
  • OR cpe:/o:turbolinux:turbolinux:*:*:personal:*:*:*:*:*
  • OR cpe:/o:turbolinux:turbolinux:*:*:home:*:*:*:*:*
  • OR cpe:/o:turbolinux:turbolinux:*:*:multimedia:*:*:*:*:*
  • OR cpe:/a:cisco:unified_callmanager:4.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:6.0:*:*:*:*:*:*:*
  • OR cpe:/a:hp:system_management_homepage:2.1:*:*:*:*:*:*:*
  • OR cpe:/a:hp:system_management_homepage:2.1.1:*:*:*:*:*:*:*
  • OR cpe:/a:hp:system_management_homepage:2.1.2:*:*:*:*:*:*:*
  • OR cpe:/a:hp:system_management_homepage:2.1.3:*:*:*:*:*:*:*
  • OR cpe:/a:hp:system_management_homepage:2.1.4:*:*:*:*:*:*:*
  • OR cpe:/a:hp:system_management_homepage:2.1.5:*:*:*:*:*:*:*
  • OR cpe:/a:hp:system_management_homepage:2.1.6:*:*:*:*:*:*:*
  • OR cpe:/a:novell:open_enterprise_server:*:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:server:1.0.3:*:*:*:*:*:*:*
  • OR cpe:/o:suse:suse_linux:9.3:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:server:1.0:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:6.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:workstation:6.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:server:1.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:server:1.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:vmware:server:1.0.4:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20062940
    V
    CVE-2006-2940
    2022-06-30
    oval:org.opensuse.security:def:42369
    P
    Security update for dnsmasq (Important)
    2022-04-22
    oval:org.opensuse.security:def:42166
    P
    Security update for protobuf (Moderate)
    2022-03-30
    oval:org.opensuse.security:def:112743
    P
    libopenssl-devel-1.1.1l-1.2 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:112740
    P
    libopenssl-1_0_0-devel-1.0.2u-6.2 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:112741
    P
    libopenssl-1_1-devel-1.1.1l-1.2 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:26223
    P
    Security update for net-snmp (Important)
    2022-01-05
    oval:org.opensuse.security:def:31373
    P
    Security update for net-snmp (Important)
    2022-01-05
    oval:org.opensuse.security:def:26182
    P
    Security update for MozillaFirefox (Important)
    2021-12-12
    oval:org.opensuse.security:def:26181
    P
    Security update for mozilla-nss (Important)
    2021-12-06
    oval:org.opensuse.security:def:31312
    P
    Security update for java-1_7_0-openjdk (Important)
    2021-11-24
    oval:org.opensuse.security:def:32205
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-10-18
    oval:org.opensuse.security:def:31281
    P
    Security update for glibc (Moderate)
    2021-10-06
    oval:org.opensuse.security:def:26142
    P
    Security update for apache2 (Important)
    2021-10-06
    oval:org.opensuse.security:def:106215
    P
    libopenssl-devel-1.1.1l-1.2 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:106212
    P
    libopenssl-1_0_0-devel-1.0.2u-6.2 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:106213
    P
    libopenssl-1_1-devel-1.1.1l-1.2 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:31684
    P
    Security update for MozillaFirefox (Important)
    2021-09-22
    oval:org.opensuse.security:def:31680
    P
    Security update for transfig (Moderate)
    2021-09-16
    oval:org.opensuse.security:def:32183
    P
    Security update for gtk-vnc (Moderate)
    2021-09-16
    oval:org.opensuse.security:def:32181
    P
    Security update for xen (Important)
    2021-09-06
    oval:org.opensuse.security:def:31672
    P
    Security update for unrar (Moderate)
    2021-08-25
    oval:org.opensuse.security:def:26101
    P
    Security update for php74 (Important)
    2021-08-06
    oval:org.opensuse.security:def:26097
    P
    Security update for lasso (Important)
    2021-08-02
    oval:org.opensuse.security:def:31238
    P
    Security update for qemu (Important)
    2021-07-29
    oval:org.opensuse.security:def:26095
    P
    Security update for glibc (Moderate)
    2021-07-27
    oval:org.opensuse.security:def:31226
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-07-21
    oval:org.opensuse.security:def:31227
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-07-21
    oval:org.opensuse.security:def:32144
    P
    Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3) (Important)
    2021-07-21
    oval:org.opensuse.security:def:26089
    P
    Security update for MozillaFirefox (Important)
    2021-07-16
    oval:org.opensuse.security:def:26085
    P
    Security update for arpwatch (Important)
    2021-06-28
    oval:org.opensuse.security:def:31647
    P
    Security update for libgcrypt (Important)
    2021-06-24
    oval:org.opensuse.security:def:32126
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-06-18
    oval:org.opensuse.security:def:32124
    P
    Security update for the Linux Kernel (Live Patch 39 for SLE 12 SP3) (Important)
    2021-06-18
    oval:org.opensuse.security:def:36206
    P
    libopenssl0_9_8-0.9.8j-0.70.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36470
    P
    libopenssl-devel-0.9.8j-0.70.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:42613
    P
    libopenssl0_9_8-0.9.8j-0.70.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:32926
    P
    Security update for libX11 (Moderate)
    2021-05-26
    oval:org.opensuse.security:def:32095
    P
    Security update for libxml2 (Important)
    2021-05-19
    oval:org.opensuse.security:def:26041
    P
    Security update for samba (Important)
    2021-04-29
    oval:org.opensuse.security:def:26040
    P
    Security update for gdm (Important)
    2021-04-28
    oval:org.opensuse.security:def:26027
    P
    Security update for glibc (Important)
    2021-04-13
    oval:org.opensuse.security:def:31149
    P
    Security update for spamassassin (Important)
    2021-04-12
    oval:org.opensuse.security:def:32282
    P
    Security update for wavpack (Important)
    2021-03-24
    oval:org.opensuse.security:def:32268
    P
    Security update for openldap2 (Important)
    2021-03-03
    oval:org.opensuse.security:def:31739
    P
    Security update for openldap2 (Important)
    2021-03-03
    oval:org.opensuse.security:def:31729
    P
    Security update for screen (Important)
    2021-02-17
    oval:org.opensuse.security:def:26191
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:32249
    P
    Security update for the Linux Kernel (Live Patch 31 for SLE 12 SP3) (Important)
    2021-02-10
    oval:org.opensuse.security:def:31673
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:26031
    P
    Security update for php74 (Moderate)
    2021-01-14
    oval:org.opensuse.security:def:25973
    P
    Security update for the Linux Kernel (Important)
    2020-12-09
    oval:org.opensuse.security:def:42755
    P
    libopenssl1-devel-1.0.1g-0.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35595
    P
    libopenssl0_9_8-0.9.8h-30.27.11 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:36348
    P
    libopenssl1-devel-1.0.1g-0.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:32002
    P
    Security update for gdm (Important)
    2020-12-03
    oval:org.opensuse.security:def:35759
    P
    libopenssl0_9_8-0.9.8j-0.26.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35962
    P
    libopenssl0_9_8-0.9.8j-0.50.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:42002
    P
    libopenssl0_9_8-0.9.8h-30.27.11 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:26020
    P
    Security update for libraw (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26445
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:31778
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:26795
    P
    opie on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31515
    P
    Security update for quagga (Low)
    2020-12-01
    oval:org.opensuse.security:def:32039
    P
    Security update for kernel modules packages (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32480
    P
    MozillaFirefox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32448
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:33169
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25512
    P
    Security update for tomcat (Important)
    2020-12-01
    oval:org.opensuse.security:def:25385
    P
    Security update for MozillaFirefox (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25651
    P
    Security update for libvirt (Important)
    2020-12-01
    oval:org.opensuse.security:def:26385
    P
    Security update for go (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26244
    P
    Security update for openconnect (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26961
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26304
    P
    Security update for python-keystoneclient (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26596
    P
    libpng12-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31817
    P
    Security update for atftp (Important)
    2020-12-01
    oval:org.opensuse.security:def:32521
    P
    gmime on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31890
    P
    Security update for exempi (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32529
    P
    gzip on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32634
    P
    apache2-mod_perl on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25513
    P
    Security update for java-11-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:25716
    P
    Security update for librsvg (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25938
    P
    Security update for evince (Important)
    2020-12-01
    oval:org.opensuse.security:def:26434
    P
    Security update for pdns (Important)
    2020-12-01
    oval:org.opensuse.security:def:26288
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31063
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26361
    P
    Security update for kopete (Low)
    2020-12-01
    oval:org.opensuse.security:def:31892
    P
    Security update for expat (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31839
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:32560
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31982
    P
    Security update for java-1_7_1-ibm (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25776
    P
    Security update for flash-player (Critical)
    2020-12-01
    oval:org.opensuse.security:def:32568
    P
    libsnmp15-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33272
    P
    tcpdump on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25524
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:25797
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26473
    P
    Security update for Chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:27169
    P
    libFLAC++6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31064
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31517
    P
    Security update for quagga (Important)
    2020-12-01
    oval:org.opensuse.security:def:31941
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:32046
    P
    Security update for krb5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31814
    P
    Security update for apache2-mod_nss (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31758
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:25825
    P
    Security update for ImageMagick (Important)
    2020-12-01
    oval:org.opensuse.security:def:32590
    P
    pam_ldap on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33311
    P
    libopenssl1-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25755
    P
    Security update for libreoffice (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25588
    P
    Security update for xorg-x11-server (Important)
    2020-12-01
    oval:org.opensuse.security:def:25854
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26527
    P
    boost-license on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26487
    P
    Security update for redis (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27204
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31075
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31836
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:31980
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:32684
    P
    ipsec-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31815
    P
    Security update for apache2-mod_perl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32032
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25864
    P
    Security update for php5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26560
    P
    gstreamer-0_10-plugins-base on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25756
    P
    Security update for python, python-base, python-doc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25959
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26576
    P
    krb5-plugin-kdb-ldap on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26531
    P
    coolkey on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31593
    P
    Security update for tiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32723
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25146
    P
    Security update for man (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31826
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:25939
    P
    Security update for gstreamer-0_10-plugins-base (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25878
    P
    Security update for libqt4 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26595
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25767
    P
    Security update for DirectFB (Important)
    2020-12-01
    oval:org.opensuse.security:def:26332
    P
    Security update for karchive (Important)
    2020-12-01
    oval:org.opensuse.security:def:26615
    P
    mozilla-xulrunner191 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27311
    P
    unixODBC_23 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31444
    P
    Security update for poppler (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25147
    P
    Security update for libqt4 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31900
    P
    Security update for Mozilla Firefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:25572
    P
    Security update for grub2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:25988
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25922
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25897
    P
    Security update for mariadb (Important)
    2020-12-01
    oval:org.opensuse.security:def:25831
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26649
    P
    wireshark on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26629
    P
    perl-Tk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27346
    P
    libopenssl1-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31536
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32887
    P
    java-1_7_0-ibm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25158
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:25431
    P
    Security update for java-1_8_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:25723
    P
    Security update for apache2-mod_auth_openidc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26723
    P
    kde4-kgreeter-plugins on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25898
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26323
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:26698
    P
    foomatic-filters on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26673
    P
    bind on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31429
    P
    Recommended update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31796
    P
    Security update for MozillaFirefox, mozilla-nspr, mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:32338
    P
    Security update for sblim-sfcb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25309
    P
    Security update for MozillaFirefox (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25222
    P
    Security update for java-1_8_0-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:25488
    P
    Security update for file-roller (Low)
    2020-12-01
    oval:org.opensuse.security:def:26758
    P
    libopenssl0_9_8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25909
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26474
    P
    Security update for znc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26737
    P
    libadns1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27433
    P
    libarchive-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31430
    P
    Security update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31883
    P
    Security update for dnsmasq (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32387
    P
    Security update for tomcat6 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32492
    P
    boost-license on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25310
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25350
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:25735
    P
    Security update for exiv2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26019
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:26239
    P
    Security update for gimp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26751
    P
    libltdl7 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27468
    P
    libopenssl-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31441
    P
    Security update for pixman (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32424
    P
    Security update for wpa_supplicant (Important)
    2020-12-01
    oval:org.opensuse.security:def:32426
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:33130
    P
    krb5-plugin-kdb-ldap on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25321
    P
    Security update for java-1_7_0-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:25594
    P
    Security update for targetcli-fb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25886
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:26230
    P
    Security update for libreoffice (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26926
    P
    kdebase3-runtime on GA media (Moderate)
    2020-12-01
    oval:org.mitre.oval:def:10311
    V
    OpenSSL 0.9.7 before 0.9.7l, 0.9.8 before 0.9.8d, and earlier versions allows attackers to cause a denial of service (CPU consumption) via parasitic public keys with large (1) "public exponent" or (2) "public modulus" values in X.509 certificates that require extra time to process when using RSA signature verification.
    2013-04-29
    oval:org.debian:def:1185
    V
    denial of service
    2013-01-21
    oval:com.redhat.rhsa:def:20060695
    P
    RHSA-2006:0695: openssl security update (Important)
    2008-03-20
    oval:org.debian:def:1195
    V
    denial of service (multiple)
    2006-10-10
    BACK
    openssl openssl 0.9.1c
    openssl openssl 0.9.2b
    openssl openssl 0.9.3
    openssl openssl 0.9.3a
    openssl openssl 0.9.4
    openssl openssl 0.9.5
    openssl openssl 0.9.5 beta1
    openssl openssl 0.9.5 beta2
    openssl openssl 0.9.5a
    openssl openssl 0.9.5a beta1
    openssl openssl 0.9.5a beta2
    openssl openssl 0.9.6
    openssl openssl 0.9.6 beta1
    openssl openssl 0.9.6 beta2
    openssl openssl 0.9.6 beta3
    openssl openssl 0.9.6a
    openssl openssl 0.9.6a beta1
    openssl openssl 0.9.6a beta2
    openssl openssl 0.9.6a beta3
    openssl openssl 0.9.6b
    openssl openssl 0.9.6c
    openssl openssl 0.9.6d
    openssl openssl 0.9.6e
    openssl openssl 0.9.6f
    openssl openssl 0.9.6g
    openssl openssl 0.9.6h
    openssl openssl 0.9.6i
    openssl openssl 0.9.6j
    openssl openssl 0.9.6k
    openssl openssl 0.9.6l
    openssl openssl 0.9.6m
    openssl openssl 0.9.7
    openssl openssl 0.9.7a
    openssl openssl 0.9.7b
    openssl openssl 0.9.7c
    openssl openssl 0.9.7d
    openssl openssl 0.9.7e
    openssl openssl 0.9.7f
    openssl openssl 0.9.7g
    openssl openssl 0.9.7h
    openssl openssl 0.9.7i
    openssl openssl 0.9.7j
    openssl openssl 0.9.7k
    openssl openssl 0.9.8
    openssl openssl 0.9.8a
    openssl openssl 0.9.8b
    openssl openssl 0.9.8c
    openssl openssl 0.9.7a
    openssl openssl 0.9.7
    openssl openssl 0.9.7b
    openssl openssl 0.9.7c
    openssl openssl 0.9.8a
    xerox workcentre 7655
    xerox workcentre 7665
    openssl openssl 0.9.7 beta1
    openssl openssl 0.9.7 beta2
    openssl openssl 0.9.7 beta3
    openssl openssl 0.9.7 beta4
    openssl openssl 0.9.7 beta5
    openssl openssl 0.9.7 beta6
    openssl openssl 0.9.7d
    openssl openssl 0.9.7e
    openssl openssl 0.9.7f
    openssl openssl 0.9.7g
    openssl openssl 0.9.7h
    openssl openssl 0.9.7i
    openssl openssl 0.9.7j
    openssl openssl 0.9.7k
    openssl openssl 0.9.8
    openssl openssl 0.9.8b
    openssl openssl 0.9.8c
    freebsd freebsd *
    cisco ids -
    openpkg openpkg current
    gentoo linux *
    suse linux enterprise server 8
    redhat enterprise linux 2.1
    redhat enterprise linux 2.1
    redhat enterprise linux 2.1
    slackware slackware linux 9.0
    slackware slackware linux 9.1
    cisco application and content networking software *
    cisco ciscoworks common management foundation -
    redhat enterprise linux 3
    redhat enterprise linux 3
    redhat enterprise linux 3
    suse suse linux school server -
    cisco access registrar *
    redhat enterprise linux 3
    slackware slackware linux 10.0
    suse suse linux 9.2
    redhat enterprise linux 2.1
    mandrakesoft mandrake linux corporate server 3.0
    redhat enterprise linux 4
    redhat enterprise linux 4
    novell linux desktop 9
    redhat enterprise linux 4
    redhat enterprise linux 4
    apple mac os x 10.3.9
    apple mac os x server 10.3.9
    debian debian linux 3.1
    novell open enterprise server *
    mandrakesoft mandrake multi network firewall 2.0
    suse suse linux 10.0
    redhat linux advanced workstation 2.1
    mandrakesoft mandrake linux 2006
    cisco gss 4480 global site selector *
    cisco gss 4490 global site selector *
    cisco gss 4491 global site selector *
    cisco secure access control server *
    openpkg openpkg 2.5
    xerox workcentre 232
    xerox workcentre 238
    xerox workcentre 245
    xerox workcentre 255
    xerox workcentre 265
    xerox workcentre 275
    canonical ubuntu 6.06
    cisco callmanager express -
    suse suse linux 10.1
    redhat enterprise linux 2.1
    redhat enterprise linux 2.1
    mandrakesoft mandrake linux 2006
    kolab kolab server 2.0.4
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux 2007
    mandrakesoft mandrake linux corporate server 4.0
    mandrakesoft mandrake linux corporate server 4.0
    openvpn openvpn 2.0.9
    mandrakesoft mandrake linux corporate server 3.0
    cisco mds 9500 -
    cisco ons 15454 *
    cisco unified presence server *
    cisco application control engine module 1.1
    cisco wide area application services -
    cisco ciscoworks common services -
    apple mac os x server 10.4.8
    apple mac os x 10.4.8
    cisco security agent 5.1
    turbolinux turbolinux fuji
    turbolinux turbolinux personal *
    turbolinux turbolinux home *
    turbolinux turbolinux multimedia *
    cisco unified callmanager 4.1
    vmware workstation 6.0
    hp system management homepage 2.1
    hp system management homepage 2.1.1
    hp system management homepage 2.1.2
    hp system management homepage 2.1.3
    hp system management homepage 2.1.4
    hp system management homepage 2.1.5
    hp system management homepage 2.1.6
    novell open enterprise server *
    vmware server 1.0.3
    suse suse linux 9.3
    vmware server 1.0
    vmware workstation 6.0.1
    vmware workstation 6.0.2
    vmware server 1.0.1
    vmware server 1.0.2
    vmware server 1.0.4