RHSA-2011:1409-01 -- Redhat openssl
|ID: oval:org.secpod.oval:def:500176||Date: (C)2012-01-31 (M)2016-05-05|
|Class: PATCH||Family: unix|
OpenSSL is a toolkit that implements the Secure Sockets Layer and Transport Layer Security protocols, as well as a full-strength, general purpose cryptography library. An uninitialized variable use flaw was found in OpenSSL. This flaw could cause an application using the OpenSSL Certificate Revocation List checking functionality to incorrectly accept a CRL that has a nextUpdate date in the past. All OpenSSL users should upgrade to these updated packages, which contain a backported patch to resolve this issue. For the update to take effect, all services linked to the OpenSSL library must be restarted, or the system rebooted.
|Red Hat Enterprise Linux 6|