[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2011-004 --- openssl

ID: oval:org.secpod.oval:def:1601250Date: (C)2020-11-27   (M)2022-08-04
Class: PATCHFamily: unix




An uninitialized variable use flaw was found in OpenSSL. This flaw could cause an application using the OpenSSL Certificate Revocation List checking functionality to incorrectly accept a CRL that has a nextUpdate date in the past.All OpenSSL users should upgrade to these updated packages, which contain a backported patch to resolve this issue. For the update to take effect, all services linked to the OpenSSL library must be restarted, or the system rebooted.

Platform:
Amazon Linux AMI
Product:
openssl
Reference:
ALAS-2011-4
CVE-2011-3207
CVE    1
CVE-2011-3207
CPE    12
cpe:/o:amazon:linux
cpe:/a:openssl:openssl:1.0.0:beta2
cpe:/a:openssl:openssl:1.0.0:beta1
cpe:/a:openssl:openssl
...

© SecPod Technologies