[openSUSE-SU-2021:2830-1] Security update for openssl-1_1

Severity Important
Affected Packages 20
CVEs 2

Security update for openssl-1_1

This update for openssl-1_1 fixes the following security issues:

  • CVE-2021-3711: A bug in the implementation of the SM2 decryption code
    could lead to buffer overflows. [bsc#1189520]

  • CVE-2021-3712: a bug in the code for printing certificate details could
    lead to a buffer overrun that a malicious actor could exploit to crash
    the application, causing a denial-of-service attack. [bsc#1189521]

Package Affected Version
pkg:rpm/opensuse/openssl-1_1?arch=x86_64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/openssl-1_1?arch=s390x&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/openssl-1_1?arch=ppc64le&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/openssl-1_1?arch=aarch64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/openssl-1_1-doc?arch=noarch&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1?arch=x86_64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1?arch=s390x&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1?arch=ppc64le&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1?arch=aarch64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1-hmac?arch=x86_64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1-hmac?arch=s390x&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1-hmac?arch=ppc64le&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1-hmac?arch=aarch64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1-hmac-32bit?arch=x86_64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl1_1-32bit?arch=x86_64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl-1_1-devel?arch=x86_64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl-1_1-devel?arch=s390x&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl-1_1-devel?arch=ppc64le&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl-1_1-devel?arch=aarch64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
pkg:rpm/opensuse/libopenssl-1_1-devel-32bit?arch=x86_64&distro=opensuse-leap-15.3 < 1.1.1d-11.27.1
ID
openSUSE-SU-2021:2830-1
Severity
important
URL
https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/YOUNRN5SCBRRVEIYDG3G3PFLGVRXKDPG/
Published
2021-08-24T14:20:43
(3 years ago)
Modified
2021-08-24T14:20:43
(3 years ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/opensuse/openssl-1_1?arch=x86_64&distro=opensuse-leap-15.3 opensuse openssl-1_1 < 1.1.1d-11.27.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/openssl-1_1?arch=s390x&distro=opensuse-leap-15.3 opensuse openssl-1_1 < 1.1.1d-11.27.1 opensuse-leap-15.3 s390x
Affected pkg:rpm/opensuse/openssl-1_1?arch=ppc64le&distro=opensuse-leap-15.3 opensuse openssl-1_1 < 1.1.1d-11.27.1 opensuse-leap-15.3 ppc64le
Affected pkg:rpm/opensuse/openssl-1_1?arch=aarch64&distro=opensuse-leap-15.3 opensuse openssl-1_1 < 1.1.1d-11.27.1 opensuse-leap-15.3 aarch64
Affected pkg:rpm/opensuse/openssl-1_1-doc?arch=noarch&distro=opensuse-leap-15.3 opensuse openssl-1_1-doc < 1.1.1d-11.27.1 opensuse-leap-15.3 noarch
Affected pkg:rpm/opensuse/libopenssl1_1?arch=x86_64&distro=opensuse-leap-15.3 opensuse libopenssl1_1 < 1.1.1d-11.27.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/libopenssl1_1?arch=s390x&distro=opensuse-leap-15.3 opensuse libopenssl1_1 < 1.1.1d-11.27.1 opensuse-leap-15.3 s390x
Affected pkg:rpm/opensuse/libopenssl1_1?arch=ppc64le&distro=opensuse-leap-15.3 opensuse libopenssl1_1 < 1.1.1d-11.27.1 opensuse-leap-15.3 ppc64le
Affected pkg:rpm/opensuse/libopenssl1_1?arch=aarch64&distro=opensuse-leap-15.3 opensuse libopenssl1_1 < 1.1.1d-11.27.1 opensuse-leap-15.3 aarch64
Affected pkg:rpm/opensuse/libopenssl1_1-hmac?arch=x86_64&distro=opensuse-leap-15.3 opensuse libopenssl1_1-hmac < 1.1.1d-11.27.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/libopenssl1_1-hmac?arch=s390x&distro=opensuse-leap-15.3 opensuse libopenssl1_1-hmac < 1.1.1d-11.27.1 opensuse-leap-15.3 s390x
Affected pkg:rpm/opensuse/libopenssl1_1-hmac?arch=ppc64le&distro=opensuse-leap-15.3 opensuse libopenssl1_1-hmac < 1.1.1d-11.27.1 opensuse-leap-15.3 ppc64le
Affected pkg:rpm/opensuse/libopenssl1_1-hmac?arch=aarch64&distro=opensuse-leap-15.3 opensuse libopenssl1_1-hmac < 1.1.1d-11.27.1 opensuse-leap-15.3 aarch64
Affected pkg:rpm/opensuse/libopenssl1_1-hmac-32bit?arch=x86_64&distro=opensuse-leap-15.3 opensuse libopenssl1_1-hmac-32bit < 1.1.1d-11.27.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/libopenssl1_1-32bit?arch=x86_64&distro=opensuse-leap-15.3 opensuse libopenssl1_1-32bit < 1.1.1d-11.27.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/libopenssl-1_1-devel?arch=x86_64&distro=opensuse-leap-15.3 opensuse libopenssl-1_1-devel < 1.1.1d-11.27.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/libopenssl-1_1-devel?arch=s390x&distro=opensuse-leap-15.3 opensuse libopenssl-1_1-devel < 1.1.1d-11.27.1 opensuse-leap-15.3 s390x
Affected pkg:rpm/opensuse/libopenssl-1_1-devel?arch=ppc64le&distro=opensuse-leap-15.3 opensuse libopenssl-1_1-devel < 1.1.1d-11.27.1 opensuse-leap-15.3 ppc64le
Affected pkg:rpm/opensuse/libopenssl-1_1-devel?arch=aarch64&distro=opensuse-leap-15.3 opensuse libopenssl-1_1-devel < 1.1.1d-11.27.1 opensuse-leap-15.3 aarch64
Affected pkg:rpm/opensuse/libopenssl-1_1-devel-32bit?arch=x86_64&distro=opensuse-leap-15.3 opensuse libopenssl-1_1-devel-32bit < 1.1.1d-11.27.1 opensuse-leap-15.3 x86_64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...