Login
Newsletter
Werbung

Sicherheit: Preisgabe von Informationen in compat-openssl11
Aktuelle Meldungen Distributionen
Name: Preisgabe von Informationen in compat-openssl11
ID: RHSA-2025:7937
Distribution: Red Hat
Plattformen: Red Hat Enterprise Linux AppStream (v. 9)
Datum: Di, 20. Mai 2025, 06:40
Referenzen: https://bugzilla.redhat.com/show_bug.cgi?id=2164440
https://access.redhat.com/security/cve/CVE-2023-0286
https://access.redhat.com/errata/RHSA-2025:7937
Applikationen: OpenSSL

Originalnachricht

An update for compat-openssl11 is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of
Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

The OpenSSL toolkit provides support for secure communications between
machines. This version of OpenSSL package contains only the libraries from the 1.1.1 version and is provided for compatibility with previous releases.

Security Fix(es):

* openssl: X.400 address type confusion in X.509 GeneralName (CVE-2023-0286)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.

CVE-2023-0286: Incorrect Type Conversion or Cast (CWE-704)
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung