[SUSE-SU-2022:0861-1] Security update for openssl-1_1

Severity Important
Affected Packages 27
CVEs 1

Security update for openssl-1_1

This update for openssl-1_1 fixes the following issues:

openssl-1_1:

  • CVE-2022-0778: Infinite loop in BN_mod_sqrt() reachable when parsing certificates (bsc#1196877).
  • Fix PAC pointer authentication in ARM (bsc#1195856)
  • Pull libopenssl-1_1 when updating openssl-1_1 with the same version (bsc#1195792)
  • FIPS: Fix function and reason error codes (bsc#1182959)
  • Enable zlib compression support (bsc#1195149)

glibc:

  • Resolve installation issue of glibc-devel in SUSE Linux Enterprise Micro 5.1

linux-glibc-devel:

  • Resolve installation issue of linux-kernel-headers in SUSE Linux Enterprise Micro 5.1

libxcrypt:

  • Resolve installation issue of libxcrypt-devel in SUSE Linux Enterprise Micro 5.1

zlib:

  • Resolve installation issue of zlib-devel in SUSE Linux Enterprise Micro 5.1
Package Affected Version
pkg:rpm/suse/openssl-1_1?arch=x86_64&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/openssl-1_1?arch=s390x&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/openssl-1_1?arch=aarch64&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libz1?arch=x86_64&distro=slem-5 < 1.2.11-3.26.10
pkg:rpm/suse/libz1?arch=s390x&distro=slem-5 < 1.2.11-3.26.10
pkg:rpm/suse/libz1?arch=aarch64&distro=slem-5 < 1.2.11-3.26.10
pkg:rpm/suse/libopenssl1_1?arch=x86_64&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libopenssl1_1?arch=s390x&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libopenssl1_1?arch=aarch64&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libopenssl1_1-hmac?arch=x86_64&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libopenssl1_1-hmac?arch=s390x&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libopenssl1_1-hmac?arch=aarch64&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libopenssl-1_1-devel?arch=x86_64&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libopenssl-1_1-devel?arch=s390x&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libopenssl-1_1-devel?arch=aarch64&distro=slem-5 < 1.1.1d-11.43.1
pkg:rpm/suse/libcrypt1?arch=x86_64&distro=slem-5 < 4.4.15-150300.4.2.41
pkg:rpm/suse/libcrypt1?arch=s390x&distro=slem-5 < 4.4.15-150300.4.2.41
pkg:rpm/suse/libcrypt1?arch=aarch64&distro=slem-5 < 4.4.15-150300.4.2.41
pkg:rpm/suse/glibc?arch=x86_64&distro=slem-5 < 2.31-150300.20.7
pkg:rpm/suse/glibc?arch=s390x&distro=slem-5 < 2.31-150300.20.7
pkg:rpm/suse/glibc?arch=aarch64&distro=slem-5 < 2.31-150300.20.7
pkg:rpm/suse/glibc-locale?arch=x86_64&distro=slem-5 < 2.31-150300.20.7
pkg:rpm/suse/glibc-locale?arch=s390x&distro=slem-5 < 2.31-150300.20.7
pkg:rpm/suse/glibc-locale?arch=aarch64&distro=slem-5 < 2.31-150300.20.7
pkg:rpm/suse/glibc-locale-base?arch=x86_64&distro=slem-5 < 2.31-150300.20.7
pkg:rpm/suse/glibc-locale-base?arch=s390x&distro=slem-5 < 2.31-150300.20.7
pkg:rpm/suse/glibc-locale-base?arch=aarch64&distro=slem-5 < 2.31-150300.20.7
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/openssl-1_1?arch=x86_64&distro=slem-5 suse openssl-1_1 < 1.1.1d-11.43.1 slem-5 x86_64
Affected pkg:rpm/suse/openssl-1_1?arch=s390x&distro=slem-5 suse openssl-1_1 < 1.1.1d-11.43.1 slem-5 s390x
Affected pkg:rpm/suse/openssl-1_1?arch=aarch64&distro=slem-5 suse openssl-1_1 < 1.1.1d-11.43.1 slem-5 aarch64
Affected pkg:rpm/suse/libz1?arch=x86_64&distro=slem-5 suse libz1 < 1.2.11-3.26.10 slem-5 x86_64
Affected pkg:rpm/suse/libz1?arch=s390x&distro=slem-5 suse libz1 < 1.2.11-3.26.10 slem-5 s390x
Affected pkg:rpm/suse/libz1?arch=aarch64&distro=slem-5 suse libz1 < 1.2.11-3.26.10 slem-5 aarch64
Affected pkg:rpm/suse/libopenssl1_1?arch=x86_64&distro=slem-5 suse libopenssl1_1 < 1.1.1d-11.43.1 slem-5 x86_64
Affected pkg:rpm/suse/libopenssl1_1?arch=s390x&distro=slem-5 suse libopenssl1_1 < 1.1.1d-11.43.1 slem-5 s390x
Affected pkg:rpm/suse/libopenssl1_1?arch=aarch64&distro=slem-5 suse libopenssl1_1 < 1.1.1d-11.43.1 slem-5 aarch64
Affected pkg:rpm/suse/libopenssl1_1-hmac?arch=x86_64&distro=slem-5 suse libopenssl1_1-hmac < 1.1.1d-11.43.1 slem-5 x86_64
Affected pkg:rpm/suse/libopenssl1_1-hmac?arch=s390x&distro=slem-5 suse libopenssl1_1-hmac < 1.1.1d-11.43.1 slem-5 s390x
Affected pkg:rpm/suse/libopenssl1_1-hmac?arch=aarch64&distro=slem-5 suse libopenssl1_1-hmac < 1.1.1d-11.43.1 slem-5 aarch64
Affected pkg:rpm/suse/libopenssl-1_1-devel?arch=x86_64&distro=slem-5 suse libopenssl-1_1-devel < 1.1.1d-11.43.1 slem-5 x86_64
Affected pkg:rpm/suse/libopenssl-1_1-devel?arch=s390x&distro=slem-5 suse libopenssl-1_1-devel < 1.1.1d-11.43.1 slem-5 s390x
Affected pkg:rpm/suse/libopenssl-1_1-devel?arch=aarch64&distro=slem-5 suse libopenssl-1_1-devel < 1.1.1d-11.43.1 slem-5 aarch64
Affected pkg:rpm/suse/libcrypt1?arch=x86_64&distro=slem-5 suse libcrypt1 < 4.4.15-150300.4.2.41 slem-5 x86_64
Affected pkg:rpm/suse/libcrypt1?arch=s390x&distro=slem-5 suse libcrypt1 < 4.4.15-150300.4.2.41 slem-5 s390x
Affected pkg:rpm/suse/libcrypt1?arch=aarch64&distro=slem-5 suse libcrypt1 < 4.4.15-150300.4.2.41 slem-5 aarch64
Affected pkg:rpm/suse/glibc?arch=x86_64&distro=slem-5 suse glibc < 2.31-150300.20.7 slem-5 x86_64
Affected pkg:rpm/suse/glibc?arch=s390x&distro=slem-5 suse glibc < 2.31-150300.20.7 slem-5 s390x
Affected pkg:rpm/suse/glibc?arch=aarch64&distro=slem-5 suse glibc < 2.31-150300.20.7 slem-5 aarch64
Affected pkg:rpm/suse/glibc-locale?arch=x86_64&distro=slem-5 suse glibc-locale < 2.31-150300.20.7 slem-5 x86_64
Affected pkg:rpm/suse/glibc-locale?arch=s390x&distro=slem-5 suse glibc-locale < 2.31-150300.20.7 slem-5 s390x
Affected pkg:rpm/suse/glibc-locale?arch=aarch64&distro=slem-5 suse glibc-locale < 2.31-150300.20.7 slem-5 aarch64
Affected pkg:rpm/suse/glibc-locale-base?arch=x86_64&distro=slem-5 suse glibc-locale-base < 2.31-150300.20.7 slem-5 x86_64
Affected pkg:rpm/suse/glibc-locale-base?arch=s390x&distro=slem-5 suse glibc-locale-base < 2.31-150300.20.7 slem-5 s390x
Affected pkg:rpm/suse/glibc-locale-base?arch=aarch64&distro=slem-5 suse glibc-locale-base < 2.31-150300.20.7 slem-5 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...