Lucene search

K
oraclelinuxOracleLinuxELSA-2023-12213
HistoryMar 28, 2023 - 12:00 a.m.

openssl security update

2023-03-2800:00:00
linux.oracle.com
21
openssl
security update
timing oracle
double free
use-after-free
address type confusion
vulnerabilities
rsa decryption
x.400
x.509 generalname

0.004 Low

EPSS

Percentile

72.5%

[1:1.1.1k-9]

  • Fixed Timing Oracle in RSA Decryption
    Resolves: CVE-2022-4304
  • Fixed Double free after calling PEM_read_bio_ex
    Resolves: CVE-2022-4450
  • Fixed Use-after-free following BIO_new_NDEF
    Resolves: CVE-2023-0215
  • Fixed X.400 address type confusion in X.509 GeneralName
    Resolves: CVE-2023-0286
    [1:1.1.1k-8]
  • Fix no-ec build
    Resolves: rhbz#2071020