[openSUSE-SU-2021:0430-1] Security update for openssl-1_0_0

Severity Moderate
Affected Packages 19
CVEs 2

Security update for openssl-1_0_0

This update for openssl-1_0_0 fixes the following issues:

  • CVE-2021-23840: Fixed an Integer overflow in CipherUpdate (bsc#1182333)
  • CVE-2021-23841: Fixed a Null pointer dereference in X509_issuer_and_serial_hash() (bsc#1182331)

This update was imported from the SUSE:SLE-15:Update update project.

Package Affected Version
pkg:rpm/opensuse/openssl-1_0_0?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/openssl-1_0_0?arch=i586&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/openssl-1_0_0-doc?arch=noarch&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/openssl-1_0_0-cavs?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/openssl-1_0_0-cavs?arch=i586&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl1_0_0?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl1_0_0?arch=i586&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl1_0_0-steam?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl1_0_0-steam?arch=i586&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl1_0_0-steam-32bit?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl1_0_0-hmac?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl1_0_0-hmac?arch=i586&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl1_0_0-hmac-32bit?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl1_0_0-32bit?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl10?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl10?arch=i586&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl-1_0_0-devel?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl-1_0_0-devel?arch=i586&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
pkg:rpm/opensuse/libopenssl-1_0_0-devel-32bit?arch=x86_64&distro=opensuse-leap-15.2 < 1.0.2p-lp152.8.12.1
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/opensuse/openssl-1_0_0?arch=x86_64&distro=opensuse-leap-15.2 opensuse openssl-1_0_0 < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/openssl-1_0_0?arch=i586&distro=opensuse-leap-15.2 opensuse openssl-1_0_0 < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/openssl-1_0_0-doc?arch=noarch&distro=opensuse-leap-15.2 opensuse openssl-1_0_0-doc < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 noarch
Affected pkg:rpm/opensuse/openssl-1_0_0-cavs?arch=x86_64&distro=opensuse-leap-15.2 opensuse openssl-1_0_0-cavs < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/openssl-1_0_0-cavs?arch=i586&distro=opensuse-leap-15.2 opensuse openssl-1_0_0-cavs < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/libopenssl1_0_0?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_0_0 < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl1_0_0?arch=i586&distro=opensuse-leap-15.2 opensuse libopenssl1_0_0 < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/libopenssl1_0_0-steam?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_0_0-steam < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl1_0_0-steam?arch=i586&distro=opensuse-leap-15.2 opensuse libopenssl1_0_0-steam < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/libopenssl1_0_0-steam-32bit?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_0_0-steam-32bit < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl1_0_0-hmac?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_0_0-hmac < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl1_0_0-hmac?arch=i586&distro=opensuse-leap-15.2 opensuse libopenssl1_0_0-hmac < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/libopenssl1_0_0-hmac-32bit?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_0_0-hmac-32bit < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl1_0_0-32bit?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_0_0-32bit < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl10?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl10 < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl10?arch=i586&distro=opensuse-leap-15.2 opensuse libopenssl10 < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/libopenssl-1_0_0-devel?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl-1_0_0-devel < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl-1_0_0-devel?arch=i586&distro=opensuse-leap-15.2 opensuse libopenssl-1_0_0-devel < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/libopenssl-1_0_0-devel-32bit?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl-1_0_0-devel-32bit < 1.0.2p-lp152.8.12.1 opensuse-leap-15.2 x86_64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...