[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-5103-1 openssl -- openssl

ID: oval:org.secpod.oval:def:78395Date: (C)2022-03-29   (M)2023-12-07
Class: PATCHFamily: unix




Tavis Ormandy discovered that the BN_mod_sqrt function of OpenSSL could be tricked into an infinite loop. This could result in denial of service via malformed certificates. Additional details can be found in the upstream advisory: https://www.openssl.org/news/secadv/20220315.txt In addition this update corrects a carry propagation bug specific to MIPS architectures.

Platform:
Linux Mint 4
Product:
openssl
libcrypto1.1-udeb
libssl-dev
libssl-doc
libssl1.1
Reference:
DSA-5103-1
CVE-2021-4160
CVE-2022-0778
CVE    2
CVE-2021-4160
CVE-2022-0778

© SecPod Technologies