[openSUSE-SU-2021:1188-1] Security update for openssl-1_1

Severity Important
Affected Packages 12
CVEs 2

Security update for openssl-1_1

This update for openssl-1_1 fixes the following security issues:

  • CVE-2021-3711: A bug in the implementation of the SM2 decryption code
    could lead to buffer overflows. [bsc#1189520]

  • CVE-2021-3712: a bug in the code for printing certificate details could
    lead to a buffer overrun that a malicious actor could exploit to crash
    the application, causing a denial-of-service attack. [bsc#1189521]

This update was imported from the SUSE:SLE-15-SP2:Update update project.

ID
openSUSE-SU-2021:1188-1
Severity
important
URL
https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/YXBKWFNVQ5GSDMIZHMMOGHRWWUOWZMJE/
Published
2021-08-25T04:52:31
(3 years ago)
Modified
2021-08-25T04:52:31
(3 years ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/opensuse/openssl-1_1?arch=x86_64&distro=opensuse-leap-15.2 opensuse openssl-1_1 < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/openssl-1_1?arch=i586&distro=opensuse-leap-15.2 opensuse openssl-1_1 < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/openssl-1_1-doc?arch=noarch&distro=opensuse-leap-15.2 opensuse openssl-1_1-doc < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 noarch
Affected pkg:rpm/opensuse/libopenssl1_1?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_1 < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl1_1?arch=i586&distro=opensuse-leap-15.2 opensuse libopenssl1_1 < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/libopenssl1_1-hmac?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_1-hmac < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl1_1-hmac?arch=i586&distro=opensuse-leap-15.2 opensuse libopenssl1_1-hmac < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/libopenssl1_1-hmac-32bit?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_1-hmac-32bit < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl1_1-32bit?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl1_1-32bit < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl-1_1-devel?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl-1_1-devel < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 x86_64
Affected pkg:rpm/opensuse/libopenssl-1_1-devel?arch=i586&distro=opensuse-leap-15.2 opensuse libopenssl-1_1-devel < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 i586
Affected pkg:rpm/opensuse/libopenssl-1_1-devel-32bit?arch=x86_64&distro=opensuse-leap-15.2 opensuse libopenssl-1_1-devel-32bit < 1.1.1d-lp152.7.21.1 opensuse-leap-15.2 x86_64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...