Lucene search

K
oraclelinuxOracleLinuxELSA-2022-9023
HistoryJan 14, 2022 - 12:00 a.m.

openssl security update

2022-01-1400:00:00
linux.oracle.com
44
openssl
security update
version 1.0.2k
epoch change
dh self-test
sp 800-56a
tls kdf
ec keys
cve-2021-3712
buffer overruns
asn.1 strings

EPSS

0.005

Percentile

76.3%

[1.0.2k-23.0.1]

  • Change Epoch from 1 to 10
  • Fix DH self-test to add shared secret comparison [Orabug: 32467026]
  • Add DH support changes for SP 800-56A rev3 requirements [Orabug: 32467059]
  • Add TLS KDF self-test [Orabug: 32467193]
  • Add EC keys pairwise consistency test [Orabug: 32467059]
    [1.0.2k-23]
  • fixes CVE-2021-3712 openssl: Read buffer overruns processing ASN.1 strings
  • Resolves: rhbz#1996054