stable

openssl3-3.0.7-5.el8.1

FEDORA-EPEL-2023-7407b60f95 created by salimma a year ago for Fedora EPEL 8

Security fix for CVEs, based on CentOS Stream 9's openssl

This update has been submitted for testing by salimma.

a year ago

This update's test gating status has been changed to 'ignored'.

a year ago

This update has been pushed to testing.

a year ago

This update has been submitted for stable by bodhi.

a year ago

This update has been pushed to stable.

a year ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
2
Stable by Time
7 days
Dates
submitted
a year ago
in testing
a year ago
in stable
a year ago
approved
a year ago
BZ#2134745 CVE-2022-3358 openssl3: openssl: Using a Custom Cipher with NID_undef may lead to NULL encryption [epel-all]
0
0
BZ#2167849 CVE-2023-0401 openssl3: openssl: NULL dereference during PKCS7 data verification [epel-8]
0
0
BZ#2167866 CVE-2023-0286 openssl3: openssl: X.400 address type confusion in X.509 GeneralName [epel-8]
0
0
BZ#2167881 CVE-2023-0217 openssl3: openssl: NULL dereference validating DSA public key [epel-8]
0
0
BZ#2167884 CVE-2023-0216 openssl3: openssl: invalid pointer dereference in d2i_PKCS7 functions [epel-8]
0
0
BZ#2167887 CVE-2023-0215 openssl3: openssl: use-after-free following BIO_new_NDEF [epel-8]
0
0
BZ#2167904 CVE-2022-4450 openssl3: openssl: double free after calling PEM_read_bio_ex [epel-8]
0
0
BZ#2167912 CVE-2022-4203 openssl3: openssl: a read buffer overflow in X.509 certificate verification [epel-8]
0
0
BZ#2167914 CVE-2022-4304 openssl3: openssl: timing attack in RSA Decryption implementation [epel-8]
0
0

Automated Test Results