Action not permitted
Modal body text goes here.
cve-2015-0293
Vulnerability from cvelistv5
Published
2015-03-19 00:00
Modified
2024-08-06 04:03
Severity ?
EPSS score ?
Summary
The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message.
References
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-06T04:03:10.952Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "tags": [ "x_transferred" ], "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10110" }, { "tags": [ "x_transferred" ], "url": "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html" }, { "name": "RHSA-2015:0715", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0715.html" }, { "name": "openSUSE-SU-2015:0554", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-updates/2015-03/msg00062.html" }, { "tags": [ "x_transferred" ], "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10680" }, { "name": "USN-2537-1", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://www.ubuntu.com/usn/USN-2537-1" }, { "tags": [ "x_transferred" ], "url": "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html" }, { "name": "HPSBMU03409", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://marc.info/?l=bugtraq\u0026m=144050155601375\u0026w=2" }, { "name": "FEDORA-2015-4303", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152733.html" }, { "tags": [ "x_transferred" ], "url": "https://bto.bluecoat.com/security-advisory/sa92" }, { "tags": [ "x_transferred" ], "url": "https://www.openssl.org/news/secadv_20150319.txt" }, { "tags": [ "x_transferred" ], "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "name": "openSUSE-SU-2016:0638", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00010.html" }, { "tags": [ "x_transferred" ], "url": "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html" }, { "name": "HPSBMU03380", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://marc.info/?l=bugtraq\u0026m=143748090628601\u0026w=2" }, { "tags": [ "x_transferred" ], "url": "https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=86f8fb0e344d62454f8daf3e15236b2b59210756" }, { "tags": [ "x_transferred" ], "url": "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html" }, { "name": "SUSE-SU-2016:0621", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00003.html" }, { "tags": [ "x_transferred" ], "url": "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html" }, { "name": "FEDORA-2015-4300", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152844.html" }, { "name": "APPLE-SA-2015-06-30-2", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html" }, { "name": "FEDORA-2015-6951", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/156823.html" }, { "name": "openSUSE-SU-2016:0640", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html" }, { "tags": [ "x_transferred" ], "url": "https://access.redhat.com/articles/1384453" }, { "tags": [ "x_transferred" ], "url": "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html" }, { "name": "SUSE-SU-2016:1057", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00038.html" }, { "name": "HPSBUX03334", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2" }, { "name": "MDVSA-2015:063", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:063" }, { "name": "SUSE-SU-2015:0541", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00022.html" }, { "name": "openSUSE-SU-2016:0720", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00025.html" }, { "tags": [ "x_transferred" ], "url": "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html" }, { "name": "SUSE-SU-2016:0624", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00004.html" }, { "name": "RHSA-2015:0716", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0716.html" }, { "tags": [ "x_transferred" ], "url": "http://support.apple.com/kb/HT204942" }, { "name": "SUSE-SU-2015:0578", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html" }, { "name": "FreeBSD-SA-15:06", "tags": [ "vendor-advisory", "x_transferred" ], "url": "https://www.freebsd.org/security/advisories/FreeBSD-SA-15%3A06.openssl.asc" }, { "name": "SUSE-SU-2016:0631", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00007.html" }, { "name": "HPSBMU03397", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://marc.info/?l=bugtraq\u0026m=144050297101809\u0026w=2" }, { "name": "SUSE-SU-2016:0617", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00001.html" }, { "tags": [ "x_transferred" ], "url": "http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html" }, { "name": "RHSA-2015:0752", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0752.html" }, { "name": "RHSA-2015:0800", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0800.html" }, { "name": "73232", "tags": [ "vdb-entry", "x_transferred" ], "url": "http://www.securityfocus.com/bid/73232" }, { "name": "1031929", "tags": [ "vdb-entry", "x_transferred" ], "url": "http://www.securitytracker.com/id/1031929" }, { "name": "SSRT102000", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2" }, { "name": "MDVSA-2015:062", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:062" }, { "name": "openSUSE-SU-2016:0628", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00006.html" }, { "name": "FEDORA-2015-4320", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152734.html" }, { "tags": [ "x_transferred" ], "url": "https://support.citrix.com/article/CTX216642" }, { "name": "FEDORA-2015-6855", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157177.html" }, { "name": "SUSE-SU-2016:0620", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00002.html" }, { "name": "openSUSE-SU-2016:0637", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00009.html" }, { "name": "SUSE-SU-2016:0641", "tags": [ "vendor-advisory", "x_transferred" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00012.html" }, { "name": "GLSA-201503-11", "tags": [ "vendor-advisory", "x_transferred" ], "url": "https://security.gentoo.org/glsa/201503-11" }, { "tags": [ "x_transferred" ], "url": "https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf" } ], "title": "CVE Program Container" } ], "cna": { "affected": [ { "product": "n/a", "vendor": "n/a", "versions": [ { "status": "affected", "version": "n/a" } ] } ], "datePublic": "2015-03-19T00:00:00", "descriptions": [ { "lang": "en", "value": "The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message." } ], "problemTypes": [ { "descriptions": [ { "description": "n/a", "lang": "en", "type": "text" } ] } ], "providerMetadata": { "dateUpdated": "2022-12-13T00:00:00", "orgId": "53f830b8-0a3f-465b-8143-3b8a9948e749", "shortName": "redhat" }, "references": [ { "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10110" }, { "url": "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html" }, { "name": "RHSA-2015:0715", "tags": [ "vendor-advisory" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0715.html" }, { "name": "openSUSE-SU-2015:0554", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-updates/2015-03/msg00062.html" }, { "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10680" }, { "name": "USN-2537-1", "tags": [ "vendor-advisory" ], "url": "http://www.ubuntu.com/usn/USN-2537-1" }, { "url": "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html" }, { "name": "HPSBMU03409", "tags": [ "vendor-advisory" ], "url": "http://marc.info/?l=bugtraq\u0026m=144050155601375\u0026w=2" }, { "name": "FEDORA-2015-4303", "tags": [ "vendor-advisory" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152733.html" }, { "url": "https://bto.bluecoat.com/security-advisory/sa92" }, { "url": "https://www.openssl.org/news/secadv_20150319.txt" }, { "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "name": "openSUSE-SU-2016:0638", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00010.html" }, { "url": "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html" }, { "name": "HPSBMU03380", "tags": [ "vendor-advisory" ], "url": "http://marc.info/?l=bugtraq\u0026m=143748090628601\u0026w=2" }, { "url": "https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=86f8fb0e344d62454f8daf3e15236b2b59210756" }, { "url": "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html" }, { "name": "SUSE-SU-2016:0621", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00003.html" }, { "url": "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html" }, { "name": "FEDORA-2015-4300", "tags": [ "vendor-advisory" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152844.html" }, { "name": "APPLE-SA-2015-06-30-2", "tags": [ "vendor-advisory" ], "url": "http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html" }, { "name": "FEDORA-2015-6951", "tags": [ "vendor-advisory" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/156823.html" }, { "name": "openSUSE-SU-2016:0640", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html" }, { "url": "https://access.redhat.com/articles/1384453" }, { "url": "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html" }, { "name": "SUSE-SU-2016:1057", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00038.html" }, { "name": "HPSBUX03334", "tags": [ "vendor-advisory" ], "url": "http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2" }, { "name": "MDVSA-2015:063", "tags": [ "vendor-advisory" ], "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:063" }, { "name": "SUSE-SU-2015:0541", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00022.html" }, { "name": "openSUSE-SU-2016:0720", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00025.html" }, { "url": "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html" }, { "name": "SUSE-SU-2016:0624", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00004.html" }, { "name": "RHSA-2015:0716", "tags": [ "vendor-advisory" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0716.html" }, { "url": "http://support.apple.com/kb/HT204942" }, { "name": "SUSE-SU-2015:0578", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html" }, { "name": "FreeBSD-SA-15:06", "tags": [ "vendor-advisory" ], "url": "https://www.freebsd.org/security/advisories/FreeBSD-SA-15%3A06.openssl.asc" }, { "name": "SUSE-SU-2016:0631", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00007.html" }, { "name": "HPSBMU03397", "tags": [ "vendor-advisory" ], "url": "http://marc.info/?l=bugtraq\u0026m=144050297101809\u0026w=2" }, { "name": "SUSE-SU-2016:0617", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00001.html" }, { "url": "http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html" }, { "name": "RHSA-2015:0752", "tags": [ "vendor-advisory" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0752.html" }, { "name": "RHSA-2015:0800", "tags": [ "vendor-advisory" ], "url": "http://rhn.redhat.com/errata/RHSA-2015-0800.html" }, { "name": "73232", "tags": [ "vdb-entry" ], "url": "http://www.securityfocus.com/bid/73232" }, { "name": "1031929", "tags": [ "vdb-entry" ], "url": "http://www.securitytracker.com/id/1031929" }, { "name": "SSRT102000", "tags": [ "vendor-advisory" ], "url": "http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2" }, { "name": "MDVSA-2015:062", "tags": [ "vendor-advisory" ], "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:062" }, { "name": "openSUSE-SU-2016:0628", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00006.html" }, { "name": "FEDORA-2015-4320", "tags": [ "vendor-advisory" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152734.html" }, { "url": "https://support.citrix.com/article/CTX216642" }, { "name": "FEDORA-2015-6855", "tags": [ "vendor-advisory" ], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157177.html" }, { "name": "SUSE-SU-2016:0620", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00002.html" }, { "name": "openSUSE-SU-2016:0637", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00009.html" }, { "name": "SUSE-SU-2016:0641", "tags": [ "vendor-advisory" ], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00012.html" }, { "name": "GLSA-201503-11", "tags": [ "vendor-advisory" ], "url": "https://security.gentoo.org/glsa/201503-11" }, { "url": "https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf" } ] } }, "cveMetadata": { "assignerOrgId": "53f830b8-0a3f-465b-8143-3b8a9948e749", "assignerShortName": "redhat", "cveId": "CVE-2015-0293", "datePublished": "2015-03-19T00:00:00", "dateReserved": "2014-11-18T00:00:00", "dateUpdated": "2024-08-06T04:03:10.952Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1", "meta": { "nvd": "{\"cve\":{\"id\":\"CVE-2015-0293\",\"sourceIdentifier\":\"secalert@redhat.com\",\"published\":\"2015-03-19T22:59:11.537\",\"lastModified\":\"2025-04-12T10:46:40.837\",\"vulnStatus\":\"Deferred\",\"cveTags\":[],\"descriptions\":[{\"lang\":\"en\",\"value\":\"The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message.\"},{\"lang\":\"es\",\"value\":\"La implementaci\u00f3n SSLv2 en OpenSSL anterior a 0.9.8zf, 1.0.0 anterior a 1.0.0r, 1.0.1 anterior a 1.0.1m, y 1.0.2 anterior a 1.0.2a permite a atacantes remotos causar una denegaci\u00f3n de servicio (fallo de aserci\u00f3n s2_lib.c y salida del demonio) a trav\u00e9s de un mensaje CLIENT-MASTER-KEY manipulado.\"}],\"metrics\":{\"cvssMetricV2\":[{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"cvssData\":{\"version\":\"2.0\",\"vectorString\":\"AV:N/AC:L/Au:N/C:N/I:N/A:P\",\"baseScore\":5.0,\"accessVector\":\"NETWORK\",\"accessComplexity\":\"LOW\",\"authentication\":\"NONE\",\"confidentialityImpact\":\"NONE\",\"integrityImpact\":\"NONE\",\"availabilityImpact\":\"PARTIAL\"},\"baseSeverity\":\"MEDIUM\",\"exploitabilityScore\":10.0,\"impactScore\":2.9,\"acInsufInfo\":false,\"obtainAllPrivilege\":false,\"obtainUserPrivilege\":false,\"obtainOtherPrivilege\":false,\"userInteractionRequired\":false}]},\"weaknesses\":[{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"description\":[{\"lang\":\"en\",\"value\":\"CWE-20\"}]}],\"configurations\":[{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*\",\"versionEndIncluding\":\"0.9.8ze\",\"matchCriteriaId\":\"FE2907ED-57AA-41E4-9AC6-055F138B9204\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"2FBD8C92-6138-4274-ACBA-D7D42DAEC5AC\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0a:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"10FF0A06-DA61-4250-B083-67E55E362677\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0b:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"8A6BA453-C150-4159-B80B-5465EFF83F11\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0c:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"638A2E69-8AB6-4FEA-852A-FEF16A500C1A\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0d:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"56C47D3A-B99D-401D-B6B8-1194B2DB4809\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0e:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"08355B10-E004-4BE6-A5AE-4D428810580B\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0f:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"738BCFDC-1C49-4774-95AE-E099F707DEF9\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0g:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"D4B242C0-D27D-4644-AD19-5ACB853C9DC2\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0h:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"8DC683F2-4346-4E5E-A8D7-67B4F4D7827B\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0i:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"764B7D38-BC1B-47DB-B1DF-D092BDA4BFCB\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0j:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"6604E7BE-9F9B-444D-A63A-F65D1CFDF3BF\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0k:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"132B9217-B0E0-4E3E-9096-162AA28E158E\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0l:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"7619F9A0-9054-4217-93D1-3EA64876C5B0\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0m:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"6D82C405-17E2-4DF1-8DF5-315BD5A41595\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0n:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"4C96806F-4718-4BD3-9102-55A26AA86498\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0o:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"8A16CD99-AF7F-4931-AD2E-77727BA18FBD\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0p:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"88440697-754A-47A7-BF83-4D0EB68FFB10\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.0q:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"AD51F0FC-F426-4AE5-B3B9-B813C580EBAE\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"2D1C00C0-C77E-4255-9ECA-20F2673C7366\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1a:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"3A66E6CF-39CF-412E-8EF0-8E10BA21B4A4\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1b:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"C684FB18-FDDC-4BED-A28C-C23EE6CD0094\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1c:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"A74A79A7-4FAF-4C81-8622-050008B96AE1\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1d:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"CEDACCB9-8D61-49EE-9957-9E58BC7BB031\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1e:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"4993DD56-F9E3-4AC8-AC3E-BF204B950DEC\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1f:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"E884B241-F9C3-44F8-A420-DE65F5F3D660\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1g:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"3A383620-B4F7-44A7-85DA-A4FF2E115D80\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1h:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"5F0C6812-F455-49CF-B29B-9AC00306DA43\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1i:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"3F2D462C-A1B4-4572-A615-BDE9DC5F1E55\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1j:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"3703E445-17C0-4C85-A496-A35641C0C8DB\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1k:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"2F4034B9-EF1C-40E6-B92A-D4D7B7E7E774\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.1l:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"ABEC1927-F469-4B9E-B544-DA6CF90F0B34\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:openssl:openssl:1.0.2:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"AD3E5C1B-EC63-4214-A0BD-0B8681CE6C8B\"}]}]}],\"references\":[{\"url\":\"http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10680\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152733.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152734.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152844.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-May/156823.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157177.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00022.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00001.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00002.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00003.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00004.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00006.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00007.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00009.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00010.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00012.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00025.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00038.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://lists.opensuse.org/opensuse-updates/2015-03/msg00062.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=143748090628601\u0026w=2\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=144050155601375\u0026w=2\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=144050297101809\u0026w=2\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0715.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0716.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0752.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0800.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://support.apple.com/kb/HT204942\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.mandriva.com/security/advisories?name=MDVSA-2015:062\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.mandriva.com/security/advisories?name=MDVSA-2015:063\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.securityfocus.com/bid/73232\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.securitytracker.com/id/1031929\",\"source\":\"secalert@redhat.com\"},{\"url\":\"http://www.ubuntu.com/usn/USN-2537-1\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://access.redhat.com/articles/1384453\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://bto.bluecoat.com/security-advisory/sa92\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://bugzilla.redhat.com/show_bug.cgi?id=1202404\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=86f8fb0e344d62454f8daf3e15236b2b59210756\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10110\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://security.gentoo.org/glsa/201503-11\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://support.citrix.com/article/CTX216642\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://www.freebsd.org/security/advisories/FreeBSD-SA-15%3A06.openssl.asc\",\"source\":\"secalert@redhat.com\"},{\"url\":\"https://www.openssl.org/news/secadv_20150319.txt\",\"source\":\"secalert@redhat.com\",\"tags\":[\"Vendor Advisory\"]},{\"url\":\"http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10680\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152733.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152734.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152844.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-May/156823.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157177.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00022.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00001.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00002.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00003.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00004.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00006.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00007.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00009.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00010.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00012.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00025.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00038.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://lists.opensuse.org/opensuse-updates/2015-03/msg00062.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=143748090628601\u0026w=2\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=144050155601375\u0026w=2\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://marc.info/?l=bugtraq\u0026m=144050297101809\u0026w=2\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0715.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0716.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0752.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://rhn.redhat.com/errata/RHSA-2015-0800.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://support.apple.com/kb/HT204942\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.mandriva.com/security/advisories?name=MDVSA-2015:062\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.mandriva.com/security/advisories?name=MDVSA-2015:063\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.securityfocus.com/bid/73232\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.securitytracker.com/id/1031929\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://www.ubuntu.com/usn/USN-2537-1\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://access.redhat.com/articles/1384453\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://bto.bluecoat.com/security-advisory/sa92\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://bugzilla.redhat.com/show_bug.cgi?id=1202404\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=86f8fb0e344d62454f8daf3e15236b2b59210756\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10110\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://security.gentoo.org/glsa/201503-11\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://support.citrix.com/article/CTX216642\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://www.freebsd.org/security/advisories/FreeBSD-SA-15%3A06.openssl.asc\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://www.openssl.org/news/secadv_20150319.txt\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Vendor Advisory\"]}]}}" } }
gsd-2015-0293
Vulnerability from gsd
Modified
2023-12-13 01:19
Details
The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message.
Aliases
Aliases
{ "GSD": { "alias": "CVE-2015-0293", "description": "The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message.", "id": "GSD-2015-0293", "references": [ "https://www.suse.com/security/cve/CVE-2015-0293.html", "https://access.redhat.com/errata/RHSA-2016:0490", "https://access.redhat.com/errata/RHSA-2016:0446", "https://access.redhat.com/errata/RHSA-2016:0445", "https://access.redhat.com/errata/RHSA-2016:0372", "https://access.redhat.com/errata/RHSA-2016:0306", "https://access.redhat.com/errata/RHSA-2016:0304", "https://access.redhat.com/errata/RHSA-2016:0303", "https://access.redhat.com/errata/RHSA-2015:0800", "https://access.redhat.com/errata/RHSA-2015:0752", "https://access.redhat.com/errata/RHSA-2015:0716", "https://access.redhat.com/errata/RHSA-2015:0715", "https://ubuntu.com/security/CVE-2015-0293", "https://advisories.mageia.org/CVE-2015-0293.html", "https://alas.aws.amazon.com/cve/html/CVE-2015-0293.html", "https://linux.oracle.com/cve/CVE-2015-0293.html" ] }, "gsd": { "metadata": { "exploitCode": "unknown", "remediation": "unknown", "reportConfidence": "confirmed", "type": "vulnerability" }, "osvSchema": { "aliases": [ "CVE-2015-0293" ], "details": "The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message.", "id": "GSD-2015-0293", "modified": "2023-12-13T01:19:58.252859Z", "schema_version": "1.4.0" } }, "namespaces": { "cve.org": { "CVE_data_meta": { "ASSIGNER": "secalert@redhat.com", "ID": "CVE-2015-0293", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10110", "refsource": "CONFIRM", "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10110" }, { "name": "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html", "refsource": "CONFIRM", "url": "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html" }, { "name": "RHSA-2015:0715", "refsource": "REDHAT", "url": "http://rhn.redhat.com/errata/RHSA-2015-0715.html" }, { "name": "openSUSE-SU-2015:0554", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-updates/2015-03/msg00062.html" }, { "name": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10680", "refsource": "CONFIRM", "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10680" }, { "name": "USN-2537-1", "refsource": "UBUNTU", "url": "http://www.ubuntu.com/usn/USN-2537-1" }, { "name": "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html", "refsource": "CONFIRM", "url": "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html" }, { "name": "HPSBMU03409", "refsource": "HP", "url": "http://marc.info/?l=bugtraq\u0026m=144050155601375\u0026w=2" }, { "name": "FEDORA-2015-4303", "refsource": "FEDORA", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152733.html" }, { "name": "https://bto.bluecoat.com/security-advisory/sa92", "refsource": "CONFIRM", "url": "https://bto.bluecoat.com/security-advisory/sa92" }, { "name": "https://www.openssl.org/news/secadv_20150319.txt", "refsource": "CONFIRM", "url": "https://www.openssl.org/news/secadv_20150319.txt" }, { "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404", "refsource": "CONFIRM", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "name": "openSUSE-SU-2016:0638", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00010.html" }, { "name": "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html", "refsource": "CONFIRM", "url": "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html" }, { "name": "HPSBMU03380", "refsource": "HP", "url": "http://marc.info/?l=bugtraq\u0026m=143748090628601\u0026w=2" }, { "name": "https://git.openssl.org/?p=openssl.git;a=commit;h=86f8fb0e344d62454f8daf3e15236b2b59210756", "refsource": "CONFIRM", "url": "https://git.openssl.org/?p=openssl.git;a=commit;h=86f8fb0e344d62454f8daf3e15236b2b59210756" }, { "name": "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html", "refsource": "CONFIRM", "url": "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html" }, { "name": "SUSE-SU-2016:0621", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00003.html" }, { "name": "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html", "refsource": "CONFIRM", "url": "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html" }, { "name": "FEDORA-2015-4300", "refsource": "FEDORA", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152844.html" }, { "name": "APPLE-SA-2015-06-30-2", "refsource": "APPLE", "url": "http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html" }, { "name": "FEDORA-2015-6951", "refsource": "FEDORA", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/156823.html" }, { "name": "openSUSE-SU-2016:0640", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html" }, { "name": "https://access.redhat.com/articles/1384453", "refsource": "CONFIRM", "url": "https://access.redhat.com/articles/1384453" }, { "name": "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html", "refsource": "CONFIRM", "url": "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html" }, { "name": "SUSE-SU-2016:1057", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00038.html" }, { "name": "HPSBUX03334", "refsource": "HP", "url": "http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2" }, { "name": "MDVSA-2015:063", "refsource": "MANDRIVA", "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:063" }, { "name": "SUSE-SU-2015:0541", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00022.html" }, { "name": "openSUSE-SU-2016:0720", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00025.html" }, { "name": "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html", "refsource": "CONFIRM", "url": "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html" }, { "name": "SUSE-SU-2016:0624", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00004.html" }, { "name": "RHSA-2015:0716", "refsource": "REDHAT", "url": "http://rhn.redhat.com/errata/RHSA-2015-0716.html" }, { "name": "http://support.apple.com/kb/HT204942", "refsource": "CONFIRM", "url": "http://support.apple.com/kb/HT204942" }, { "name": "SUSE-SU-2015:0578", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html" }, { "name": "FreeBSD-SA-15:06", "refsource": "FREEBSD", "url": "https://www.freebsd.org/security/advisories/FreeBSD-SA-15%3A06.openssl.asc" }, { "name": "SUSE-SU-2016:0631", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00007.html" }, { "name": "HPSBMU03397", "refsource": "HP", "url": "http://marc.info/?l=bugtraq\u0026m=144050297101809\u0026w=2" }, { "name": "SUSE-SU-2016:0617", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00001.html" }, { "name": "http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html", "refsource": "CONFIRM", "url": "http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html" }, { "name": "RHSA-2015:0752", "refsource": "REDHAT", "url": "http://rhn.redhat.com/errata/RHSA-2015-0752.html" }, { "name": "RHSA-2015:0800", "refsource": "REDHAT", "url": "http://rhn.redhat.com/errata/RHSA-2015-0800.html" }, { "name": "73232", "refsource": "BID", "url": "http://www.securityfocus.com/bid/73232" }, { "name": "1031929", "refsource": "SECTRACK", "url": "http://www.securitytracker.com/id/1031929" }, { "name": "SSRT102000", "refsource": "HP", "url": "http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2" }, { "name": "MDVSA-2015:062", "refsource": "MANDRIVA", "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:062" }, { "name": "openSUSE-SU-2016:0628", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00006.html" }, { "name": "FEDORA-2015-4320", "refsource": "FEDORA", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152734.html" }, { "name": "https://support.citrix.com/article/CTX216642", "refsource": "CONFIRM", "url": "https://support.citrix.com/article/CTX216642" }, { "name": "FEDORA-2015-6855", "refsource": "FEDORA", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157177.html" }, { "name": "SUSE-SU-2016:0620", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00002.html" }, { "name": "openSUSE-SU-2016:0637", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00009.html" }, { "name": "SUSE-SU-2016:0641", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00012.html" }, { "name": "GLSA-201503-11", "refsource": "GENTOO", "url": "https://security.gentoo.org/glsa/201503-11" }, { "name": "https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf", "refsource": "CONFIRM", "url": "https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf" } ] } }, "nvd.nist.gov": { "configurations": { "CVE_data_version": "4.0", "nodes": [ { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1j:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0n:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0c:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0i:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1h:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0m:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1c:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1g:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0h:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0e:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0f:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0d:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0j:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0p:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0a:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1a:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0o:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1d:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1e:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1l:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.2:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1f:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0k:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0l:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1b:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1k:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0b:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.1i:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*", "cpe_name": [], "versionEndIncluding": "0.9.8ze", "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0g:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:a:openssl:openssl:1.0.0q:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true } ], "operator": "OR" } ] }, "cve": { "CVE_data_meta": { "ASSIGNER": "secalert@redhat.com", "ID": "CVE-2015-0293" }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "en", "value": "The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "en", "value": "CWE-20" } ] } ] }, "references": { "reference_data": [ { "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404", "refsource": "CONFIRM", "tags": [], "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "name": "https://www.openssl.org/news/secadv_20150319.txt", "refsource": "CONFIRM", "tags": [ "Vendor Advisory" ], "url": "https://www.openssl.org/news/secadv_20150319.txt" }, { "name": "https://git.openssl.org/?p=openssl.git;a=commit;h=86f8fb0e344d62454f8daf3e15236b2b59210756", "refsource": "CONFIRM", "tags": [], "url": "https://git.openssl.org/?p=openssl.git;a=commit;h=86f8fb0e344d62454f8daf3e15236b2b59210756" }, { "name": "FEDORA-2015-4300", "refsource": "FEDORA", "tags": [], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152844.html" }, { "name": "FEDORA-2015-4303", "refsource": "FEDORA", "tags": [], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152733.html" }, { "name": "FEDORA-2015-4320", "refsource": "FEDORA", "tags": [], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152734.html" }, { "name": "openSUSE-SU-2015:0554", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-updates/2015-03/msg00062.html" }, { "name": "FreeBSD-SA-15:06", "refsource": "FREEBSD", "tags": [], "url": "https://www.freebsd.org/security/advisories/FreeBSD-SA-15%3A06.openssl.asc" }, { "name": "SUSE-SU-2015:0541", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00022.html" }, { "name": "USN-2537-1", "refsource": "UBUNTU", "tags": [], "url": "http://www.ubuntu.com/usn/USN-2537-1" }, { "name": "1031929", "refsource": "SECTRACK", "tags": [], "url": "http://www.securitytracker.com/id/1031929" }, { "name": "SUSE-SU-2015:0578", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html" }, { "name": "RHSA-2015:0716", "refsource": "REDHAT", "tags": [], "url": "http://rhn.redhat.com/errata/RHSA-2015-0716.html" }, { "name": "MDVSA-2015:063", "refsource": "MANDRIVA", "tags": [], "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:063" }, { "name": "MDVSA-2015:062", "refsource": "MANDRIVA", "tags": [], "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:062" }, { "name": "RHSA-2015:0752", "refsource": "REDHAT", "tags": [], "url": "http://rhn.redhat.com/errata/RHSA-2015-0752.html" }, { "name": "RHSA-2015:0715", "refsource": "REDHAT", "tags": [], "url": "http://rhn.redhat.com/errata/RHSA-2015-0715.html" }, { "name": "RHSA-2015:0800", "refsource": "REDHAT", "tags": [], "url": "http://rhn.redhat.com/errata/RHSA-2015-0800.html" }, { "name": "https://access.redhat.com/articles/1384453", "refsource": "CONFIRM", "tags": [], "url": "https://access.redhat.com/articles/1384453" }, { "name": "FEDORA-2015-6951", "refsource": "FEDORA", "tags": [], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/156823.html" }, { "name": "FEDORA-2015-6855", "refsource": "FEDORA", "tags": [], "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157177.html" }, { "name": "APPLE-SA-2015-06-30-2", "refsource": "APPLE", "tags": [], "url": "http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html" }, { "name": "http://support.apple.com/kb/HT204942", "refsource": "CONFIRM", "tags": [], "url": "http://support.apple.com/kb/HT204942" }, { "name": "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html", "refsource": "CONFIRM", "tags": [], "url": "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html" }, { "name": "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html", "refsource": "CONFIRM", "tags": [], "url": "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html" }, { "name": "https://bto.bluecoat.com/security-advisory/sa92", "refsource": "CONFIRM", "tags": [], "url": "https://bto.bluecoat.com/security-advisory/sa92" }, { "name": "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html", "refsource": "CONFIRM", "tags": [], "url": "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html" }, { "name": "HPSBMU03397", "refsource": "HP", "tags": [], "url": "http://marc.info/?l=bugtraq\u0026m=144050297101809\u0026w=2" }, { "name": "SSRT102000", "refsource": "HP", "tags": [], "url": "http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2" }, { "name": "HPSBMU03380", "refsource": "HP", "tags": [], "url": "http://marc.info/?l=bugtraq\u0026m=143748090628601\u0026w=2" }, { "name": "HPSBMU03409", "refsource": "HP", "tags": [], "url": "http://marc.info/?l=bugtraq\u0026m=144050155601375\u0026w=2" }, { "name": "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html", "refsource": "CONFIRM", "tags": [], "url": "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html" }, { "name": "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html", "refsource": "CONFIRM", "tags": [], "url": "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html" }, { "name": "http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html", "refsource": "CONFIRM", "tags": [], "url": "http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html" }, { "name": "SUSE-SU-2016:0621", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00003.html" }, { "name": "openSUSE-SU-2016:0638", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00010.html" }, { "name": "SUSE-SU-2016:0631", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00007.html" }, { "name": "openSUSE-SU-2016:0637", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00009.html" }, { "name": "SUSE-SU-2016:0617", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00001.html" }, { "name": "SUSE-SU-2016:0624", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00004.html" }, { "name": "openSUSE-SU-2016:0720", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00025.html" }, { "name": "SUSE-SU-2016:0620", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00002.html" }, { "name": "openSUSE-SU-2016:0628", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00006.html" }, { "name": "openSUSE-SU-2016:0640", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html" }, { "name": "SUSE-SU-2016:1057", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00038.html" }, { "name": "SUSE-SU-2016:0641", "refsource": "SUSE", "tags": [], "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00012.html" }, { "name": "GLSA-201503-11", "refsource": "GENTOO", "tags": [], "url": "https://security.gentoo.org/glsa/201503-11" }, { "name": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10680", "refsource": "CONFIRM", "tags": [], "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10680" }, { "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10110", "refsource": "CONFIRM", "tags": [], "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10110" }, { "name": "73232", "refsource": "BID", "tags": [], "url": "http://www.securityfocus.com/bid/73232" }, { "name": "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html", "refsource": "CONFIRM", "tags": [], "url": "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html" }, { "name": "https://support.citrix.com/article/CTX216642", "refsource": "CONFIRM", "tags": [], "url": "https://support.citrix.com/article/CTX216642" }, { "name": "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html", "refsource": "CONFIRM", "tags": [], "url": "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html" }, { "name": "https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf", "refsource": "CONFIRM", "tags": [], "url": "https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf" } ] } }, "impact": { "baseMetricV2": { "cvssV2": { "accessComplexity": "LOW", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.0, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P", "version": "2.0" }, "exploitabilityScore": 10.0, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "severity": "MEDIUM", "userInteractionRequired": false } }, "lastModifiedDate": "2022-12-13T12:15Z", "publishedDate": "2015-03-19T22:59Z" } } }
rhsa-2015_0800
Vulnerability from csaf_redhat
Published
2015-04-13 11:54
Modified
2024-11-22 08:43
Summary
Red Hat Security Advisory: openssl security update
Notes
Topic
Updated openssl packages that fix multiple security issues are now
available for Red Hat Enterprise Linux 5
Red Hat Product Security has rated this update as having Moderate security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.
It was discovered that OpenSSL would accept ephemeral RSA keys when using
non-export RSA cipher suites. A malicious server could make a TLS/SSL
client using OpenSSL use a weaker key exchange method. (CVE-2015-0204)
An integer underflow flaw, leading to a buffer overflow, was found in the
way OpenSSL decoded malformed Base64-encoded inputs. An attacker able to
make an application using OpenSSL decode a specially crafted Base64-encoded
input (such as a PEM file) could use this flaw to cause the application to
crash. Note: this flaw is not exploitable via the TLS/SSL protocol because
the data being transferred is not Base64-encoded. (CVE-2015-0292)
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
Multiple flaws were found in the way OpenSSL parsed X.509 certificates.
An attacker could use these flaws to modify an X.509 certificate to produce
a certificate with a different fingerprint without invalidating its
signature, and possibly bypass fingerprint-based blacklisting in
applications. (CVE-2014-8275)
An out-of-bounds write flaw was found in the way OpenSSL reused certain
ASN.1 structures. A remote attacker could possibly use a specially crafted
ASN.1 structure that, when parsed by an application, would cause that
application to crash. (CVE-2015-0287)
A NULL pointer dereference flaw was found in OpenSSL's X.509 certificate
handling implementation. A specially crafted X.509 certificate could cause
an application using OpenSSL to crash if the application attempted to
convert the certificate to a certificate request. (CVE-2015-0288)
A NULL pointer dereference was found in the way OpenSSL handled certain
PKCS#7 inputs. An attacker able to make an application using OpenSSL
verify, decrypt, or parse a specially crafted PKCS#7 input could cause that
application to crash. TLS/SSL clients and servers using OpenSSL were not
affected by this flaw. (CVE-2015-0289)
Red Hat would like to thank the OpenSSL project for reporting
CVE-2015-0287, CVE-2015-0288, CVE-2015-0289, CVE-2015-0292, and
CVE-2015-0293. Upstream acknowledges Emilia Käsper of the OpenSSL
development team as the original reporter of CVE-2015-0287, Brian Carpenter
as the original reporter of CVE-2015-0288, Michal Zalewski of Google as the
original reporter of CVE-2015-0289, Robert Dugal and David Ramos as the
original reporters of CVE-2015-0292, and Sean Burford of Google and Emilia
Käsper of the OpenSSL development team as the original reporters of
CVE-2015-0293.
All openssl users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all services linked to the OpenSSL library must be restarted, or
the system rebooted.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Moderate" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated openssl packages that fix multiple security issues are now\navailable for Red Hat Enterprise Linux 5\n\nRed Hat Product Security has rated this update as having Moderate security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)\nand Transport Layer Security (TLS v1) protocols, as well as a\nfull-strength, general purpose cryptography library.\n\nIt was discovered that OpenSSL would accept ephemeral RSA keys when using\nnon-export RSA cipher suites. A malicious server could make a TLS/SSL\nclient using OpenSSL use a weaker key exchange method. (CVE-2015-0204)\n\nAn integer underflow flaw, leading to a buffer overflow, was found in the\nway OpenSSL decoded malformed Base64-encoded inputs. An attacker able to\nmake an application using OpenSSL decode a specially crafted Base64-encoded\ninput (such as a PEM file) could use this flaw to cause the application to\ncrash. Note: this flaw is not exploitable via the TLS/SSL protocol because\nthe data being transferred is not Base64-encoded. (CVE-2015-0292)\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nMultiple flaws were found in the way OpenSSL parsed X.509 certificates.\nAn attacker could use these flaws to modify an X.509 certificate to produce\na certificate with a different fingerprint without invalidating its\nsignature, and possibly bypass fingerprint-based blacklisting in\napplications. (CVE-2014-8275)\n\nAn out-of-bounds write flaw was found in the way OpenSSL reused certain\nASN.1 structures. A remote attacker could possibly use a specially crafted\nASN.1 structure that, when parsed by an application, would cause that\napplication to crash. (CVE-2015-0287)\n\nA NULL pointer dereference flaw was found in OpenSSL\u0027s X.509 certificate\nhandling implementation. A specially crafted X.509 certificate could cause\nan application using OpenSSL to crash if the application attempted to\nconvert the certificate to a certificate request. (CVE-2015-0288)\n\nA NULL pointer dereference was found in the way OpenSSL handled certain\nPKCS#7 inputs. An attacker able to make an application using OpenSSL\nverify, decrypt, or parse a specially crafted PKCS#7 input could cause that\napplication to crash. TLS/SSL clients and servers using OpenSSL were not\naffected by this flaw. (CVE-2015-0289)\n\nRed Hat would like to thank the OpenSSL project for reporting \nCVE-2015-0287, CVE-2015-0288, CVE-2015-0289, CVE-2015-0292, and \nCVE-2015-0293. Upstream acknowledges Emilia K\u00e4sper of the OpenSSL \ndevelopment team as the original reporter of CVE-2015-0287, Brian Carpenter \nas the original reporter of CVE-2015-0288, Michal Zalewski of Google as the \noriginal reporter of CVE-2015-0289, Robert Dugal and David Ramos as the \noriginal reporters of CVE-2015-0292, and Sean Burford of Google and Emilia \nK\u00e4sper of the OpenSSL development team as the original reporters of \nCVE-2015-0293.\n\nAll openssl users are advised to upgrade to these updated packages, which\ncontain backported patches to correct these issues. For the update to take\neffect, all services linked to the OpenSSL library must be restarted, or\nthe system rebooted.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2015:0800", "url": "https://access.redhat.com/errata/RHSA-2015:0800" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#moderate", "url": "https://access.redhat.com/security/updates/classification/#moderate" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv_20150108.txt", "url": "https://www.openssl.org/news/secadv_20150108.txt" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv_20150319.txt", "url": "https://www.openssl.org/news/secadv_20150319.txt" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "1180184", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1180184" }, { "category": "external", "summary": "1180187", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1180187" }, { "category": "external", "summary": "1202380", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202380" }, { "category": "external", "summary": "1202384", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202384" }, { "category": "external", "summary": "1202395", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202395" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1202418", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202418" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2015/rhsa-2015_0800.json" } ], "title": "Red Hat Security Advisory: openssl security update", "tracking": { "current_release_date": "2024-11-22T08:43:13+00:00", "generator": { "date": "2024-11-22T08:43:13+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.2.1" } }, "id": "RHSA-2015:0800", "initial_release_date": "2015-04-13T11:54:05+00:00", "revision_history": [ { "date": "2015-04-13T11:54:05+00:00", "number": "1", "summary": "Initial version" }, { "date": "2015-04-13T11:54:05+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-11-22T08:43:13+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat Enterprise Linux Desktop (v. 5 client)", "product": { "name": "Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:5::client" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product": { "name": "Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:5::client_workstation" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux (v. 5 server)", "product": { "name": "Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:5::server" } } } ], "category": "product_family", "name": "Red Hat Enterprise Linux" }, { "branches": [ { "category": "product_version", "name": "openssl-devel-0:0.9.8e-33.el5_11.ia64", "product": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ia64", "product_id": "openssl-devel-0:0.9.8e-33.el5_11.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-33.el5_11?arch=ia64" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-33.el5_11.ia64", "product": { "name": "openssl-0:0.9.8e-33.el5_11.ia64", "product_id": "openssl-0:0.9.8e-33.el5_11.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-33.el5_11?arch=ia64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "product": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "product_id": "openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-33.el5_11?arch=ia64" } } }, { "category": "product_version", "name": "openssl-perl-0:0.9.8e-33.el5_11.ia64", "product": { "name": "openssl-perl-0:0.9.8e-33.el5_11.ia64", "product_id": "openssl-perl-0:0.9.8e-33.el5_11.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-33.el5_11?arch=ia64" } } } ], "category": "architecture", "name": "ia64" }, { "branches": [ { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "product": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "product_id": "openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-33.el5_11?arch=i686" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-33.el5_11.i686", "product": { "name": "openssl-0:0.9.8e-33.el5_11.i686", "product_id": "openssl-0:0.9.8e-33.el5_11.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-33.el5_11?arch=i686" } } } ], "category": "architecture", "name": "i686" }, { "branches": [ { "category": "product_version", "name": "openssl-devel-0:0.9.8e-33.el5_11.i386", "product": { "name": "openssl-devel-0:0.9.8e-33.el5_11.i386", "product_id": "openssl-devel-0:0.9.8e-33.el5_11.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-33.el5_11?arch=i386" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-33.el5_11.i386", "product": { "name": "openssl-0:0.9.8e-33.el5_11.i386", "product_id": "openssl-0:0.9.8e-33.el5_11.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-33.el5_11?arch=i386" } } }, { "category": "product_version", "name": "openssl-perl-0:0.9.8e-33.el5_11.i386", "product": { "name": "openssl-perl-0:0.9.8e-33.el5_11.i386", "product_id": "openssl-perl-0:0.9.8e-33.el5_11.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-33.el5_11?arch=i386" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "product": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "product_id": "openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-33.el5_11?arch=i386" } } } ], "category": "architecture", "name": "i386" }, { "branches": [ { "category": "product_version", "name": "openssl-perl-0:0.9.8e-33.el5_11.x86_64", "product": { "name": "openssl-perl-0:0.9.8e-33.el5_11.x86_64", "product_id": "openssl-perl-0:0.9.8e-33.el5_11.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-33.el5_11?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.8e-33.el5_11.x86_64", "product": { "name": "openssl-devel-0:0.9.8e-33.el5_11.x86_64", "product_id": "openssl-devel-0:0.9.8e-33.el5_11.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-33.el5_11?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-33.el5_11.x86_64", "product": { "name": "openssl-0:0.9.8e-33.el5_11.x86_64", "product_id": "openssl-0:0.9.8e-33.el5_11.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-33.el5_11?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "product": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "product_id": "openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-33.el5_11?arch=x86_64" } } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_version", "name": "openssl-0:0.9.8e-33.el5_11.src", "product": { "name": "openssl-0:0.9.8e-33.el5_11.src", "product_id": "openssl-0:0.9.8e-33.el5_11.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-33.el5_11?arch=src" } } } ], "category": "architecture", "name": "src" }, { "branches": [ { "category": "product_version", "name": "openssl-0:0.9.8e-33.el5_11.s390", "product": { "name": "openssl-0:0.9.8e-33.el5_11.s390", "product_id": "openssl-0:0.9.8e-33.el5_11.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-33.el5_11?arch=s390" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "product": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "product_id": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-33.el5_11?arch=s390" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.8e-33.el5_11.s390", "product": { "name": "openssl-devel-0:0.9.8e-33.el5_11.s390", "product_id": "openssl-devel-0:0.9.8e-33.el5_11.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-33.el5_11?arch=s390" } } } ], "category": "architecture", "name": "s390" }, { "branches": [ { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "product": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "product_id": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-33.el5_11?arch=s390x" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.8e-33.el5_11.s390x", "product": { "name": "openssl-devel-0:0.9.8e-33.el5_11.s390x", "product_id": "openssl-devel-0:0.9.8e-33.el5_11.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-33.el5_11?arch=s390x" } } }, { "category": "product_version", "name": "openssl-perl-0:0.9.8e-33.el5_11.s390x", "product": { "name": "openssl-perl-0:0.9.8e-33.el5_11.s390x", "product_id": "openssl-perl-0:0.9.8e-33.el5_11.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-33.el5_11?arch=s390x" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-33.el5_11.s390x", "product": { "name": "openssl-0:0.9.8e-33.el5_11.s390x", "product_id": "openssl-0:0.9.8e-33.el5_11.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-33.el5_11?arch=s390x" } } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc", "product": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc", "product_id": "openssl-devel-0:0.9.8e-33.el5_11.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-33.el5_11?arch=ppc" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "product": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "product_id": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-33.el5_11?arch=ppc" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-33.el5_11.ppc", "product": { "name": "openssl-0:0.9.8e-33.el5_11.ppc", "product_id": "openssl-0:0.9.8e-33.el5_11.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-33.el5_11?arch=ppc" } } }, { "category": "product_version", "name": "openssl-perl-0:0.9.8e-33.el5_11.ppc", "product": { "name": "openssl-perl-0:0.9.8e-33.el5_11.ppc", "product_id": "openssl-perl-0:0.9.8e-33.el5_11.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-33.el5_11?arch=ppc" } } } ], "category": "architecture", "name": "ppc" }, { "branches": [ { "category": "product_version", "name": "openssl-0:0.9.8e-33.el5_11.ppc64", "product": { "name": "openssl-0:0.9.8e-33.el5_11.ppc64", "product_id": "openssl-0:0.9.8e-33.el5_11.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-33.el5_11?arch=ppc64" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc64", "product": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc64", "product_id": "openssl-devel-0:0.9.8e-33.el5_11.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-33.el5_11?arch=ppc64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "product": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "product_id": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-33.el5_11?arch=ppc64" } } } ], "category": "architecture", "name": "ppc64" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.s390 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.s390", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.src as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.src", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i686 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.ppc64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.s390 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.s390", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 5 client)", "product_id": "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Client-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.i686 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.i686", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.ppc64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.ppc64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.s390 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.s390", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.src as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.src", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i686 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.ppc64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.s390 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.s390", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux Desktop Workstation (v. 5 client)", "product_id": "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Client-Workstation-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.s390 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.s390", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.src as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.src", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.i686 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.ppc64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.ppc64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.s390 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.s390", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-devel-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.i386 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.i386", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.ia64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.ia64", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.ppc as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.ppc", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.s390x as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.s390x", "relates_to_product_reference": "5Server-5.11.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-33.el5_11.x86_64 as a component of Red Hat Enterprise Linux (v. 5 server)", "product_id": "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" }, "product_reference": "openssl-perl-0:0.9.8e-33.el5_11.x86_64", "relates_to_product_reference": "5Server-5.11.Z" } ] }, "vulnerabilities": [ { "cve": "CVE-2014-8275", "discovery_date": "2015-01-08T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1180187" } ], "notes": [ { "category": "description", "text": "Multiple flaws were found in the way OpenSSL parsed X.509 certificates. An attacker could use these flaws to modify an X.509 certificate to produce a certificate with a different fingerprint without invalidating its signature, and possibly bypass fingerprint-based blacklisting in applications.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: Fix various certificate fingerprint issues", "title": "Vulnerability summary" }, { "category": "other", "text": "This issue affects the version of openssl098e as shipped with Red Hat Enterprise Linux 6 and 7. Red Hat Product Security has rated this issue as having Low security impact and does not plan to address this flaw for the above components in any future security updates.\n\nThis issue affects the version of openssl097a as shipped with Red Hat Enterprise Linux 5. Red Hat Enterprise Linux 5 is now in Production 3 Phase of the support and maintenance life cycle. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2014-8275" }, { "category": "external", "summary": "RHBZ#1180187", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1180187" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2014-8275", "url": "https://www.cve.org/CVERecord?id=CVE-2014-8275" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2014-8275", "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-8275" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv_20150108.txt", "url": "https://www.openssl.org/news/secadv_20150108.txt" } ], "release_date": "2015-01-05T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-13T11:54:05+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0800" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: Fix various certificate fingerprint issues" }, { "cve": "CVE-2015-0204", "cwe": { "id": "CWE-757", "name": "Selection of Less-Secure Algorithm During Negotiation (\u0027Algorithm Downgrade\u0027)" }, "discovery_date": "2015-01-08T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1180184" } ], "notes": [ { "category": "description", "text": "It was discovered that OpenSSL would accept ephemeral RSA keys when using non-export RSA cipher suites. A malicious server could make a TLS/SSL client using OpenSSL use a weaker key exchange method.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: only allow ephemeral RSA keys in export ciphersuites (FREAK)", "title": "Vulnerability summary" }, { "category": "other", "text": "This issue affects versions of openssl as shipped with Red Hat Enterprise Linux 5, 6 and 7. Errata have been released to correct this issue.\n\nThis issue affects the version of openssl098e as shipped with Red Hat Enterprise Linux 6 and 7. Red Hat Product Security has rated this issue as having Moderate security impact and does not plan to address this flaw for the openssl098e component in any future security updates.\n\nThis issue affects the version of openssl097a as shipped with Red Hat Enterprise Linux 5. Red Hat Enterprise Linux 5 is now in Production 3 Phase of the support and maintenance life cycle. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0204" }, { "category": "external", "summary": "RHBZ#1180184", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1180184" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0204", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0204" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0204", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0204" }, { "category": "external", "summary": "https://securityblog.redhat.com/2015/03/04/factoring-rsa-export-keys-freak-cve-2015-0204/", "url": "https://securityblog.redhat.com/2015/03/04/factoring-rsa-export-keys-freak-cve-2015-0204/" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv_20150108.txt", "url": "https://www.openssl.org/news/secadv_20150108.txt" } ], "release_date": "2015-01-06T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-13T11:54:05+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0800" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "cvss_v3": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "NONE", "baseScore": 5.3, "baseSeverity": "MEDIUM", "confidentialityImpact": "LOW", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N", "version": "3.0" }, "products": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: only allow ephemeral RSA keys in export ciphersuites (FREAK)" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0287", "cwe": { "id": "CWE-787", "name": "Out-of-bounds Write" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202380" } ], "notes": [ { "category": "description", "text": "An out-of-bounds write flaw was found in the way OpenSSL reused certain ASN.1 structures. A remote attacker could possibly use a specially crafted ASN.1 structure that, when parsed by an application, would cause that application to crash.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: ASN.1 structure reuse memory corruption", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0287" }, { "category": "external", "summary": "RHBZ#1202380", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202380" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0287", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0287" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0287", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0287" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-13T11:54:05+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0800" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: ASN.1 structure reuse memory corruption" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Brian Carpenter" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0288", "cwe": { "id": "CWE-476", "name": "NULL Pointer Dereference" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202418" } ], "notes": [ { "category": "description", "text": "A NULL pointer dereference flaw was found in OpenSSL\u0027s X.509 certificate handling implementation. A specially crafted X.509 certificate could cause an application using OpenSSL to crash if the application attempted to convert the certificate to a certificate request.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: X509_to_X509_REQ NULL pointer dereference", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0288" }, { "category": "external", "summary": "RHBZ#1202418", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202418" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0288", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0288" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0288", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0288" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-13T11:54:05+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0800" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: X509_to_X509_REQ NULL pointer dereference" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Michal Zalewski" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0289", "cwe": { "id": "CWE-476", "name": "NULL Pointer Dereference" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202384" } ], "notes": [ { "category": "description", "text": "A NULL pointer dereference was found in the way OpenSSL handled certain PKCS#7 inputs. An attacker able to make an application using OpenSSL verify, decrypt, or parse a specially crafted PKCS#7 input could cause that application to crash. TLS/SSL clients and servers using OpenSSL were not affected by this flaw.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: PKCS7 NULL pointer dereference", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0289" }, { "category": "external", "summary": "RHBZ#1202384", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202384" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0289", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0289" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0289", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0289" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-13T11:54:05+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0800" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: PKCS7 NULL pointer dereference" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Robert Dugal", "David Ramos" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0292", "cwe": { "id": "CWE-120", "name": "Buffer Copy without Checking Size of Input (\u0027Classic Buffer Overflow\u0027)" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202395" } ], "notes": [ { "category": "description", "text": "An integer underflow flaw, leading to a buffer overflow, was found in the way OpenSSL decoded malformed Base64-encoded inputs. An attacker able to make an application using OpenSSL decode a specially crafted Base64-encoded input (such as a PEM file) could use this flaw to cause the application to crash. Note: this flaw is not exploitable via the TLS/SSL protocol because the data being transferred is not Base64-encoded.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: integer underflow leading to buffer overflow in base64 decoding", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0292" }, { "category": "external", "summary": "RHBZ#1202395", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202395" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0292", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0292" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0292", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0292" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-13T11:54:05+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0800" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.1, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:H/Au:N/C:P/I:P/A:P", "version": "2.0" }, "products": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: integer underflow leading to buffer overflow in base64 decoding" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-13T11:54:05+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0800" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0703", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310811" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2 connection handshakes that indicated non-zero clear key length for non-export cipher suites. An attacker could use this flaw to decrypt recorded SSLv2 sessions with the server by using it as a decryption oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: Divide-and-conquer session key recovery in SSLv2", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0703" }, { "category": "external", "summary": "RHBZ#1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0703", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0703" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-13T11:54:05+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0800" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: Divide-and-conquer session key recovery in SSLv2" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0704", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310814" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 protocol implementation in OpenSSL did not properly implement the Bleichenbacher protection for export cipher suites. An attacker could use a SSLv2 server using OpenSSL as a Bleichenbacher oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0704" }, { "category": "external", "summary": "RHBZ#1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0704", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0704" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2015-04-13T11:54:05+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0800" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Client-Workstation-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Client-Workstation-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.src", "5Server-5.11.Z:openssl-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.i686", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-debuginfo-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.ppc64", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-devel-0:0.9.8e-33.el5_11.x86_64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.i386", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ia64", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.ppc", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.s390x", "5Server-5.11.Z:openssl-perl-0:0.9.8e-33.el5_11.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers" } ] }
rhsa-2016_0304
Vulnerability from csaf_redhat
Published
2016-03-01 14:45
Modified
2024-11-05 19:13
Summary
Red Hat Security Advisory: openssl security update
Notes
Topic
Updated openssl packages that fix multiple security issues are now
available for Red Hat Enterprise Linux 5.6 and 5.9 Long Life.
Red Hat Product Security has rated this update as having Important security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.
A padding oracle flaw was found in the Secure Sockets Layer version 2.0
(SSLv2) protocol. An attacker can potentially use this flaw to decrypt
RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol
version, allowing them to decrypt such connections. This cross-protocol
attack is publicly referred to as DROWN. (CVE-2016-0800)
Note: This issue was addressed by disabling the SSLv2 protocol by default
when using the 'SSLv23' connection methods, and removing support for weak
SSLv2 cipher suites. It is possible to re-enable the SSLv2 protocol in the
'SSLv23' connection methods by default by setting the OPENSSL_ENABLE_SSL2
environment variable before starting an application that needs to have
SSLv2 enabled. For more information, refer to the knowledge base article
linked to in the References section.
It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2
connection handshakes that indicated non-zero clear key length for
non-export cipher suites. An attacker could use this flaw to decrypt
recorded SSLv2 sessions with the server by using it as a decryption
oracle.(CVE-2016-0703)
It was discovered that the SSLv2 protocol implementation in OpenSSL did
not properly implement the Bleichenbacher protection for export cipher
suites. An attacker could use a SSLv2 server using OpenSSL as a
Bleichenbacher oracle. (CVE-2016-0704)
Note: The CVE-2016-0703 and CVE-2016-0704 issues could allow for more
efficient exploitation of the CVE-2016-0800 issue via the DROWN attack.
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2
ciphers that have been disabled on the server. This could result in weak
SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to
man-in-the-middle attacks. (CVE-2015-3197)
Red Hat would like to thank the OpenSSL project for reporting these issues.
Upstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original
reporters of CVE-2016-0800 and CVE-2015-3197; David Adrian (University of
Michigan) and J. Alex Halderman (University of Michigan) as the original
reporters of CVE-2016-0703 and CVE-2016-0704; and Sean Burford (Google) and
Emilia Käsper (OpenSSL development team) as the original reporters of
CVE-2015-0293.
All openssl users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all services linked to the OpenSSL library must be restarted, or
the system rebooted.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated openssl packages that fix multiple security issues are now\navailable for Red Hat Enterprise Linux 5.6 and 5.9 Long Life.\n\nRed Hat Product Security has rated this update as having Important security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)\nand Transport Layer Security (TLS v1) protocols, as well as a\nfull-strength, general purpose cryptography library.\n\nA padding oracle flaw was found in the Secure Sockets Layer version 2.0\n(SSLv2) protocol. An attacker can potentially use this flaw to decrypt\nRSA-encrypted cipher text from a connection using a newer SSL/TLS protocol\nversion, allowing them to decrypt such connections. This cross-protocol\nattack is publicly referred to as DROWN. (CVE-2016-0800)\n\nNote: This issue was addressed by disabling the SSLv2 protocol by default\nwhen using the \u0027SSLv23\u0027 connection methods, and removing support for weak\nSSLv2 cipher suites. It is possible to re-enable the SSLv2 protocol in the\n\u0027SSLv23\u0027 connection methods by default by setting the OPENSSL_ENABLE_SSL2\nenvironment variable before starting an application that needs to have\nSSLv2 enabled. For more information, refer to the knowledge base article\nlinked to in the References section.\n\nIt was discovered that the SSLv2 servers using OpenSSL accepted SSLv2\nconnection handshakes that indicated non-zero clear key length for\nnon-export cipher suites. An attacker could use this flaw to decrypt\nrecorded SSLv2 sessions with the server by using it as a decryption \noracle.(CVE-2016-0703)\n\nIt was discovered that the SSLv2 protocol implementation in OpenSSL did \nnot properly implement the Bleichenbacher protection for export cipher \nsuites. An attacker could use a SSLv2 server using OpenSSL as a \nBleichenbacher oracle. (CVE-2016-0704)\n\nNote: The CVE-2016-0703 and CVE-2016-0704 issues could allow for more\nefficient exploitation of the CVE-2016-0800 issue via the DROWN attack.\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA flaw was found in the way malicious SSLv2 clients could negotiate SSLv2\nciphers that have been disabled on the server. This could result in weak\nSSLv2 ciphers being used for SSLv2 connections, making them vulnerable to\nman-in-the-middle attacks. (CVE-2015-3197)\n\nRed Hat would like to thank the OpenSSL project for reporting these issues.\nUpstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original\nreporters of CVE-2016-0800 and CVE-2015-3197; David Adrian (University of\nMichigan) and J. Alex Halderman (University of Michigan) as the original\nreporters of CVE-2016-0703 and CVE-2016-0704; and Sean Burford (Google) and\nEmilia K\u00e4sper (OpenSSL development team) as the original reporters of\nCVE-2015-0293.\n\nAll openssl users are advised to upgrade to these updated packages, which\ncontain backported patches to correct these issues. For the update to take\neffect, all services linked to the OpenSSL library must be restarted, or\nthe system rebooted.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2016:0304", "url": "https://access.redhat.com/errata/RHSA-2016:0304" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#important", "url": "https://access.redhat.com/security/updates/classification/#important" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://drownattack.com/", "url": "https://drownattack.com/" }, { "category": "external", "summary": "https://openssl.org/news/secadv/20160128.txt", "url": "https://openssl.org/news/secadv/20160128.txt" }, { "category": "external", "summary": "https://openssl.org/news/secadv/20160301.txt", "url": "https://openssl.org/news/secadv/20160301.txt" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2016/rhsa-2016_0304.json" } ], "title": "Red Hat Security Advisory: openssl security update", "tracking": { "current_release_date": "2024-11-05T19:13:59+00:00", "generator": { "date": "2024-11-05T19:13:59+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.1.1" } }, "id": "RHSA-2016:0304", "initial_release_date": "2016-03-01T14:45:06+00:00", "revision_history": [ { "date": "2016-03-01T14:45:06+00:00", "number": "1", "summary": "Initial version" }, { "date": "2016-03-01T14:45:06+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-11-05T19:13:59+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product": { "name": "Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_mission_critical:5.6" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product": { "name": "Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_aus:5.9" } } } ], "category": "product_family", "name": "Red Hat Enterprise Linux" }, { "branches": [ { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "product": { "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "product_id": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-12.el5_6.13?arch=i386" } } }, { "category": "product_version", "name": "openssl-perl-0:0.9.8e-12.el5_6.13.i386", "product": { "name": "openssl-perl-0:0.9.8e-12.el5_6.13.i386", "product_id": "openssl-perl-0:0.9.8e-12.el5_6.13.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-12.el5_6.13?arch=i386" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-12.el5_6.13.i386", "product": { "name": "openssl-0:0.9.8e-12.el5_6.13.i386", "product_id": "openssl-0:0.9.8e-12.el5_6.13.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-12.el5_6.13?arch=i386" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.8e-12.el5_6.13.i386", "product": { "name": "openssl-devel-0:0.9.8e-12.el5_6.13.i386", "product_id": "openssl-devel-0:0.9.8e-12.el5_6.13.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-12.el5_6.13?arch=i386" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "product": { "name": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "product_id": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-26.el5_9.5?arch=i386" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.8e-26.el5_9.5.i386", "product": { "name": "openssl-devel-0:0.9.8e-26.el5_9.5.i386", "product_id": "openssl-devel-0:0.9.8e-26.el5_9.5.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-26.el5_9.5?arch=i386" } } }, { "category": "product_version", "name": "openssl-perl-0:0.9.8e-26.el5_9.5.i386", "product": { "name": "openssl-perl-0:0.9.8e-26.el5_9.5.i386", "product_id": "openssl-perl-0:0.9.8e-26.el5_9.5.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-26.el5_9.5?arch=i386" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-26.el5_9.5.i386", "product": { "name": "openssl-0:0.9.8e-26.el5_9.5.i386", "product_id": "openssl-0:0.9.8e-26.el5_9.5.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-26.el5_9.5?arch=i386" } } } ], "category": "architecture", "name": "i386" }, { "branches": [ { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "product": { "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "product_id": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-12.el5_6.13?arch=i686" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-12.el5_6.13.i686", "product": { "name": "openssl-0:0.9.8e-12.el5_6.13.i686", "product_id": "openssl-0:0.9.8e-12.el5_6.13.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-12.el5_6.13?arch=i686" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "product": { "name": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "product_id": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-26.el5_9.5?arch=i686" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-26.el5_9.5.i686", "product": { "name": "openssl-0:0.9.8e-26.el5_9.5.i686", "product_id": "openssl-0:0.9.8e-26.el5_9.5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-26.el5_9.5?arch=i686" } } } ], "category": "architecture", "name": "i686" }, { "branches": [ { "category": "product_version", "name": "openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "product": { "name": "openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "product_id": "openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-12.el5_6.13?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "product": { "name": "openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "product_id": "openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-12.el5_6.13?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "product": { "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "product_id": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-12.el5_6.13?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-12.el5_6.13.x86_64", "product": { "name": "openssl-0:0.9.8e-12.el5_6.13.x86_64", "product_id": "openssl-0:0.9.8e-12.el5_6.13.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-12.el5_6.13?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "product": { "name": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "product_id": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-26.el5_9.5?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "product": { "name": "openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "product_id": "openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-26.el5_9.5?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-perl-0:0.9.8e-26.el5_9.5.x86_64", "product": { "name": "openssl-perl-0:0.9.8e-26.el5_9.5.x86_64", "product_id": "openssl-perl-0:0.9.8e-26.el5_9.5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-26.el5_9.5?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-26.el5_9.5.x86_64", "product": { "name": "openssl-0:0.9.8e-26.el5_9.5.x86_64", "product_id": "openssl-0:0.9.8e-26.el5_9.5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-26.el5_9.5?arch=x86_64" } } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_version", "name": "openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "product": { "name": "openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "product_id": "openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.8e-12.el5_6.13?arch=ia64" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-12.el5_6.13.ia64", "product": { "name": "openssl-0:0.9.8e-12.el5_6.13.ia64", "product_id": "openssl-0:0.9.8e-12.el5_6.13.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-12.el5_6.13?arch=ia64" } } }, { "category": "product_version", "name": "openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "product": { "name": "openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "product_id": "openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.8e-12.el5_6.13?arch=ia64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "product": { "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "product_id": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.8e-12.el5_6.13?arch=ia64" } } } ], "category": "architecture", "name": "ia64" }, { "branches": [ { "category": "product_version", "name": "openssl-0:0.9.8e-12.el5_6.13.src", "product": { "name": "openssl-0:0.9.8e-12.el5_6.13.src", "product_id": "openssl-0:0.9.8e-12.el5_6.13.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-12.el5_6.13?arch=src" } } }, { "category": "product_version", "name": "openssl-0:0.9.8e-26.el5_9.5.src", "product": { "name": "openssl-0:0.9.8e-26.el5_9.5.src", "product_id": "openssl-0:0.9.8e-26.el5_9.5.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.8e-26.el5_9.5?arch=src" } } } ], "category": "architecture", "name": "src" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-12.el5_6.13.i386 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386" }, "product_reference": "openssl-0:0.9.8e-12.el5_6.13.i386", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-12.el5_6.13.i686 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686" }, "product_reference": "openssl-0:0.9.8e-12.el5_6.13.i686", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-12.el5_6.13.ia64 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64" }, "product_reference": "openssl-0:0.9.8e-12.el5_6.13.ia64", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-12.el5_6.13.src as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src" }, "product_reference": "openssl-0:0.9.8e-12.el5_6.13.src", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-12.el5_6.13.x86_64 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64" }, "product_reference": "openssl-0:0.9.8e-12.el5_6.13.x86_64", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386" }, "product_reference": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686" }, "product_reference": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-12.el5_6.13.i386 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386" }, "product_reference": "openssl-devel-0:0.9.8e-12.el5_6.13.i386", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-12.el5_6.13.ia64 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64" }, "product_reference": "openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-12.el5_6.13.x86_64 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64" }, "product_reference": "openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-12.el5_6.13.i386 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386" }, "product_reference": "openssl-perl-0:0.9.8e-12.el5_6.13.i386", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-12.el5_6.13.ia64 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64" }, "product_reference": "openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-12.el5_6.13.x86_64 as a component of Red Hat Enterprise Linux Long Life (v. 5.6 server)", "product_id": "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64" }, "product_reference": "openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "relates_to_product_reference": "5Server-5.6.LL" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-26.el5_9.5.i386 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386" }, "product_reference": "openssl-0:0.9.8e-26.el5_9.5.i386", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-26.el5_9.5.i686 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686" }, "product_reference": "openssl-0:0.9.8e-26.el5_9.5.i686", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-26.el5_9.5.src as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src" }, "product_reference": "openssl-0:0.9.8e-26.el5_9.5.src", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.8e-26.el5_9.5.x86_64 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64" }, "product_reference": "openssl-0:0.9.8e-26.el5_9.5.x86_64", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386" }, "product_reference": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686" }, "product_reference": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64" }, "product_reference": "openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-26.el5_9.5.i386 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386" }, "product_reference": "openssl-devel-0:0.9.8e-26.el5_9.5.i386", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.8e-26.el5_9.5.x86_64 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64" }, "product_reference": "openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-26.el5_9.5.i386 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386" }, "product_reference": "openssl-perl-0:0.9.8e-26.el5_9.5.i386", "relates_to_product_reference": "5Server-5.9.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.8e-26.el5_9.5.x86_64 as a component of Red Hat Enterprise Linux Long Life (v. 5.9 server)", "product_id": "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" }, "product_reference": "openssl-perl-0:0.9.8e-26.el5_9.5.x86_64", "relates_to_product_reference": "5Server-5.9.AUS" } ] }, "vulnerabilities": [ { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:06+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0304" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-3197", "discovery_date": "2016-01-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1301846" } ], "notes": [ { "category": "description", "text": "A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2 ciphers that were disabled on the server. This could result in weak SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to man-in-the-middle attacks.", "title": "Vulnerability description" }, { "category": "summary", "text": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers", "title": "Vulnerability summary" }, { "category": "other", "text": "This security flaw can only be exploited when a malicious client negotiates SSLv2 ciphers and completes a SSLv2 handshake. This flaw cannot be actively exploited by a Man-In-The-Middle attacker. \n\nAll versions of OpenSSL shipped with Red Hat Enterprise Linux enable SSLv2 protocol, but disable SSLv2 ciphers by default (in Red Hat Enterprise Linux 6 and later), therefore are vulnerable to this flaw. Red Hat Product Security has rated this issue as having Low security impact, a future update may address this flaw.\n\nSSLv2 suffers from a number of security flaws allowing attackers to capture and alter information passed between a client and the server. Therefore we strongly recommend that SSLv2 should be disabled on all the SSL/TLS servers.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-3197" }, { "category": "external", "summary": "RHBZ#1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-3197", "url": "https://www.cve.org/CVERecord?id=CVE-2015-3197" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160128.txt", "url": "https://www.openssl.org/news/secadv/20160128.txt" } ], "release_date": "2016-01-28T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:06+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0304" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0703", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310811" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2 connection handshakes that indicated non-zero clear key length for non-export cipher suites. An attacker could use this flaw to decrypt recorded SSLv2 sessions with the server by using it as a decryption oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: Divide-and-conquer session key recovery in SSLv2", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0703" }, { "category": "external", "summary": "RHBZ#1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0703", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0703" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:06+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0304" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: Divide-and-conquer session key recovery in SSLv2" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0704", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310814" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 protocol implementation in OpenSSL did not properly implement the Bleichenbacher protection for export cipher suites. An attacker could use a SSLv2 server using OpenSSL as a Bleichenbacher oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0704" }, { "category": "external", "summary": "RHBZ#1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0704", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0704" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:06+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0304" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0800", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310593" } ], "notes": [ { "category": "description", "text": "A padding oracle flaw was found in the Secure Sockets Layer version 2.0 (SSLv2) protocol. An attacker could potentially use this flaw to decrypt RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol version, allowing them to decrypt such connections. This cross-protocol attack is publicly referred to as DROWN.", "title": "Vulnerability description" }, { "category": "summary", "text": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0800" }, { "category": "external", "summary": "RHBZ#1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0800", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0800" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://www.drownattack.com/", "url": "https://www.drownattack.com/" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:06+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0304" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.src", "5Server-5.6.LL:openssl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.i686", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-debuginfo-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-devel-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.i386", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.ia64", "5Server-5.6.LL:openssl-perl-0:0.9.8e-12.el5_6.13.x86_64", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.src", "5Server-5.9.AUS:openssl-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.i686", "5Server-5.9.AUS:openssl-debuginfo-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-devel-0:0.9.8e-26.el5_9.5.x86_64", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.i386", "5Server-5.9.AUS:openssl-perl-0:0.9.8e-26.el5_9.5.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)" } ] }
rhsa-2016_0372
Vulnerability from csaf_redhat
Published
2016-03-09 04:08
Modified
2024-11-05 19:15
Summary
Red Hat Security Advisory: openssl098e security update
Notes
Topic
Updated openssl098e packages that fix multiple security issues are now
available for Red Hat Enterprise Linux 6 and 7.
Red Hat Product Security has rated this update as having Important security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.
A padding oracle flaw was found in the Secure Sockets Layer version 2.0
(SSLv2) protocol. An attacker can potentially use this flaw to decrypt
RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol
version, allowing them to decrypt such connections. This cross-protocol
attack is publicly referred to as DROWN. (CVE-2016-0800)
Note: This issue was addressed by disabling the SSLv2 protocol by default
when using the 'SSLv23' connection methods, and removing support for weak
SSLv2 cipher suites. For more information, refer to the knowledge base
article linked to in the References section.
It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2
connection handshakes that indicated non-zero clear key length for
non-export cipher suites. An attacker could use this flaw to decrypt
recorded SSLv2 sessions with the server by using it as a decryption
oracle.(CVE-2016-0703)
It was discovered that the SSLv2 protocol implementation in OpenSSL did
not properly implement the Bleichenbacher protection for export cipher
suites. An attacker could use a SSLv2 server using OpenSSL as a
Bleichenbacher oracle. (CVE-2016-0704)
Note: The CVE-2016-0703 and CVE-2016-0704 issues could allow for more
efficient exploitation of the CVE-2016-0800 issue via the DROWN attack.
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2
ciphers that have been disabled on the server. This could result in weak
SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to
man-in-the-middle attacks. (CVE-2015-3197)
Red Hat would like to thank the OpenSSL project for reporting these issues.
Upstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original
reporters of CVE-2016-0800 and CVE-2015-3197; David Adrian (University of
Michigan) and J. Alex Halderman (University of Michigan) as the original
reporters of CVE-2016-0703 and CVE-2016-0704; and Sean Burford (Google) and
Emilia Käsper (OpenSSL development team) as the original reporters of
CVE-2015-0293.
All openssl098e users are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. For the update
to take effect, all services linked to the openssl098e library must be
restarted, or the system rebooted.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated openssl098e packages that fix multiple security issues are now\navailable for Red Hat Enterprise Linux 6 and 7.\n\nRed Hat Product Security has rated this update as having Important security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)\nand Transport Layer Security (TLS v1) protocols, as well as a\nfull-strength, general purpose cryptography library.\n\nA padding oracle flaw was found in the Secure Sockets Layer version 2.0\n(SSLv2) protocol. An attacker can potentially use this flaw to decrypt\nRSA-encrypted cipher text from a connection using a newer SSL/TLS protocol\nversion, allowing them to decrypt such connections. This cross-protocol\nattack is publicly referred to as DROWN. (CVE-2016-0800)\n\nNote: This issue was addressed by disabling the SSLv2 protocol by default\nwhen using the \u0027SSLv23\u0027 connection methods, and removing support for weak\nSSLv2 cipher suites. For more information, refer to the knowledge base\narticle linked to in the References section.\n\nIt was discovered that the SSLv2 servers using OpenSSL accepted SSLv2\nconnection handshakes that indicated non-zero clear key length for\nnon-export cipher suites. An attacker could use this flaw to decrypt\nrecorded SSLv2 sessions with the server by using it as a decryption \noracle.(CVE-2016-0703)\n\nIt was discovered that the SSLv2 protocol implementation in OpenSSL did\nnot properly implement the Bleichenbacher protection for export cipher\nsuites. An attacker could use a SSLv2 server using OpenSSL as a\nBleichenbacher oracle. (CVE-2016-0704)\n\nNote: The CVE-2016-0703 and CVE-2016-0704 issues could allow for more\nefficient exploitation of the CVE-2016-0800 issue via the DROWN attack.\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA flaw was found in the way malicious SSLv2 clients could negotiate SSLv2\nciphers that have been disabled on the server. This could result in weak\nSSLv2 ciphers being used for SSLv2 connections, making them vulnerable to\nman-in-the-middle attacks. (CVE-2015-3197)\n\nRed Hat would like to thank the OpenSSL project for reporting these issues.\nUpstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original\nreporters of CVE-2016-0800 and CVE-2015-3197; David Adrian (University of\nMichigan) and J. Alex Halderman (University of Michigan) as the original\nreporters of CVE-2016-0703 and CVE-2016-0704; and Sean Burford (Google) and\nEmilia K\u00e4sper (OpenSSL development team) as the original reporters of\nCVE-2015-0293.\n\nAll openssl098e users are advised to upgrade to these updated packages,\nwhich contain backported patches to correct these issues. For the update\nto take effect, all services linked to the openssl098e library must be\nrestarted, or the system rebooted.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2016:0372", "url": "https://access.redhat.com/errata/RHSA-2016:0372" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#important", "url": "https://access.redhat.com/security/updates/classification/#important" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://drownattack.com/", "url": "https://drownattack.com/" }, { "category": "external", "summary": "https://openssl.org/news/secadv/20160128.txt", "url": "https://openssl.org/news/secadv/20160128.txt" }, { "category": "external", "summary": "https://openssl.org/news/secadv/20160301.txt", "url": "https://openssl.org/news/secadv/20160301.txt" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2016/rhsa-2016_0372.json" } ], "title": "Red Hat Security Advisory: openssl098e security update", "tracking": { "current_release_date": "2024-11-05T19:15:01+00:00", "generator": { "date": "2024-11-05T19:15:01+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.1.1" } }, "id": "RHSA-2016:0372", "initial_release_date": "2016-03-09T04:08:29+00:00", "revision_history": [ { "date": "2016-03-09T04:08:29+00:00", "number": "1", "summary": "Initial version" }, { "date": "2016-03-09T04:08:29+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-11-05T19:15:01+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat Enterprise Linux Desktop (v. 6)", "product": { "name": "Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::client" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux HPC Node (v. 6)", "product": { "name": "Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::computenode" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server (v. 6)", "product": { "name": "Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Workstation (v. 6)", "product": { "name": "Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::workstation" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Client (v. 7)", "product": { "name": "Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::client" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux ComputeNode (v. 7)", "product": { "name": "Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::computenode" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server (v. 7)", "product": { "name": "Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Workstation (v. 7)", "product": { "name": "Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::workstation" } } } ], "category": "product_family", "name": "Red Hat Enterprise Linux" }, { "branches": [ { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "product_id": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-20.el6_7.1?arch=x86_64" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "product": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "product_id": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-20.el6_7.1?arch=x86_64" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "product": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "product_id": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-29.el7_2.3?arch=x86_64" } } }, { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "product_id": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-29.el7_2.3?arch=x86_64" } } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "product_id": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-20.el6_7.1?arch=i686" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-20.el6_7.1.i686", "product": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.i686", "product_id": "openssl098e-0:0.9.8e-20.el6_7.1.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-20.el6_7.1?arch=i686" } } }, { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "product_id": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-29.el7_2.3?arch=i686" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-29.el7_2.3.i686", "product": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.i686", "product_id": "openssl098e-0:0.9.8e-29.el7_2.3.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-29.el7_2.3?arch=i686" } } } ], "category": "architecture", "name": "i686" }, { "branches": [ { "category": "product_version", "name": "openssl098e-0:0.9.8e-20.el6_7.1.src", "product": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.src", "product_id": "openssl098e-0:0.9.8e-20.el6_7.1.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-20.el6_7.1?arch=src" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-29.el7_2.3.src", "product": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.src", "product_id": "openssl098e-0:0.9.8e-29.el7_2.3.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-29.el7_2.3?arch=src" } } } ], "category": "architecture", "name": "src" }, { "branches": [ { "category": "product_version", "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc", "product": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc", "product_id": "openssl098e-0:0.9.8e-20.el6_7.1.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-20.el6_7.1?arch=ppc" } } }, { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "product_id": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-20.el6_7.1?arch=ppc" } } }, { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "product_id": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-29.el7_2.3?arch=ppc" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc", "product": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc", "product_id": "openssl098e-0:0.9.8e-29.el7_2.3.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-29.el7_2.3?arch=ppc" } } } ], "category": "architecture", "name": "ppc" }, { "branches": [ { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "product_id": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-20.el6_7.1?arch=ppc64" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "product": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "product_id": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-20.el6_7.1?arch=ppc64" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "product": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "product_id": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-29.el7_2.3?arch=ppc64" } } }, { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "product_id": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-29.el7_2.3?arch=ppc64" } } } ], "category": "architecture", "name": "ppc64" }, { "branches": [ { "category": "product_version", "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390x", "product": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390x", "product_id": "openssl098e-0:0.9.8e-20.el6_7.1.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-20.el6_7.1?arch=s390x" } } }, { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "product_id": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-20.el6_7.1?arch=s390x" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390x", "product": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390x", "product_id": "openssl098e-0:0.9.8e-29.el7_2.3.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-29.el7_2.3?arch=s390x" } } }, { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "product_id": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-29.el7_2.3?arch=s390x" } } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "product_id": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-20.el6_7.1?arch=s390" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390", "product": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390", "product_id": "openssl098e-0:0.9.8e-20.el6_7.1.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-20.el6_7.1?arch=s390" } } }, { "category": "product_version", "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "product": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "product_id": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e-debuginfo@0.9.8e-29.el7_2.3?arch=s390" } } }, { "category": "product_version", "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390", "product": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390", "product_id": "openssl098e-0:0.9.8e-29.el7_2.3.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl098e@0.9.8e-29.el7_2.3?arch=s390" } } } ], "category": "architecture", "name": "s390" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.i686", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.ppc", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.s390", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390x as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.s390x", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.src as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.src", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "relates_to_product_reference": "6Client-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.i686 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.i686", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.ppc", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.s390", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390x as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.s390x", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.src as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.src", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "relates_to_product_reference": "6ComputeNode-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.i686 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.i686", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.ppc", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.s390", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390x as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.s390x", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.src as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.src", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "relates_to_product_reference": "6Server-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.i686", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.ppc", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.s390", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.s390x as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.s390x", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.src as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.src", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64" }, "product_reference": "openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "relates_to_product_reference": "6Workstation-6.7.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.i686 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.i686", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.ppc", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.s390", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390x as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.s390x", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.src as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.src", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "relates_to_product_reference": "7Client-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.i686 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.i686", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.ppc", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.s390", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390x as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.s390x", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.src as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.src", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "relates_to_product_reference": "7ComputeNode-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.i686 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.i686", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.ppc", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.s390", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390x as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.s390x", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.src as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.src", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "relates_to_product_reference": "7Server-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.i686 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.i686", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.ppc", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.s390", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.s390x as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.s390x", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.src as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.src", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64" }, "product_reference": "openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "relates_to_product_reference": "7Workstation-7.2.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" }, "product_reference": "openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "relates_to_product_reference": "7Workstation-7.2.Z" } ] }, "vulnerabilities": [ { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-09T04:08:29+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0372" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-3197", "discovery_date": "2016-01-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1301846" } ], "notes": [ { "category": "description", "text": "A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2 ciphers that were disabled on the server. This could result in weak SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to man-in-the-middle attacks.", "title": "Vulnerability description" }, { "category": "summary", "text": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers", "title": "Vulnerability summary" }, { "category": "other", "text": "This security flaw can only be exploited when a malicious client negotiates SSLv2 ciphers and completes a SSLv2 handshake. This flaw cannot be actively exploited by a Man-In-The-Middle attacker. \n\nAll versions of OpenSSL shipped with Red Hat Enterprise Linux enable SSLv2 protocol, but disable SSLv2 ciphers by default (in Red Hat Enterprise Linux 6 and later), therefore are vulnerable to this flaw. Red Hat Product Security has rated this issue as having Low security impact, a future update may address this flaw.\n\nSSLv2 suffers from a number of security flaws allowing attackers to capture and alter information passed between a client and the server. Therefore we strongly recommend that SSLv2 should be disabled on all the SSL/TLS servers.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-3197" }, { "category": "external", "summary": "RHBZ#1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-3197", "url": "https://www.cve.org/CVERecord?id=CVE-2015-3197" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160128.txt", "url": "https://www.openssl.org/news/secadv/20160128.txt" } ], "release_date": "2016-01-28T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-09T04:08:29+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0372" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0703", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310811" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2 connection handshakes that indicated non-zero clear key length for non-export cipher suites. An attacker could use this flaw to decrypt recorded SSLv2 sessions with the server by using it as a decryption oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: Divide-and-conquer session key recovery in SSLv2", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0703" }, { "category": "external", "summary": "RHBZ#1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0703", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0703" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-09T04:08:29+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0372" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: Divide-and-conquer session key recovery in SSLv2" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0704", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310814" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 protocol implementation in OpenSSL did not properly implement the Bleichenbacher protection for export cipher suites. An attacker could use a SSLv2 server using OpenSSL as a Bleichenbacher oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0704" }, { "category": "external", "summary": "RHBZ#1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0704", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0704" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-09T04:08:29+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0372" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0800", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310593" } ], "notes": [ { "category": "description", "text": "A padding oracle flaw was found in the Secure Sockets Layer version 2.0 (SSLv2) protocol. An attacker could potentially use this flaw to decrypt RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol version, allowing them to decrypt such connections. This cross-protocol attack is publicly referred to as DROWN.", "title": "Vulnerability description" }, { "category": "summary", "text": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0800" }, { "category": "external", "summary": "RHBZ#1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0800", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0800" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://www.drownattack.com/", "url": "https://www.drownattack.com/" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-09T04:08:29+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0372" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Client-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Client-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6ComputeNode-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6ComputeNode-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Server-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Server-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.src", "6Workstation-6.7.z:openssl098e-0:0.9.8e-20.el6_7.1.x86_64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.i686", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.ppc64", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.s390x", "6Workstation-6.7.z:openssl098e-debuginfo-0:0.9.8e-20.el6_7.1.x86_64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Client-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Client-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7ComputeNode-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7ComputeNode-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Server-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Server-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.src", "7Workstation-7.2.Z:openssl098e-0:0.9.8e-29.el7_2.3.x86_64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.i686", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.ppc64", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.s390x", "7Workstation-7.2.Z:openssl098e-debuginfo-0:0.9.8e-29.el7_2.3.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)" } ] }
rhsa-2016_0490
Vulnerability from csaf_redhat
Published
2016-03-22 16:48
Modified
2024-11-05 19:16
Summary
Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 6.4.6 OpenSSL security update
Notes
Topic
Updated packages that fix several OpenSSL security issues are available for
Red Hat JBoss Enterprise Application Platform 6.4.6 for Microsoft Windows
and Solaris.
Red Hat Product Security has rated this update as having Important security
impact. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available from the CVE link in the
References section.
Details
Red Hat JBoss Enterprise Application Platform 6 is a platform for Java
applications based on JBoss Application Server 7.
A padding oracle flaw was found in the Secure Sockets Layer version 2.0
(SSLv2) protocol. An attacker can potentially use this flaw to decrypt
RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol
version, allowing them to decrypt such connections. This cross-protocol
attack is publicly referred to as DROWN. (CVE-2016-0800)
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2
ciphers that have been disabled on the server. This could result in weak
SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to
man-in-the-middle attacks. (CVE-2015-3197)
Red Hat would like to thank the OpenSSL project for reporting these issues.
Upstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original
reporters of CVE-2016-0800 and CVE-2015-3197; and Sean Burford (Google) and
Emilia Käsper (OpenSSL development team) as the original reporters of
CVE-2015-0293.
All users of Red Hat JBoss Enterprise Application Platform 6.4 are
advised to upgrade to these updated packages. The JBoss server
process must be restarted for the update to take effect.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated packages that fix several OpenSSL security issues are available for\nRed Hat JBoss Enterprise Application Platform 6.4.6 for Microsoft Windows\nand Solaris.\n\nRed Hat Product Security has rated this update as having Important security\nimpact. A Common Vulnerability Scoring System (CVSS) base score, which\ngives a detailed severity rating, is available from the CVE link in the\nReferences section.", "title": "Topic" }, { "category": "general", "text": "Red Hat JBoss Enterprise Application Platform 6 is a platform for Java\napplications based on JBoss Application Server 7.\n\nA padding oracle flaw was found in the Secure Sockets Layer version 2.0\n(SSLv2) protocol. An attacker can potentially use this flaw to decrypt\nRSA-encrypted cipher text from a connection using a newer SSL/TLS protocol\nversion, allowing them to decrypt such connections. This cross-protocol\nattack is publicly referred to as DROWN. (CVE-2016-0800)\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA flaw was found in the way malicious SSLv2 clients could negotiate SSLv2\nciphers that have been disabled on the server. This could result in weak\nSSLv2 ciphers being used for SSLv2 connections, making them vulnerable to\nman-in-the-middle attacks. (CVE-2015-3197)\n\nRed Hat would like to thank the OpenSSL project for reporting these issues.\nUpstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original\nreporters of CVE-2016-0800 and CVE-2015-3197; and Sean Burford (Google) and\nEmilia K\u00e4sper (OpenSSL development team) as the original reporters of\nCVE-2015-0293.\n\nAll users of Red Hat JBoss Enterprise Application Platform 6.4 are\nadvised to upgrade to these updated packages. The JBoss server\nprocess must be restarted for the update to take effect.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2016:0490", "url": "https://access.redhat.com/errata/RHSA-2016:0490" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#important", "url": "https://access.redhat.com/security/updates/classification/#important" }, { "category": "external", "summary": "https://access.redhat.com/documentation/en-US/JBoss_Enterprise_Application_Platform/6.4/index.html", "url": "https://access.redhat.com/documentation/en-US/JBoss_Enterprise_Application_Platform/6.4/index.html" }, { "category": "external", "summary": "https://access.redhat.com/jbossnetwork/restricted/listSoftware.html?product=appplatform\u0026downloadType=securityPatches\u0026version=6.4", "url": "https://access.redhat.com/jbossnetwork/restricted/listSoftware.html?product=appplatform\u0026downloadType=securityPatches\u0026version=6.4" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2016/rhsa-2016_0490.json" } ], "title": "Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 6.4.6 OpenSSL security update", "tracking": { "current_release_date": "2024-11-05T19:16:15+00:00", "generator": { "date": "2024-11-05T19:16:15+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.1.1" } }, "id": "RHSA-2016:0490", "initial_release_date": "2016-03-22T16:48:57+00:00", "revision_history": [ { "date": "2016-03-22T16:48:57+00:00", "number": "1", "summary": "Initial version" }, { "date": "2019-02-20T12:39:36+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-11-05T19:16:15+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat JBoss Enterprise Application Platform 6.4", "product": { "name": "Red Hat JBoss Enterprise Application Platform 6.4", "product_id": "Red Hat JBoss Enterprise Application Platform 6.4", "product_identification_helper": { "cpe": "cpe:/a:redhat:jboss_enterprise_application_platform:6.4" } } } ], "category": "product_family", "name": "Red Hat JBoss Enterprise Application Platform" } ], "category": "vendor", "name": "Red Hat" } ] }, "vulnerabilities": [ { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "Red Hat JBoss Enterprise Application Platform 6.4" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-22T16:48:57+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied, and back up your existing \nRed Hat JBoss Enterprise Application Platform installation (including \nall applications and configuration files).", "product_ids": [ "Red Hat JBoss Enterprise Application Platform 6.4" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0490" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "Red Hat JBoss Enterprise Application Platform 6.4" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-3197", "discovery_date": "2016-01-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1301846" } ], "notes": [ { "category": "description", "text": "A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2 ciphers that were disabled on the server. This could result in weak SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to man-in-the-middle attacks.", "title": "Vulnerability description" }, { "category": "summary", "text": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers", "title": "Vulnerability summary" }, { "category": "other", "text": "This security flaw can only be exploited when a malicious client negotiates SSLv2 ciphers and completes a SSLv2 handshake. This flaw cannot be actively exploited by a Man-In-The-Middle attacker. \n\nAll versions of OpenSSL shipped with Red Hat Enterprise Linux enable SSLv2 protocol, but disable SSLv2 ciphers by default (in Red Hat Enterprise Linux 6 and later), therefore are vulnerable to this flaw. Red Hat Product Security has rated this issue as having Low security impact, a future update may address this flaw.\n\nSSLv2 suffers from a number of security flaws allowing attackers to capture and alter information passed between a client and the server. Therefore we strongly recommend that SSLv2 should be disabled on all the SSL/TLS servers.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "Red Hat JBoss Enterprise Application Platform 6.4" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-3197" }, { "category": "external", "summary": "RHBZ#1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-3197", "url": "https://www.cve.org/CVERecord?id=CVE-2015-3197" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160128.txt", "url": "https://www.openssl.org/news/secadv/20160128.txt" } ], "release_date": "2016-01-28T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-22T16:48:57+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied, and back up your existing \nRed Hat JBoss Enterprise Application Platform installation (including \nall applications and configuration files).", "product_ids": [ "Red Hat JBoss Enterprise Application Platform 6.4" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0490" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "Red Hat JBoss Enterprise Application Platform 6.4" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0800", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310593" } ], "notes": [ { "category": "description", "text": "A padding oracle flaw was found in the Secure Sockets Layer version 2.0 (SSLv2) protocol. An attacker could potentially use this flaw to decrypt RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol version, allowing them to decrypt such connections. This cross-protocol attack is publicly referred to as DROWN.", "title": "Vulnerability description" }, { "category": "summary", "text": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "Red Hat JBoss Enterprise Application Platform 6.4" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0800" }, { "category": "external", "summary": "RHBZ#1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0800", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0800" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://www.drownattack.com/", "url": "https://www.drownattack.com/" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-22T16:48:57+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied, and back up your existing \nRed Hat JBoss Enterprise Application Platform installation (including \nall applications and configuration files).", "product_ids": [ "Red Hat JBoss Enterprise Application Platform 6.4" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0490" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "Red Hat JBoss Enterprise Application Platform 6.4" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)" } ] }
rhsa-2016_0306
Vulnerability from csaf_redhat
Published
2016-03-01 14:44
Modified
2024-11-05 19:14
Summary
Red Hat Security Advisory: openssl security update
Notes
Topic
Updated openssl packages that fix multiple security issues are now
available for Red Hat Enterprise Linux 4 Extended Lifecycle Support.
Red Hat Product Security has rated this update as having Important security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.
A padding oracle flaw was found in the Secure Sockets Layer version 2.0
(SSLv2) protocol. An attacker can potentially use this flaw to decrypt
RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol
version, allowing them to decrypt such connections. This cross-protocol
attack is publicly referred to as DROWN. (CVE-2016-0800)
Note: This issue was addressed by disabling the SSLv2 protocol by default
when using the 'SSLv23' connection methods, and removing support for weak
SSLv2 cipher suites. It is possible to re-enable the SSLv2 protocol in the
'SSLv23' connection methods by default by setting the OPENSSL_ENABLE_SSL2
environment variable before starting an application that needs to have
SSLv2 enabled. For more information, refer to the knowledge base article
linked to in the References section.
It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2
connection handshakes that indicated non-zero clear key length for
non-export cipher suites. An attacker could use this flaw to decrypt
recorded SSLv2 sessions with the server by using it as a decryption
oracle.(CVE-2016-0703)
It was discovered that the SSLv2 protocol implementation in OpenSSL did
not properly implement the Bleichenbacher protection for export cipher
suites. An attacker could use a SSLv2 server using OpenSSL as a
Bleichenbacher oracle. (CVE-2016-0704)
Note: The CVE-2016-0703 and CVE-2016-0704 issues could allow for more
efficient exploitation of the CVE-2016-0800 issue via the DROWN attack.
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2
ciphers that have been disabled on the server. This could result in weak
SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to
man-in-the-middle attacks. (CVE-2015-3197)
Red Hat would like to thank the OpenSSL project for reporting these issues.
Upstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original
reporters of CVE-2016-0800 and CVE-2015-3197; David Adrian (University of
Michigan) and J. Alex Halderman (University of Michigan) as the original
reporters of CVE-2016-0703 and CVE-2016-0704; and Sean Burford (Google) and
Emilia Käsper (OpenSSL development team) as the original reporters of
CVE-2015-0293.
All openssl users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all services linked to the OpenSSL library must be restarted, or
the system rebooted.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated openssl packages that fix multiple security issues are now\navailable for Red Hat Enterprise Linux 4 Extended Lifecycle Support.\n\nRed Hat Product Security has rated this update as having Important security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)\nand Transport Layer Security (TLS v1) protocols, as well as a\nfull-strength, general purpose cryptography library.\n\nA padding oracle flaw was found in the Secure Sockets Layer version 2.0\n(SSLv2) protocol. An attacker can potentially use this flaw to decrypt\nRSA-encrypted cipher text from a connection using a newer SSL/TLS protocol\nversion, allowing them to decrypt such connections. This cross-protocol\nattack is publicly referred to as DROWN. (CVE-2016-0800)\n\nNote: This issue was addressed by disabling the SSLv2 protocol by default\nwhen using the \u0027SSLv23\u0027 connection methods, and removing support for weak\nSSLv2 cipher suites. It is possible to re-enable the SSLv2 protocol in the\n\u0027SSLv23\u0027 connection methods by default by setting the OPENSSL_ENABLE_SSL2\nenvironment variable before starting an application that needs to have\nSSLv2 enabled. For more information, refer to the knowledge base article\nlinked to in the References section.\n\nIt was discovered that the SSLv2 servers using OpenSSL accepted SSLv2\nconnection handshakes that indicated non-zero clear key length for\nnon-export cipher suites. An attacker could use this flaw to decrypt\nrecorded SSLv2 sessions with the server by using it as a decryption \noracle.(CVE-2016-0703)\n\nIt was discovered that the SSLv2 protocol implementation in OpenSSL did \nnot properly implement the Bleichenbacher protection for export cipher \nsuites. An attacker could use a SSLv2 server using OpenSSL as a \nBleichenbacher oracle. (CVE-2016-0704)\n\nNote: The CVE-2016-0703 and CVE-2016-0704 issues could allow for more\nefficient exploitation of the CVE-2016-0800 issue via the DROWN attack.\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA flaw was found in the way malicious SSLv2 clients could negotiate SSLv2\nciphers that have been disabled on the server. This could result in weak\nSSLv2 ciphers being used for SSLv2 connections, making them vulnerable to\nman-in-the-middle attacks. (CVE-2015-3197)\n\nRed Hat would like to thank the OpenSSL project for reporting these issues.\nUpstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original\nreporters of CVE-2016-0800 and CVE-2015-3197; David Adrian (University of\nMichigan) and J. Alex Halderman (University of Michigan) as the original\nreporters of CVE-2016-0703 and CVE-2016-0704; and Sean Burford (Google) and\nEmilia K\u00e4sper (OpenSSL development team) as the original reporters of\nCVE-2015-0293.\n\nAll openssl users are advised to upgrade to these updated packages, which\ncontain backported patches to correct these issues. For the update to take\neffect, all services linked to the OpenSSL library must be restarted, or\nthe system rebooted.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2016:0306", "url": "https://access.redhat.com/errata/RHSA-2016:0306" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#important", "url": "https://access.redhat.com/security/updates/classification/#important" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://drownattack.com/", "url": "https://drownattack.com/" }, { "category": "external", "summary": "https://openssl.org/news/secadv/20160128.txt", "url": "https://openssl.org/news/secadv/20160128.txt" }, { "category": "external", "summary": "https://openssl.org/news/secadv/20160301.txt", "url": "https://openssl.org/news/secadv/20160301.txt" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2016/rhsa-2016_0306.json" } ], "title": "Red Hat Security Advisory: openssl security update", "tracking": { "current_release_date": "2024-11-05T19:14:04+00:00", "generator": { "date": "2024-11-05T19:14:04+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.1.1" } }, "id": "RHSA-2016:0306", "initial_release_date": "2016-03-01T14:44:56+00:00", "revision_history": [ { "date": "2016-03-01T14:44:56+00:00", "number": "1", "summary": "Initial version" }, { "date": "2016-03-01T14:44:56+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-11-05T19:14:04+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat Enterprise Linux AS (v. 4 ELS)", "product": { "name": "Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_els:4::as" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux ES (v. 4 ELS)", "product": { "name": "Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_els:4::es" } } } ], "category": "product_family", "name": "Red Hat Enterprise Linux" }, { "branches": [ { "category": "product_version", "name": "openssl-0:0.9.7a-43.23.el4.i686", "product": { "name": "openssl-0:0.9.7a-43.23.el4.i686", "product_id": "openssl-0:0.9.7a-43.23.el4.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.7a-43.23.el4?arch=i686" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "product": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "product_id": "openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.7a-43.23.el4?arch=i686" } } } ], "category": "architecture", "name": "i686" }, { "branches": [ { "category": "product_version", "name": "openssl-perl-0:0.9.7a-43.23.el4.i386", "product": { "name": "openssl-perl-0:0.9.7a-43.23.el4.i386", "product_id": "openssl-perl-0:0.9.7a-43.23.el4.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.7a-43.23.el4?arch=i386" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.7a-43.23.el4.i386", "product": { "name": "openssl-devel-0:0.9.7a-43.23.el4.i386", "product_id": "openssl-devel-0:0.9.7a-43.23.el4.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.7a-43.23.el4?arch=i386" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "product": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "product_id": "openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.7a-43.23.el4?arch=i386" } } }, { "category": "product_version", "name": "openssl-0:0.9.7a-43.23.el4.i386", "product": { "name": "openssl-0:0.9.7a-43.23.el4.i386", "product_id": "openssl-0:0.9.7a-43.23.el4.i386", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.7a-43.23.el4?arch=i386" } } } ], "category": "architecture", "name": "i386" }, { "branches": [ { "category": "product_version", "name": "openssl-devel-0:0.9.7a-43.23.el4.ia64", "product": { "name": "openssl-devel-0:0.9.7a-43.23.el4.ia64", "product_id": "openssl-devel-0:0.9.7a-43.23.el4.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.7a-43.23.el4?arch=ia64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "product": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "product_id": "openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.7a-43.23.el4?arch=ia64" } } }, { "category": "product_version", "name": "openssl-perl-0:0.9.7a-43.23.el4.ia64", "product": { "name": "openssl-perl-0:0.9.7a-43.23.el4.ia64", "product_id": "openssl-perl-0:0.9.7a-43.23.el4.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.7a-43.23.el4?arch=ia64" } } }, { "category": "product_version", "name": "openssl-0:0.9.7a-43.23.el4.ia64", "product": { "name": "openssl-0:0.9.7a-43.23.el4.ia64", "product_id": "openssl-0:0.9.7a-43.23.el4.ia64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.7a-43.23.el4?arch=ia64" } } } ], "category": "architecture", "name": "ia64" }, { "branches": [ { "category": "product_version", "name": "openssl-perl-0:0.9.7a-43.23.el4.x86_64", "product": { "name": "openssl-perl-0:0.9.7a-43.23.el4.x86_64", "product_id": "openssl-perl-0:0.9.7a-43.23.el4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@0.9.7a-43.23.el4?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "product": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "product_id": "openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@0.9.7a-43.23.el4?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-0:0.9.7a-43.23.el4.x86_64", "product": { "name": "openssl-0:0.9.7a-43.23.el4.x86_64", "product_id": "openssl-0:0.9.7a-43.23.el4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.7a-43.23.el4?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-devel-0:0.9.7a-43.23.el4.x86_64", "product": { "name": "openssl-devel-0:0.9.7a-43.23.el4.x86_64", "product_id": "openssl-devel-0:0.9.7a-43.23.el4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@0.9.7a-43.23.el4?arch=x86_64" } } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_version", "name": "openssl-0:0.9.7a-43.23.el4.src", "product": { "name": "openssl-0:0.9.7a-43.23.el4.src", "product_id": "openssl-0:0.9.7a-43.23.el4.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@0.9.7a-43.23.el4?arch=src" } } } ], "category": "architecture", "name": "src" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.i386 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.i386", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.i686 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.i686", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.ia64 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.ia64", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.src as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.src", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.x86_64 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.x86_64", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.i386 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386" }, "product_reference": "openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.i686 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686" }, "product_reference": "openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.ia64 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64" }, "product_reference": "openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64" }, "product_reference": "openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.7a-43.23.el4.i386 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386" }, "product_reference": "openssl-devel-0:0.9.7a-43.23.el4.i386", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.7a-43.23.el4.ia64 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64" }, "product_reference": "openssl-devel-0:0.9.7a-43.23.el4.ia64", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.7a-43.23.el4.x86_64 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64" }, "product_reference": "openssl-devel-0:0.9.7a-43.23.el4.x86_64", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.7a-43.23.el4.i386 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386" }, "product_reference": "openssl-perl-0:0.9.7a-43.23.el4.i386", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.7a-43.23.el4.ia64 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64" }, "product_reference": "openssl-perl-0:0.9.7a-43.23.el4.ia64", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.7a-43.23.el4.x86_64 as a component of Red Hat Enterprise Linux AS (v. 4 ELS)", "product_id": "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" }, "product_reference": "openssl-perl-0:0.9.7a-43.23.el4.x86_64", "relates_to_product_reference": "4AS-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.i386 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.i386", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.i686 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.i686", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.ia64 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.ia64", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.src as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.src", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:0.9.7a-43.23.el4.x86_64 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64" }, "product_reference": "openssl-0:0.9.7a-43.23.el4.x86_64", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.i386 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386" }, "product_reference": "openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.i686 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686" }, "product_reference": "openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.ia64 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64" }, "product_reference": "openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64" }, "product_reference": "openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.7a-43.23.el4.i386 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386" }, "product_reference": "openssl-devel-0:0.9.7a-43.23.el4.i386", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.7a-43.23.el4.ia64 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64" }, "product_reference": "openssl-devel-0:0.9.7a-43.23.el4.ia64", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:0.9.7a-43.23.el4.x86_64 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64" }, "product_reference": "openssl-devel-0:0.9.7a-43.23.el4.x86_64", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.7a-43.23.el4.i386 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386" }, "product_reference": "openssl-perl-0:0.9.7a-43.23.el4.i386", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.7a-43.23.el4.ia64 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64" }, "product_reference": "openssl-perl-0:0.9.7a-43.23.el4.ia64", "relates_to_product_reference": "4ES-ELS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:0.9.7a-43.23.el4.x86_64 as a component of Red Hat Enterprise Linux ES (v. 4 ELS)", "product_id": "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" }, "product_reference": "openssl-perl-0:0.9.7a-43.23.el4.x86_64", "relates_to_product_reference": "4ES-ELS" } ] }, "vulnerabilities": [ { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:44:56+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0306" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-3197", "discovery_date": "2016-01-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1301846" } ], "notes": [ { "category": "description", "text": "A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2 ciphers that were disabled on the server. This could result in weak SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to man-in-the-middle attacks.", "title": "Vulnerability description" }, { "category": "summary", "text": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers", "title": "Vulnerability summary" }, { "category": "other", "text": "This security flaw can only be exploited when a malicious client negotiates SSLv2 ciphers and completes a SSLv2 handshake. This flaw cannot be actively exploited by a Man-In-The-Middle attacker. \n\nAll versions of OpenSSL shipped with Red Hat Enterprise Linux enable SSLv2 protocol, but disable SSLv2 ciphers by default (in Red Hat Enterprise Linux 6 and later), therefore are vulnerable to this flaw. Red Hat Product Security has rated this issue as having Low security impact, a future update may address this flaw.\n\nSSLv2 suffers from a number of security flaws allowing attackers to capture and alter information passed between a client and the server. Therefore we strongly recommend that SSLv2 should be disabled on all the SSL/TLS servers.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-3197" }, { "category": "external", "summary": "RHBZ#1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-3197", "url": "https://www.cve.org/CVERecord?id=CVE-2015-3197" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160128.txt", "url": "https://www.openssl.org/news/secadv/20160128.txt" } ], "release_date": "2016-01-28T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:44:56+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0306" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0703", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310811" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2 connection handshakes that indicated non-zero clear key length for non-export cipher suites. An attacker could use this flaw to decrypt recorded SSLv2 sessions with the server by using it as a decryption oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: Divide-and-conquer session key recovery in SSLv2", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0703" }, { "category": "external", "summary": "RHBZ#1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0703", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0703" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:44:56+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0306" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: Divide-and-conquer session key recovery in SSLv2" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0704", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310814" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 protocol implementation in OpenSSL did not properly implement the Bleichenbacher protection for export cipher suites. An attacker could use a SSLv2 server using OpenSSL as a Bleichenbacher oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0704" }, { "category": "external", "summary": "RHBZ#1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0704", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0704" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:44:56+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0306" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0800", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310593" } ], "notes": [ { "category": "description", "text": "A padding oracle flaw was found in the Secure Sockets Layer version 2.0 (SSLv2) protocol. An attacker could potentially use this flaw to decrypt RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol version, allowing them to decrypt such connections. This cross-protocol attack is publicly referred to as DROWN.", "title": "Vulnerability description" }, { "category": "summary", "text": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0800" }, { "category": "external", "summary": "RHBZ#1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0800", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0800" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://www.drownattack.com/", "url": "https://www.drownattack.com/" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:44:56+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0306" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.src", "4AS-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4AS-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.src", "4ES-ELS:openssl-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.i686", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-debuginfo-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-devel-0:0.9.7a-43.23.el4.x86_64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.i386", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.ia64", "4ES-ELS:openssl-perl-0:0.9.7a-43.23.el4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)" } ] }
rhsa-2016_0445
Vulnerability from csaf_redhat
Published
2016-03-14 16:43
Modified
2024-11-05 19:15
Summary
Red Hat Security Advisory: Red Hat JBoss Web Server 2.1.0 OpenSSL security update
Notes
Topic
Updated packages that fix several OpenSSL security issues are available
for Red Hat JBoss Web Server 2.1.0 for Microsoft Windows and Solaris.
Red Hat Product Security has rated this update as having Important security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
Red Hat JBoss Web Server is a fully integrated and certified set of
components for hosting Java web applications. It is comprised of the
Apache HTTP Server, the Apache Tomcat Servlet container, Apache Tomcat
Connector(mod_jk), JBoss HTTP Connector (mod_cluster), Hibernate, and
the Tomcat Native library.
A padding oracle flaw was found in the Secure Sockets Layer version 2.0
(SSLv2) protocol. An attacker could potentially use this flaw to decrypt
RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol
version, allowing them to decrypt such connections. This cross-protocol
attack is publicly referred to as DROWN. (CVE-2016-0800)
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2
ciphers that were disabled on the server. This could result in weak
SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to
man-in-the-middle attacks. (CVE-2015-3197)
Red Hat would like to thank the OpenSSL project for reporting these issues.
Upstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original
reporters of CVE-2016-0800 and CVE-2015-3197; and Sean Burford (Google)
and Emilia Käsper (OpenSSL development team) as the original reporters of
CVE-2015-0293.
Users of Red Hat JBoss Web Server 2.1.0 are advised to upgrade to these
updated packages which fix these issues. The Red Hat JBoss Web Server
process must be restarted for the update to take effect.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated packages that fix several OpenSSL security issues are available\nfor Red Hat JBoss Web Server 2.1.0 for Microsoft Windows and Solaris.\n\nRed Hat Product Security has rated this update as having Important security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "Red Hat JBoss Web Server is a fully integrated and certified set of\ncomponents for hosting Java web applications. It is comprised of the\nApache HTTP Server, the Apache Tomcat Servlet container, Apache Tomcat\nConnector(mod_jk), JBoss HTTP Connector (mod_cluster), Hibernate, and\nthe Tomcat Native library.\n\nA padding oracle flaw was found in the Secure Sockets Layer version 2.0\n(SSLv2) protocol. An attacker could potentially use this flaw to decrypt\nRSA-encrypted cipher text from a connection using a newer SSL/TLS protocol\nversion, allowing them to decrypt such connections. This cross-protocol\nattack is publicly referred to as DROWN. (CVE-2016-0800)\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA flaw was found in the way malicious SSLv2 clients could negotiate SSLv2\nciphers that were disabled on the server. This could result in weak\nSSLv2 ciphers being used for SSLv2 connections, making them vulnerable to\nman-in-the-middle attacks. (CVE-2015-3197)\n\nRed Hat would like to thank the OpenSSL project for reporting these issues.\nUpstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original\nreporters of CVE-2016-0800 and CVE-2015-3197; and Sean Burford (Google)\nand Emilia K\u00e4sper (OpenSSL development team) as the original reporters of\nCVE-2015-0293.\n\nUsers of Red Hat JBoss Web Server 2.1.0 are advised to upgrade to these\nupdated packages which fix these issues. The Red Hat JBoss Web Server\nprocess must be restarted for the update to take effect.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2016:0445", "url": "https://access.redhat.com/errata/RHSA-2016:0445" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#important", "url": "https://access.redhat.com/security/updates/classification/#important" }, { "category": "external", "summary": "https://access.redhat.com/jbossnetwork/restricted/listSoftware.html?downloadType=securityPatches\u0026product=webserver\u0026version=2.1.0", "url": "https://access.redhat.com/jbossnetwork/restricted/listSoftware.html?downloadType=securityPatches\u0026product=webserver\u0026version=2.1.0" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2016/rhsa-2016_0445.json" } ], "title": "Red Hat Security Advisory: Red Hat JBoss Web Server 2.1.0 OpenSSL security update", "tracking": { "current_release_date": "2024-11-05T19:15:13+00:00", "generator": { "date": "2024-11-05T19:15:13+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.1.1" } }, "id": "RHSA-2016:0445", "initial_release_date": "2016-03-14T16:43:38+00:00", "revision_history": [ { "date": "2016-03-14T16:43:38+00:00", "number": "1", "summary": "Initial version" }, { "date": "2017-10-24T16:37:08+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-11-05T19:15:13+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat JBoss Web Server 2.1", "product": { "name": "Red Hat JBoss Web Server 2.1", "product_id": "Red Hat JBoss Web Server 2.1", "product_identification_helper": { "cpe": "cpe:/a:redhat:jboss_enterprise_web_server:2.1" } } } ], "category": "product_family", "name": "Red Hat JBoss Web Server" } ], "category": "vendor", "name": "Red Hat" } ] }, "vulnerabilities": [ { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "Red Hat JBoss Web Server 2.1" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-14T16:43:38+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied, and back up your existing Red\nHat JBoss Web Server installation (including all applications and\nconfiguration files).\n\nFor details on how to apply this update, refer to:\nhttps://access.redhat.com/articles/11258", "product_ids": [ "Red Hat JBoss Web Server 2.1" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0445" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "Red Hat JBoss Web Server 2.1" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-3197", "discovery_date": "2016-01-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1301846" } ], "notes": [ { "category": "description", "text": "A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2 ciphers that were disabled on the server. This could result in weak SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to man-in-the-middle attacks.", "title": "Vulnerability description" }, { "category": "summary", "text": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers", "title": "Vulnerability summary" }, { "category": "other", "text": "This security flaw can only be exploited when a malicious client negotiates SSLv2 ciphers and completes a SSLv2 handshake. This flaw cannot be actively exploited by a Man-In-The-Middle attacker. \n\nAll versions of OpenSSL shipped with Red Hat Enterprise Linux enable SSLv2 protocol, but disable SSLv2 ciphers by default (in Red Hat Enterprise Linux 6 and later), therefore are vulnerable to this flaw. Red Hat Product Security has rated this issue as having Low security impact, a future update may address this flaw.\n\nSSLv2 suffers from a number of security flaws allowing attackers to capture and alter information passed between a client and the server. Therefore we strongly recommend that SSLv2 should be disabled on all the SSL/TLS servers.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "Red Hat JBoss Web Server 2.1" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-3197" }, { "category": "external", "summary": "RHBZ#1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-3197", "url": "https://www.cve.org/CVERecord?id=CVE-2015-3197" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160128.txt", "url": "https://www.openssl.org/news/secadv/20160128.txt" } ], "release_date": "2016-01-28T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-14T16:43:38+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied, and back up your existing Red\nHat JBoss Web Server installation (including all applications and\nconfiguration files).\n\nFor details on how to apply this update, refer to:\nhttps://access.redhat.com/articles/11258", "product_ids": [ "Red Hat JBoss Web Server 2.1" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0445" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "Red Hat JBoss Web Server 2.1" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0800", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310593" } ], "notes": [ { "category": "description", "text": "A padding oracle flaw was found in the Secure Sockets Layer version 2.0 (SSLv2) protocol. An attacker could potentially use this flaw to decrypt RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol version, allowing them to decrypt such connections. This cross-protocol attack is publicly referred to as DROWN.", "title": "Vulnerability description" }, { "category": "summary", "text": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "Red Hat JBoss Web Server 2.1" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0800" }, { "category": "external", "summary": "RHBZ#1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0800", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0800" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://www.drownattack.com/", "url": "https://www.drownattack.com/" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-14T16:43:38+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied, and back up your existing Red\nHat JBoss Web Server installation (including all applications and\nconfiguration files).\n\nFor details on how to apply this update, refer to:\nhttps://access.redhat.com/articles/11258", "product_ids": [ "Red Hat JBoss Web Server 2.1" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0445" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "Red Hat JBoss Web Server 2.1" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)" } ] }
rhsa-2016_0446
Vulnerability from csaf_redhat
Published
2016-03-14 20:00
Modified
2024-11-05 19:15
Summary
Red Hat Security Advisory: Red Hat JBoss Web Server 3.0.2 OpenSSL Security Update
Notes
Topic
Updated packages that fix several OpenSSL security issues are available for
Red Hat JBoss Web Server 3.0.2 for Microsoft Windows and Solaris.
Red Hat Product Security has rated this update as having Important security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
Red Hat JBoss Web Server is a fully integrated and certified set of
components for hosting Java web applications. It is comprised of the
Apache HTTP Server, the Apache Tomcat Servlet container, Apache Tomcat
Connector (mod_jk), JBoss HTTP Connector (mod_cluster), Hibernate, and
the Tomcat Native library.
A padding oracle flaw was found in the Secure Sockets Layer version 2.0
(SSLv2) protocol. An attacker could potentially use this flaw to decrypt
RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol
version, allowing them to decrypt such connections. This cross-protocol
attack is publicly referred to as DROWN. (CVE-2016-0800)
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2
ciphers that were disabled on the server. This could result in weak
SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to
man-in-the-middle attacks. (CVE-2015-3197)
Red Hat would like to thank the OpenSSL project for reporting these issues.
Upstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original
reporters of CVE-2016-0800 and CVE-2015-3197; and Sean Burford (Google)
and Emilia Käsper (OpenSSL development team) as the original reporters of
CVE-2015-0293.
Users of Red Hat JBoss Web Server 3.0.2 are advised to upgrade to these
updated packages which fix these issues. The Red Hat JBoss Web Server
process must be restarted for the update to take effect.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated packages that fix several OpenSSL security issues are available for\nRed Hat JBoss Web Server 3.0.2 for Microsoft Windows and Solaris.\n\nRed Hat Product Security has rated this update as having Important security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "Red Hat JBoss Web Server is a fully integrated and certified set of\ncomponents for hosting Java web applications. It is comprised of the\nApache HTTP Server, the Apache Tomcat Servlet container, Apache Tomcat\nConnector (mod_jk), JBoss HTTP Connector (mod_cluster), Hibernate, and\nthe Tomcat Native library.\n\nA padding oracle flaw was found in the Secure Sockets Layer version 2.0\n(SSLv2) protocol. An attacker could potentially use this flaw to decrypt\nRSA-encrypted cipher text from a connection using a newer SSL/TLS protocol\nversion, allowing them to decrypt such connections. This cross-protocol\nattack is publicly referred to as DROWN. (CVE-2016-0800)\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA flaw was found in the way malicious SSLv2 clients could negotiate SSLv2\nciphers that were disabled on the server. This could result in weak\nSSLv2 ciphers being used for SSLv2 connections, making them vulnerable to\nman-in-the-middle attacks. (CVE-2015-3197)\n\nRed Hat would like to thank the OpenSSL project for reporting these issues.\nUpstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original\nreporters of CVE-2016-0800 and CVE-2015-3197; and Sean Burford (Google)\nand Emilia K\u00e4sper (OpenSSL development team) as the original reporters of\nCVE-2015-0293.\n\nUsers of Red Hat JBoss Web Server 3.0.2 are advised to upgrade to these\nupdated packages which fix these issues. The Red Hat JBoss Web Server\nprocess must be restarted for the update to take effect.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2016:0446", "url": "https://access.redhat.com/errata/RHSA-2016:0446" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#important", "url": "https://access.redhat.com/security/updates/classification/#important" }, { "category": "external", "summary": "https://access.redhat.com/jbossnetwork/restricted/listSoftware.html?product=webserver\u0026downloadType=securityPatches\u0026version=3.0.2", "url": "https://access.redhat.com/jbossnetwork/restricted/listSoftware.html?product=webserver\u0026downloadType=securityPatches\u0026version=3.0.2" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "JWS-222", "url": "https://issues.redhat.com/browse/JWS-222" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2016/rhsa-2016_0446.json" } ], "title": "Red Hat Security Advisory: Red Hat JBoss Web Server 3.0.2 OpenSSL Security Update", "tracking": { "current_release_date": "2024-11-05T19:15:46+00:00", "generator": { "date": "2024-11-05T19:15:46+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.1.1" } }, "id": "RHSA-2016:0446", "initial_release_date": "2016-03-14T20:00:19+00:00", "revision_history": [ { "date": "2016-03-14T20:00:19+00:00", "number": "1", "summary": "Initial version" }, { "date": "2019-02-20T12:38:41+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-11-05T19:15:46+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat JBoss Web Server 3.0", "product": { "name": "Red Hat JBoss Web Server 3.0", "product_id": "Red Hat JBoss Web Server 3.0", "product_identification_helper": { "cpe": "cpe:/a:redhat:jboss_enterprise_web_server:3.0" } } } ], "category": "product_family", "name": "Red Hat JBoss Web Server" } ], "category": "vendor", "name": "Red Hat" } ] }, "vulnerabilities": [ { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "Red Hat JBoss Web Server 3.0" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-14T20:00:19+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied, and back up your existing Red\nHat JBoss Web Server installation (including all applications and\nconfiguration files).\n\nFor details on how to apply this update, refer to:\nhttps://access.redhat.com/articles/11258", "product_ids": [ "Red Hat JBoss Web Server 3.0" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0446" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "Red Hat JBoss Web Server 3.0" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-3197", "discovery_date": "2016-01-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1301846" } ], "notes": [ { "category": "description", "text": "A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2 ciphers that were disabled on the server. This could result in weak SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to man-in-the-middle attacks.", "title": "Vulnerability description" }, { "category": "summary", "text": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers", "title": "Vulnerability summary" }, { "category": "other", "text": "This security flaw can only be exploited when a malicious client negotiates SSLv2 ciphers and completes a SSLv2 handshake. This flaw cannot be actively exploited by a Man-In-The-Middle attacker. \n\nAll versions of OpenSSL shipped with Red Hat Enterprise Linux enable SSLv2 protocol, but disable SSLv2 ciphers by default (in Red Hat Enterprise Linux 6 and later), therefore are vulnerable to this flaw. Red Hat Product Security has rated this issue as having Low security impact, a future update may address this flaw.\n\nSSLv2 suffers from a number of security flaws allowing attackers to capture and alter information passed between a client and the server. Therefore we strongly recommend that SSLv2 should be disabled on all the SSL/TLS servers.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "Red Hat JBoss Web Server 3.0" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-3197" }, { "category": "external", "summary": "RHBZ#1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-3197", "url": "https://www.cve.org/CVERecord?id=CVE-2015-3197" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160128.txt", "url": "https://www.openssl.org/news/secadv/20160128.txt" } ], "release_date": "2016-01-28T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-14T20:00:19+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied, and back up your existing Red\nHat JBoss Web Server installation (including all applications and\nconfiguration files).\n\nFor details on how to apply this update, refer to:\nhttps://access.redhat.com/articles/11258", "product_ids": [ "Red Hat JBoss Web Server 3.0" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0446" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "Red Hat JBoss Web Server 3.0" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0800", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310593" } ], "notes": [ { "category": "description", "text": "A padding oracle flaw was found in the Secure Sockets Layer version 2.0 (SSLv2) protocol. An attacker could potentially use this flaw to decrypt RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol version, allowing them to decrypt such connections. This cross-protocol attack is publicly referred to as DROWN.", "title": "Vulnerability description" }, { "category": "summary", "text": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "Red Hat JBoss Web Server 3.0" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0800" }, { "category": "external", "summary": "RHBZ#1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0800", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0800" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://www.drownattack.com/", "url": "https://www.drownattack.com/" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-14T20:00:19+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied, and back up your existing Red\nHat JBoss Web Server installation (including all applications and\nconfiguration files).\n\nFor details on how to apply this update, refer to:\nhttps://access.redhat.com/articles/11258", "product_ids": [ "Red Hat JBoss Web Server 3.0" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0446" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "Red Hat JBoss Web Server 3.0" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)" } ] }
rhsa-2015_0715
Vulnerability from csaf_redhat
Published
2015-03-23 20:50
Modified
2024-09-15 22:24
Summary
Red Hat Security Advisory: openssl security update
Notes
Topic
Updated openssl packages that fix multiple security issues are now
available for Red Hat Enterprise Linux 6.
Red Hat Product Security has rated this update as having Moderate security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.
An invalid pointer use flaw was found in OpenSSL's ASN1_TYPE_cmp()
function. A remote attacker could crash a TLS/SSL client or server using
OpenSSL via a specially crafted X.509 certificate when the
attacker-supplied certificate was verified by the application.
(CVE-2015-0286)
An integer underflow flaw, leading to a buffer overflow, was found in the
way OpenSSL decoded malformed Base64-encoded inputs. An attacker able to
make an application using OpenSSL decode a specially crafted Base64-encoded
input (such as a PEM file) could use this flaw to cause the application to
crash. Note: this flaw is not exploitable via the TLS/SSL protocol because
the data being transferred is not Base64-encoded. (CVE-2015-0292)
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A use-after-free flaw was found in the way OpenSSL imported malformed
Elliptic Curve private keys. A specially crafted key file could cause an
application using OpenSSL to crash when imported. (CVE-2015-0209)
An out-of-bounds write flaw was found in the way OpenSSL reused certain
ASN.1 structures. A remote attacker could possibly use a specially crafted
ASN.1 structure that, when parsed by an application, would cause that
application to crash. (CVE-2015-0287)
A NULL pointer dereference flaw was found in OpenSSL's X.509 certificate
handling implementation. A specially crafted X.509 certificate could cause
an application using OpenSSL to crash if the application attempted to
convert the certificate to a certificate request. (CVE-2015-0288)
A NULL pointer dereference was found in the way OpenSSL handled certain
PKCS#7 inputs. An attacker able to make an application using OpenSSL
verify, decrypt, or parse a specially crafted PKCS#7 input could cause that
application to crash. TLS/SSL clients and servers using OpenSSL were not
affected by this flaw. (CVE-2015-0289)
Red Hat would like to thank the OpenSSL project for reporting
CVE-2015-0286, CVE-2015-0287, CVE-2015-0288, CVE-2015-0289, CVE-2015-0292,
and CVE-2015-0293. Upstream acknowledges Stephen Henson of the OpenSSL
development team as the original reporter of CVE-2015-0286, Emilia Käsper
of the OpenSSL development team as the original reporter of CVE-2015-0287,
Brian Carpenter as the original reporter of CVE-2015-0288, Michal Zalewski
of Google as the original reporter of CVE-2015-0289, Robert Dugal and David
Ramos as the original reporters of CVE-2015-0292, and Sean Burford of
Google and Emilia Käsper of the OpenSSL development team as the original
reporters of CVE-2015-0293.
All openssl users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all services linked to the OpenSSL library must be restarted, or
the system rebooted.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Moderate" }, "category": "csaf_vex", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated openssl packages that fix multiple security issues are now\navailable for Red Hat Enterprise Linux 6.\n\nRed Hat Product Security has rated this update as having Moderate security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)\nand Transport Layer Security (TLS v1) protocols, as well as a\nfull-strength, general purpose cryptography library.\n\nAn invalid pointer use flaw was found in OpenSSL\u0027s ASN1_TYPE_cmp()\nfunction. A remote attacker could crash a TLS/SSL client or server using\nOpenSSL via a specially crafted X.509 certificate when the\nattacker-supplied certificate was verified by the application.\n(CVE-2015-0286)\n\nAn integer underflow flaw, leading to a buffer overflow, was found in the\nway OpenSSL decoded malformed Base64-encoded inputs. An attacker able to\nmake an application using OpenSSL decode a specially crafted Base64-encoded\ninput (such as a PEM file) could use this flaw to cause the application to\ncrash. Note: this flaw is not exploitable via the TLS/SSL protocol because\nthe data being transferred is not Base64-encoded. (CVE-2015-0292)\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA use-after-free flaw was found in the way OpenSSL imported malformed\nElliptic Curve private keys. A specially crafted key file could cause an\napplication using OpenSSL to crash when imported. (CVE-2015-0209)\n\nAn out-of-bounds write flaw was found in the way OpenSSL reused certain\nASN.1 structures. A remote attacker could possibly use a specially crafted\nASN.1 structure that, when parsed by an application, would cause that\napplication to crash. (CVE-2015-0287)\n\nA NULL pointer dereference flaw was found in OpenSSL\u0027s X.509 certificate\nhandling implementation. A specially crafted X.509 certificate could cause\nan application using OpenSSL to crash if the application attempted to\nconvert the certificate to a certificate request. (CVE-2015-0288)\n\nA NULL pointer dereference was found in the way OpenSSL handled certain\nPKCS#7 inputs. An attacker able to make an application using OpenSSL\nverify, decrypt, or parse a specially crafted PKCS#7 input could cause that\napplication to crash. TLS/SSL clients and servers using OpenSSL were not\naffected by this flaw. (CVE-2015-0289)\n\nRed Hat would like to thank the OpenSSL project for reporting\nCVE-2015-0286, CVE-2015-0287, CVE-2015-0288, CVE-2015-0289, CVE-2015-0292,\nand CVE-2015-0293. Upstream acknowledges Stephen Henson of the OpenSSL\ndevelopment team as the original reporter of CVE-2015-0286, Emilia K\u00e4sper\nof the OpenSSL development team as the original reporter of CVE-2015-0287,\nBrian Carpenter as the original reporter of CVE-2015-0288, Michal Zalewski\nof Google as the original reporter of CVE-2015-0289, Robert Dugal and David\nRamos as the original reporters of CVE-2015-0292, and Sean Burford of\nGoogle and Emilia K\u00e4sper of the OpenSSL development team as the original\nreporters of CVE-2015-0293.\n\nAll openssl users are advised to upgrade to these updated packages, which\ncontain backported patches to correct these issues. For the update to take\neffect, all services linked to the OpenSSL library must be restarted, or\nthe system rebooted.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat offerings.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2015:0715", "url": "https://access.redhat.com/errata/RHSA-2015:0715" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#moderate", "url": "https://access.redhat.com/security/updates/classification/#moderate" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv_20150319.txt", "url": "https://www.openssl.org/news/secadv_20150319.txt" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "1196737", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1196737" }, { "category": "external", "summary": "1202366", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202366" }, { "category": "external", "summary": "1202380", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202380" }, { "category": "external", "summary": "1202384", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202384" }, { "category": "external", "summary": "1202395", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202395" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1202418", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202418" }, { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/data/csaf/v2/advisories/2015/rhsa-2015_0715.json" } ], "title": "Red Hat Security Advisory: openssl security update", "tracking": { "current_release_date": "2024-09-15T22:24:33+00:00", "generator": { "date": "2024-09-15T22:24:33+00:00", "engine": { "name": "Red Hat SDEngine", "version": "3.33.3" } }, "id": "RHSA-2015:0715", "initial_release_date": "2015-03-23T20:50:47+00:00", "revision_history": [ { "date": "2015-03-23T20:50:47+00:00", "number": "1", "summary": "Initial version" }, { "date": "2015-03-23T20:50:48+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-09-15T22:24:33+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat Enterprise Linux Desktop (v. 6)", "product": { "name": "Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::client" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Desktop Optional (v. 6)", "product": { "name": "Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::client" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux HPC Node (v. 6)", "product": { "name": "Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::computenode" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product": { "name": "Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::computenode" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server (v. 6)", "product": { "name": "Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server Optional (v. 6)", "product": { "name": "Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Workstation (v. 6)", "product": { "name": "Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::workstation" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Workstation Optional (v. 6)", "product": { "name": "Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:6::workstation" } } } ], "category": "product_family", "name": "Red Hat Enterprise Linux" }, { "branches": [ { "category": "product_version", "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-30.el6_6.7?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-30.el6_6.7?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-30.el6_6.7?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-30.el6_6.7?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-30.el6_6.7?arch=x86_64" } } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_version", "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "product": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "product_id": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-30.el6_6.7?arch=i686" } } }, { "category": "product_version", "name": "openssl-0:1.0.1e-30.el6_6.7.i686", "product": { "name": "openssl-0:1.0.1e-30.el6_6.7.i686", "product_id": "openssl-0:1.0.1e-30.el6_6.7.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-30.el6_6.7?arch=i686" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "product": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "product_id": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-30.el6_6.7?arch=i686" } } }, { "category": "product_version", "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "product": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "product_id": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-30.el6_6.7?arch=i686" } } }, { "category": "product_version", "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "product": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "product_id": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-30.el6_6.7?arch=i686" } } } ], "category": "architecture", "name": "i686" }, { "branches": [ { "category": "product_version", "name": "openssl-0:1.0.1e-30.el6_6.7.src", "product": { "name": "openssl-0:1.0.1e-30.el6_6.7.src", "product_id": "openssl-0:1.0.1e-30.el6_6.7.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-30.el6_6.7?arch=src" } } } ], "category": "architecture", "name": "src" }, { "branches": [ { "category": "product_version", "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "product": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "product_id": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-30.el6_6.7?arch=ppc64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "product": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "product_id": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-30.el6_6.7?arch=ppc64" } } }, { "category": "product_version", "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "product": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "product_id": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-30.el6_6.7?arch=ppc64" } } }, { "category": "product_version", "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "product": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "product_id": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-30.el6_6.7?arch=ppc64" } } }, { "category": "product_version", "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "product": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "product_id": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-30.el6_6.7?arch=ppc64" } } } ], "category": "architecture", "name": "ppc64" }, { "branches": [ { "category": "product_version", "name": "openssl-0:1.0.1e-30.el6_6.7.ppc", "product": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc", "product_id": "openssl-0:1.0.1e-30.el6_6.7.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-30.el6_6.7?arch=ppc" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "product": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "product_id": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-30.el6_6.7?arch=ppc" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "product": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "product_id": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-30.el6_6.7?arch=ppc" } } } ], "category": "architecture", "name": "ppc" }, { "branches": [ { "category": "product_version", "name": "openssl-0:1.0.1e-30.el6_6.7.s390", "product": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390", "product_id": "openssl-0:1.0.1e-30.el6_6.7.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-30.el6_6.7?arch=s390" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "product": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "product_id": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-30.el6_6.7?arch=s390" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "product": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "product_id": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-30.el6_6.7?arch=s390" } } } ], "category": "architecture", "name": "s390" }, { "branches": [ { "category": "product_version", "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "product": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "product_id": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-30.el6_6.7?arch=s390x" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "product": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "product_id": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-30.el6_6.7?arch=s390x" } } }, { "category": "product_version", "name": "openssl-0:1.0.1e-30.el6_6.7.s390x", "product": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390x", "product_id": "openssl-0:1.0.1e-30.el6_6.7.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-30.el6_6.7?arch=s390x" } } }, { "category": "product_version", "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "product": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "product_id": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-30.el6_6.7?arch=s390x" } } }, { "category": "product_version", "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "product": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "product_id": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-30.el6_6.7?arch=s390x" } } } ], "category": "architecture", "name": "s390x" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.src as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.src", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)", "product_id": "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.src as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.src", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)", "product_id": "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Client-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.src as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.src", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)", "product_id": "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.src as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.src", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)", "product_id": "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6ComputeNode-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.src as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.src", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)", "product_id": "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.src as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.src", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 6)", "product_id": "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.src as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.src", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)", "product_id": "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.src as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.src", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.i686 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.i686", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.s390x", "relates_to_product_reference": "6Workstation-optional-6.6.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 6)", "product_id": "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Workstation-optional-6.6.z" } ] }, "vulnerabilities": [ { "cve": "CVE-2015-0209", "cwe": { "id": "CWE-416", "name": "Use After Free" }, "discovery_date": "2015-02-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1196737" } ], "notes": [ { "category": "description", "text": "A use-after-free flaw was found in the way OpenSSL imported malformed Elliptic Curve private keys. A specially crafted key file could cause an application using OpenSSL to crash when imported.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: use-after-free on invalid EC private key import", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0209" }, { "category": "external", "summary": "RHBZ#1196737", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1196737" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0209", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0209" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0209", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0209" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-02-09T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0715" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.1, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:H/Au:N/C:P/I:P/A:P", "version": "2.0" }, "products": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: use-after-free on invalid EC private key import" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Stephen Henson" ], "organization": "OpenSSL development team", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0286", "cwe": { "id": "CWE-125", "name": "Out-of-bounds Read" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202366" } ], "notes": [ { "category": "description", "text": "An invalid pointer use flaw was found in OpenSSL\u0027s ASN1_TYPE_cmp() function. A remote attacker could crash a TLS/SSL client or server using OpenSSL via a specially crafted X.509 certificate when the attacker-supplied certificate was verified by the application.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: invalid pointer use in ASN1_TYPE_cmp()", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0286" }, { "category": "external", "summary": "RHBZ#1202366", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202366" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0286", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0286" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0286", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0286" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0715" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: invalid pointer use in ASN1_TYPE_cmp()" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0287", "cwe": { "id": "CWE-787", "name": "Out-of-bounds Write" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202380" } ], "notes": [ { "category": "description", "text": "An out-of-bounds write flaw was found in the way OpenSSL reused certain ASN.1 structures. A remote attacker could possibly use a specially crafted ASN.1 structure that, when parsed by an application, would cause that application to crash.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: ASN.1 structure reuse memory corruption", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0287" }, { "category": "external", "summary": "RHBZ#1202380", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202380" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0287", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0287" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0287", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0287" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0715" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: ASN.1 structure reuse memory corruption" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Brian Carpenter" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0288", "cwe": { "id": "CWE-476", "name": "NULL Pointer Dereference" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202418" } ], "notes": [ { "category": "description", "text": "A NULL pointer dereference flaw was found in OpenSSL\u0027s X.509 certificate handling implementation. A specially crafted X.509 certificate could cause an application using OpenSSL to crash if the application attempted to convert the certificate to a certificate request.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: X509_to_X509_REQ NULL pointer dereference", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0288" }, { "category": "external", "summary": "RHBZ#1202418", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202418" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0288", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0288" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0288", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0288" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0715" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: X509_to_X509_REQ NULL pointer dereference" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Michal Zalewski" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0289", "cwe": { "id": "CWE-476", "name": "NULL Pointer Dereference" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202384" } ], "notes": [ { "category": "description", "text": "A NULL pointer dereference was found in the way OpenSSL handled certain PKCS#7 inputs. An attacker able to make an application using OpenSSL verify, decrypt, or parse a specially crafted PKCS#7 input could cause that application to crash. TLS/SSL clients and servers using OpenSSL were not affected by this flaw.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: PKCS7 NULL pointer dereference", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0289" }, { "category": "external", "summary": "RHBZ#1202384", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202384" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0289", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0289" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0289", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0289" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0715" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: PKCS7 NULL pointer dereference" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Robert Dugal", "David Ramos" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0292", "cwe": { "id": "CWE-120", "name": "Buffer Copy without Checking Size of Input (\u0027Classic Buffer Overflow\u0027)" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202395" } ], "notes": [ { "category": "description", "text": "An integer underflow flaw, leading to a buffer overflow, was found in the way OpenSSL decoded malformed Base64-encoded inputs. An attacker able to make an application using OpenSSL decode a specially crafted Base64-encoded input (such as a PEM file) could use this flaw to cause the application to crash. Note: this flaw is not exploitable via the TLS/SSL protocol because the data being transferred is not Base64-encoded.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: integer underflow leading to buffer overflow in base64 decoding", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0292" }, { "category": "external", "summary": "RHBZ#1202395", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202395" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0292", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0292" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0292", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0292" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0715" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.1, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:H/Au:N/C:P/I:P/A:P", "version": "2.0" }, "products": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: integer underflow leading to buffer overflow in base64 decoding" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0715" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0703", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310811" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2 connection handshakes that indicated non-zero clear key length for non-export cipher suites. An attacker could use this flaw to decrypt recorded SSLv2 sessions with the server by using it as a decryption oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: Divide-and-conquer session key recovery in SSLv2", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0703" }, { "category": "external", "summary": "RHBZ#1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0703", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0703" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0715" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: Divide-and-conquer session key recovery in SSLv2" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0704", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310814" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 protocol implementation in OpenSSL did not properly implement the Bleichenbacher protection for export cipher suites. An attacker could use a SSLv2 server using OpenSSL as a Bleichenbacher oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0704" }, { "category": "external", "summary": "RHBZ#1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0704", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0704" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0715" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Client-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Client-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6ComputeNode-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6ComputeNode-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Server-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Workstation-optional-6.6.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.i686", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.ppc64", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.s390x", "6Workstation-optional-6.6.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers" } ] }
rhsa-2016_0303
Vulnerability from csaf_redhat
Published
2016-03-01 14:45
Modified
2024-11-05 19:14
Summary
Red Hat Security Advisory: openssl security update
Notes
Topic
Updated openssl packages that fix multiple security issues are now
available for Red Hat Enterprise Linux 6.2, 6.4, and 6.5 Advanced Update
Support.
Red Hat Product Security has rated this update as having Important security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.
A padding oracle flaw was found in the Secure Sockets Layer version 2.0
(SSLv2) protocol. An attacker can potentially use this flaw to decrypt
RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol
version, allowing them to decrypt such connections. This cross-protocol
attack is publicly referred to as DROWN. (CVE-2016-0800)
Note: This issue was addressed by disabling the SSLv2 protocol by default
when using the 'SSLv23' connection methods, and removing support for weak
SSLv2 cipher suites. For more information, refer to the knowledge base
article linked to in the References section.
It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2
connection handshakes that indicated non-zero clear key length for
non-export cipher suites. An attacker could use this flaw to decrypt
recorded SSLv2 sessions with the server by using it as a decryption
oracle.(CVE-2016-0703)
It was discovered that the SSLv2 protocol implementation in OpenSSL did
not properly implement the Bleichenbacher protection for export cipher
suites. An attacker could use a SSLv2 server using OpenSSL as a
Bleichenbacher oracle. (CVE-2016-0704)
Note: The CVE-2016-0703 and CVE-2016-0704 issues could allow for more
efficient exploitation of the CVE-2016-0800 issue via the DROWN attack.
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2
ciphers that have been disabled on the server. This could result in weak
SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to
man-in-the-middle attacks. (CVE-2015-3197)
Red Hat would like to thank the OpenSSL project for reporting these issues.
Upstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original
reporters of CVE-2016-0800 and CVE-2015-3197; David Adrian (University of
Michigan) and J. Alex Halderman (University of Michigan) as the original
reporters of CVE-2016-0703 and CVE-2016-0704; and Sean Burford (Google) and
Emilia Käsper (OpenSSL development team) as the original reporters of
CVE-2015-0293.
All openssl users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all services linked to the OpenSSL library must be restarted, or
the system rebooted.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated openssl packages that fix multiple security issues are now\navailable for Red Hat Enterprise Linux 6.2, 6.4, and 6.5 Advanced Update\nSupport.\n\nRed Hat Product Security has rated this update as having Important security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)\nand Transport Layer Security (TLS v1) protocols, as well as a\nfull-strength, general purpose cryptography library.\n\nA padding oracle flaw was found in the Secure Sockets Layer version 2.0\n(SSLv2) protocol. An attacker can potentially use this flaw to decrypt\nRSA-encrypted cipher text from a connection using a newer SSL/TLS protocol\nversion, allowing them to decrypt such connections. This cross-protocol\nattack is publicly referred to as DROWN. (CVE-2016-0800)\n\nNote: This issue was addressed by disabling the SSLv2 protocol by default\nwhen using the \u0027SSLv23\u0027 connection methods, and removing support for weak\nSSLv2 cipher suites. For more information, refer to the knowledge base\narticle linked to in the References section.\n\nIt was discovered that the SSLv2 servers using OpenSSL accepted SSLv2\nconnection handshakes that indicated non-zero clear key length for\nnon-export cipher suites. An attacker could use this flaw to decrypt\nrecorded SSLv2 sessions with the server by using it as a decryption \noracle.(CVE-2016-0703)\n\nIt was discovered that the SSLv2 protocol implementation in OpenSSL did \nnot properly implement the Bleichenbacher protection for export cipher \nsuites. An attacker could use a SSLv2 server using OpenSSL as a \nBleichenbacher oracle. (CVE-2016-0704)\n\nNote: The CVE-2016-0703 and CVE-2016-0704 issues could allow for more\nefficient exploitation of the CVE-2016-0800 issue via the DROWN attack.\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA flaw was found in the way malicious SSLv2 clients could negotiate SSLv2\nciphers that have been disabled on the server. This could result in weak\nSSLv2 ciphers being used for SSLv2 connections, making them vulnerable to\nman-in-the-middle attacks. (CVE-2015-3197)\n\nRed Hat would like to thank the OpenSSL project for reporting these issues.\nUpstream acknowledges Nimrod Aviram and Sebastian Schinzel as the original\nreporters of CVE-2016-0800 and CVE-2015-3197; David Adrian (University of\nMichigan) and J. Alex Halderman (University of Michigan) as the original\nreporters of CVE-2016-0703 and CVE-2016-0704; and Sean Burford (Google) and\nEmilia K\u00e4sper (OpenSSL development team) as the original reporters of\nCVE-2015-0293.\n\nAll openssl users are advised to upgrade to these updated packages, which\ncontain backported patches to correct these issues. For the update to take\neffect, all services linked to the OpenSSL library must be restarted, or\nthe system rebooted.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2016:0303", "url": "https://access.redhat.com/errata/RHSA-2016:0303" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#important", "url": "https://access.redhat.com/security/updates/classification/#important" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://drownattack.com/", "url": "https://drownattack.com/" }, { "category": "external", "summary": "https://openssl.org/news/secadv/20160128.txt", "url": "https://openssl.org/news/secadv/20160128.txt" }, { "category": "external", "summary": "https://openssl.org/news/secadv/20160301.txt", "url": "https://openssl.org/news/secadv/20160301.txt" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2016/rhsa-2016_0303.json" } ], "title": "Red Hat Security Advisory: openssl security update", "tracking": { "current_release_date": "2024-11-05T19:14:02+00:00", "generator": { "date": "2024-11-05T19:14:02+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.1.1" } }, "id": "RHSA-2016:0303", "initial_release_date": "2016-03-01T14:45:41+00:00", "revision_history": [ { "date": "2016-03-01T14:45:41+00:00", "number": "1", "summary": "Initial version" }, { "date": "2016-03-01T14:45:41+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-11-05T19:14:02+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat Enterprise Linux Server AUS (v. 6.2)", "product": { "name": "Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_mission_critical:6.2::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product": { "name": "Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_mission_critical:6.2::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server AUS (v. 6.5)", "product": { "name": "Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_aus:6.5::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product": { "name": "Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_aus:6.5::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server AUS (v. 6.4)", "product": { "name": "Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_aus:6.4::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product": { "name": "Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS", "product_identification_helper": { "cpe": "cpe:/o:redhat:rhel_aus:6.4::server" } } } ], "category": "product_family", "name": "Red Hat Enterprise Linux" }, { "branches": [ { "category": "product_version", "name": "openssl-0:1.0.0-20.el6_2.8.src", "product": { "name": "openssl-0:1.0.0-20.el6_2.8.src", "product_id": "openssl-0:1.0.0-20.el6_2.8.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.0-20.el6_2.8?arch=src" } } }, { "category": "product_version", "name": "openssl-0:1.0.1e-16.el6_5.16.src", "product": { "name": "openssl-0:1.0.1e-16.el6_5.16.src", "product_id": "openssl-0:1.0.1e-16.el6_5.16.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-16.el6_5.16?arch=src" } } }, { "category": "product_version", "name": "openssl-0:1.0.0-27.el6_4.5.src", "product": { "name": "openssl-0:1.0.0-27.el6_4.5.src", "product_id": "openssl-0:1.0.0-27.el6_4.5.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.0-27.el6_4.5?arch=src" } } } ], "category": "architecture", "name": "src" }, { "branches": [ { "category": "product_version", "name": "openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "product": { "name": "openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "product_id": "openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.0-20.el6_2.8?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-static-0:1.0.0-20.el6_2.8.x86_64", "product": { "name": "openssl-static-0:1.0.0-20.el6_2.8.x86_64", "product_id": "openssl-static-0:1.0.0-20.el6_2.8.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.0-20.el6_2.8?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "product": { "name": "openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "product_id": "openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.0-20.el6_2.8?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "product": { "name": "openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "product_id": "openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.0-20.el6_2.8?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-0:1.0.0-20.el6_2.8.x86_64", "product": { "name": "openssl-0:1.0.0-20.el6_2.8.x86_64", "product_id": "openssl-0:1.0.0-20.el6_2.8.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.0-20.el6_2.8?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "product": { "name": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "product_id": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-16.el6_5.16?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "product": { "name": "openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "product_id": "openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-16.el6_5.16?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "product": { "name": "openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "product_id": "openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-16.el6_5.16?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-0:1.0.1e-16.el6_5.16.x86_64", "product": { "name": "openssl-0:1.0.1e-16.el6_5.16.x86_64", "product_id": "openssl-0:1.0.1e-16.el6_5.16.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-16.el6_5.16?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "product": { "name": "openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "product_id": "openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-16.el6_5.16?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "product": { "name": "openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "product_id": "openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.0-27.el6_4.5?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-static-0:1.0.0-27.el6_4.5.x86_64", "product": { "name": "openssl-static-0:1.0.0-27.el6_4.5.x86_64", "product_id": "openssl-static-0:1.0.0-27.el6_4.5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.0-27.el6_4.5?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "product": { "name": "openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "product_id": "openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.0-27.el6_4.5?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "product": { "name": "openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "product_id": "openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.0-27.el6_4.5?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-0:1.0.0-27.el6_4.5.x86_64", "product": { "name": "openssl-0:1.0.0-27.el6_4.5.x86_64", "product_id": "openssl-0:1.0.0-27.el6_4.5.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.0-27.el6_4.5?arch=x86_64" } } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_version", "name": "openssl-devel-0:1.0.0-20.el6_2.8.i686", "product": { "name": "openssl-devel-0:1.0.0-20.el6_2.8.i686", "product_id": "openssl-devel-0:1.0.0-20.el6_2.8.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.0-20.el6_2.8?arch=i686" } } }, { "category": "product_version", "name": "openssl-0:1.0.0-20.el6_2.8.i686", "product": { "name": "openssl-0:1.0.0-20.el6_2.8.i686", "product_id": "openssl-0:1.0.0-20.el6_2.8.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.0-20.el6_2.8?arch=i686" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "product": { "name": "openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "product_id": "openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.0-20.el6_2.8?arch=i686" } } }, { "category": "product_version", "name": "openssl-0:1.0.1e-16.el6_5.16.i686", "product": { "name": "openssl-0:1.0.1e-16.el6_5.16.i686", "product_id": "openssl-0:1.0.1e-16.el6_5.16.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-16.el6_5.16?arch=i686" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "product": { "name": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "product_id": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-16.el6_5.16?arch=i686" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.1e-16.el6_5.16.i686", "product": { "name": "openssl-devel-0:1.0.1e-16.el6_5.16.i686", "product_id": "openssl-devel-0:1.0.1e-16.el6_5.16.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-16.el6_5.16?arch=i686" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.0-27.el6_4.5.i686", "product": { "name": "openssl-devel-0:1.0.0-27.el6_4.5.i686", "product_id": "openssl-devel-0:1.0.0-27.el6_4.5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.0-27.el6_4.5?arch=i686" } } }, { "category": "product_version", "name": "openssl-0:1.0.0-27.el6_4.5.i686", "product": { "name": "openssl-0:1.0.0-27.el6_4.5.i686", "product_id": "openssl-0:1.0.0-27.el6_4.5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.0-27.el6_4.5?arch=i686" } } }, { "category": "product_version", "name": "openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "product": { "name": "openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "product_id": "openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.0-27.el6_4.5?arch=i686" } } } ], "category": "architecture", "name": "i686" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-20.el6_2.8.i686 as a component of Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686" }, "product_reference": "openssl-0:1.0.0-20.el6_2.8.i686", "relates_to_product_reference": "6Server-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-20.el6_2.8.src as a component of Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src" }, "product_reference": "openssl-0:1.0.0-20.el6_2.8.src", "relates_to_product_reference": "6Server-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.0-20.el6_2.8.i686 as a component of Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686" }, "product_reference": "openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "relates_to_product_reference": "6Server-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.0-20.el6_2.8.i686 as a component of Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686" }, "product_reference": "openssl-devel-0:1.0.0-20.el6_2.8.i686", "relates_to_product_reference": "6Server-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.2)", "product_id": "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-static-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-27.el6_4.5.i686 as a component of Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686" }, "product_reference": "openssl-0:1.0.0-27.el6_4.5.i686", "relates_to_product_reference": "6Server-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-27.el6_4.5.src as a component of Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src" }, "product_reference": "openssl-0:1.0.0-27.el6_4.5.src", "relates_to_product_reference": "6Server-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.0-27.el6_4.5.i686 as a component of Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686" }, "product_reference": "openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "relates_to_product_reference": "6Server-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.0-27.el6_4.5.i686 as a component of Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686" }, "product_reference": "openssl-devel-0:1.0.0-27.el6_4.5.i686", "relates_to_product_reference": "6Server-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.4)", "product_id": "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-static-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-16.el6_5.16.i686 as a component of Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686" }, "product_reference": "openssl-0:1.0.1e-16.el6_5.16.i686", "relates_to_product_reference": "6Server-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-16.el6_5.16.src as a component of Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src" }, "product_reference": "openssl-0:1.0.1e-16.el6_5.16.src", "relates_to_product_reference": "6Server-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686 as a component of Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "relates_to_product_reference": "6Server-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-16.el6_5.16.i686 as a component of Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686" }, "product_reference": "openssl-devel-0:1.0.1e-16.el6_5.16.i686", "relates_to_product_reference": "6Server-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server AUS (v. 6.5)", "product_id": "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-20.el6_2.8.i686 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686" }, "product_reference": "openssl-0:1.0.0-20.el6_2.8.i686", "relates_to_product_reference": "6Server-optional-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-20.el6_2.8.src as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src" }, "product_reference": "openssl-0:1.0.0-20.el6_2.8.src", "relates_to_product_reference": "6Server-optional-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-optional-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.0-20.el6_2.8.i686 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686" }, "product_reference": "openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "relates_to_product_reference": "6Server-optional-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-optional-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.0-20.el6_2.8.i686 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686" }, "product_reference": "openssl-devel-0:1.0.0-20.el6_2.8.i686", "relates_to_product_reference": "6Server-optional-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-optional-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-optional-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.0-20.el6_2.8.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.2)", "product_id": "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64" }, "product_reference": "openssl-static-0:1.0.0-20.el6_2.8.x86_64", "relates_to_product_reference": "6Server-optional-6.2.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-27.el6_4.5.i686 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686" }, "product_reference": "openssl-0:1.0.0-27.el6_4.5.i686", "relates_to_product_reference": "6Server-optional-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-27.el6_4.5.src as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src" }, "product_reference": "openssl-0:1.0.0-27.el6_4.5.src", "relates_to_product_reference": "6Server-optional-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-optional-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.0-27.el6_4.5.i686 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686" }, "product_reference": "openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "relates_to_product_reference": "6Server-optional-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-optional-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.0-27.el6_4.5.i686 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686" }, "product_reference": "openssl-devel-0:1.0.0-27.el6_4.5.i686", "relates_to_product_reference": "6Server-optional-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-optional-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-optional-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.0-27.el6_4.5.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.4)", "product_id": "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64" }, "product_reference": "openssl-static-0:1.0.0-27.el6_4.5.x86_64", "relates_to_product_reference": "6Server-optional-6.4.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-16.el6_5.16.i686 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686" }, "product_reference": "openssl-0:1.0.1e-16.el6_5.16.i686", "relates_to_product_reference": "6Server-optional-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-16.el6_5.16.src as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src" }, "product_reference": "openssl-0:1.0.1e-16.el6_5.16.src", "relates_to_product_reference": "6Server-optional-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-optional-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686" }, "product_reference": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "relates_to_product_reference": "6Server-optional-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-optional-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-16.el6_5.16.i686 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686" }, "product_reference": "openssl-devel-0:1.0.1e-16.el6_5.16.i686", "relates_to_product_reference": "6Server-optional-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-optional-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-optional-6.5.AUS" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-16.el6_5.16.x86_64 as a component of Red Hat Enterprise Linux Server Optional AUS (v. 6.5)", "product_id": "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "relates_to_product_reference": "6Server-optional-6.5.AUS" } ] }, "vulnerabilities": [ { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:41+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0303" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-3197", "discovery_date": "2016-01-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1301846" } ], "notes": [ { "category": "description", "text": "A flaw was found in the way malicious SSLv2 clients could negotiate SSLv2 ciphers that were disabled on the server. This could result in weak SSLv2 ciphers being used for SSLv2 connections, making them vulnerable to man-in-the-middle attacks.", "title": "Vulnerability description" }, { "category": "summary", "text": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers", "title": "Vulnerability summary" }, { "category": "other", "text": "This security flaw can only be exploited when a malicious client negotiates SSLv2 ciphers and completes a SSLv2 handshake. This flaw cannot be actively exploited by a Man-In-The-Middle attacker. \n\nAll versions of OpenSSL shipped with Red Hat Enterprise Linux enable SSLv2 protocol, but disable SSLv2 ciphers by default (in Red Hat Enterprise Linux 6 and later), therefore are vulnerable to this flaw. Red Hat Product Security has rated this issue as having Low security impact, a future update may address this flaw.\n\nSSLv2 suffers from a number of security flaws allowing attackers to capture and alter information passed between a client and the server. Therefore we strongly recommend that SSLv2 should be disabled on all the SSL/TLS servers.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-3197" }, { "category": "external", "summary": "RHBZ#1301846", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1301846" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-3197", "url": "https://www.cve.org/CVERecord?id=CVE-2015-3197" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3197" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160128.txt", "url": "https://www.openssl.org/news/secadv/20160128.txt" } ], "release_date": "2016-01-28T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:41+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0303" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "OpenSSL: SSLv2 doesn\u0027t block disabled ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0703", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310811" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2 connection handshakes that indicated non-zero clear key length for non-export cipher suites. An attacker could use this flaw to decrypt recorded SSLv2 sessions with the server by using it as a decryption oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: Divide-and-conquer session key recovery in SSLv2", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0703" }, { "category": "external", "summary": "RHBZ#1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0703", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0703" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:41+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0303" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: Divide-and-conquer session key recovery in SSLv2" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0704", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310814" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 protocol implementation in OpenSSL did not properly implement the Bleichenbacher protection for export cipher suites. An attacker could use a SSLv2 server using OpenSSL as a Bleichenbacher oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0704" }, { "category": "external", "summary": "RHBZ#1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0704", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0704" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:41+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0303" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Nimrod Aviram", "Sebastian Schinzel" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0800", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310593" } ], "notes": [ { "category": "description", "text": "A padding oracle flaw was found in the Secure Sockets Layer version 2.0 (SSLv2) protocol. An attacker could potentially use this flaw to decrypt RSA-encrypted cipher text from a connection using a newer SSL/TLS protocol version, allowing them to decrypt such connections. This cross-protocol attack is publicly referred to as DROWN.", "title": "Vulnerability description" }, { "category": "summary", "text": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0800" }, { "category": "external", "summary": "RHBZ#1310593", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310593" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0800", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0800" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0800" }, { "category": "external", "summary": "https://access.redhat.com/articles/2176731", "url": "https://access.redhat.com/articles/2176731" }, { "category": "external", "summary": "https://www.drownattack.com/", "url": "https://www.drownattack.com/" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "date": "2016-03-01T14:45:41+00:00", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2016:0303" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.8, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:N", "version": "2.0" }, "products": [ "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.src", "6Server-optional-6.2.AUS:openssl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-debuginfo-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.i686", "6Server-optional-6.2.AUS:openssl-devel-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-perl-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.2.AUS:openssl-static-0:1.0.0-20.el6_2.8.x86_64", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.src", "6Server-optional-6.4.AUS:openssl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-debuginfo-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.i686", "6Server-optional-6.4.AUS:openssl-devel-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-perl-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.4.AUS:openssl-static-0:1.0.0-27.el6_4.5.x86_64", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.src", "6Server-optional-6.5.AUS:openssl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-debuginfo-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.i686", "6Server-optional-6.5.AUS:openssl-devel-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-perl-0:1.0.1e-16.el6_5.16.x86_64", "6Server-optional-6.5.AUS:openssl-static-0:1.0.1e-16.el6_5.16.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)" } ] }
rhsa-2015_0716
Vulnerability from csaf_redhat
Published
2015-03-23 23:04
Modified
2024-09-15 22:24
Summary
Red Hat Security Advisory: openssl security and bug fix update
Notes
Topic
Updated openssl packages that fix several security issues and one bug are now available for Red Hat Enterprise Linux 7.
Red Hat Product Security has rated this update as having Moderate security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.
An invalid pointer use flaw was found in OpenSSL's ASN1_TYPE_cmp()
function. A remote attacker could crash a TLS/SSL client or server using
OpenSSL via a specially crafted X.509 certificate when the
attacker-supplied certificate was verified by the application.
(CVE-2015-0286)
An integer underflow flaw, leading to a buffer overflow, was found in the
way OpenSSL decoded malformed Base64-encoded inputs. An attacker able to
make an application using OpenSSL decode a specially crafted Base64-encoded
input (such as a PEM file) could use this flaw to cause the application to
crash. Note: this flaw is not exploitable via the TLS/SSL protocol because
the data being transferred is not Base64-encoded. (CVE-2015-0292)
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A use-after-free flaw was found in the way OpenSSL imported malformed
Elliptic Curve private keys. A specially crafted key file could cause an
application using OpenSSL to crash when imported. (CVE-2015-0209)
An out-of-bounds write flaw was found in the way OpenSSL reused certain
ASN.1 structures. A remote attacker could possibly use a specially crafted
ASN.1 structure that, when parsed by an application, would cause that
application to crash. (CVE-2015-0287)
A NULL pointer dereference flaw was found in OpenSSL's X.509 certificate
handling implementation. A specially crafted X.509 certificate could cause
an application using OpenSSL to crash if the application attempted to
convert the certificate to a certificate request. (CVE-2015-0288)
A NULL pointer dereference was found in the way OpenSSL handled certain
PKCS#7 inputs. An attacker able to make an application using OpenSSL
verify, decrypt, or parse a specially crafted PKCS#7 input could cause that
application to crash. TLS/SSL clients and servers using OpenSSL were not
affected by this flaw. (CVE-2015-0289)
Red Hat would like to thank the OpenSSL project for reporting
CVE-2015-0286, CVE-2015-0287, CVE-2015-0288, CVE-2015-0289, CVE-2015-0292,
and CVE-2015-0293. Upstream acknowledges Stephen Henson of the OpenSSL
development team as the original reporter of CVE-2015-0286, Emilia Käsper
of the OpenSSL development team as the original reporter of CVE-2015-0287,
Brian Carpenter as the original reporter of CVE-2015-0288, Michal Zalewski
of Google as the original reporter of CVE-2015-0289, Robert Dugal and David
Ramos as the original reporters of CVE-2015-0292, and Sean Burford of
Google and Emilia Käsper of the OpenSSL development team as the original
reporters of CVE-2015-0293.
This update also fixes the following bug:
* When a wrapped Advanced Encryption Standard (AES) key did not require any
padding, it was incorrectly padded with 8 bytes, which could lead to data
corruption and interoperability problems. With this update, the rounding
algorithm in the RFC 5649 key wrapping implementation has been fixed. As a
result, the wrapped key conforms to the specification, which prevents the
described problems. (BZ#1197667)
All openssl users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all services linked to the OpenSSL library must be restarted, or
the system rebooted.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Moderate" }, "category": "csaf_vex", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated openssl packages that fix several security issues and one bug are now available for Red Hat Enterprise Linux 7.\n\nRed Hat Product Security has rated this update as having Moderate security \nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give \ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)\nand Transport Layer Security (TLS v1) protocols, as well as a\nfull-strength, general purpose cryptography library.\n\nAn invalid pointer use flaw was found in OpenSSL\u0027s ASN1_TYPE_cmp()\nfunction. A remote attacker could crash a TLS/SSL client or server using\nOpenSSL via a specially crafted X.509 certificate when the\nattacker-supplied certificate was verified by the application.\n(CVE-2015-0286)\n\nAn integer underflow flaw, leading to a buffer overflow, was found in the\nway OpenSSL decoded malformed Base64-encoded inputs. An attacker able to\nmake an application using OpenSSL decode a specially crafted Base64-encoded\ninput (such as a PEM file) could use this flaw to cause the application to\ncrash. Note: this flaw is not exploitable via the TLS/SSL protocol because\nthe data being transferred is not Base64-encoded. (CVE-2015-0292)\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA use-after-free flaw was found in the way OpenSSL imported malformed\nElliptic Curve private keys. A specially crafted key file could cause an\napplication using OpenSSL to crash when imported. (CVE-2015-0209)\n\nAn out-of-bounds write flaw was found in the way OpenSSL reused certain\nASN.1 structures. A remote attacker could possibly use a specially crafted\nASN.1 structure that, when parsed by an application, would cause that\napplication to crash. (CVE-2015-0287)\n\nA NULL pointer dereference flaw was found in OpenSSL\u0027s X.509 certificate\nhandling implementation. A specially crafted X.509 certificate could cause\nan application using OpenSSL to crash if the application attempted to\nconvert the certificate to a certificate request. (CVE-2015-0288)\n\nA NULL pointer dereference was found in the way OpenSSL handled certain\nPKCS#7 inputs. An attacker able to make an application using OpenSSL\nverify, decrypt, or parse a specially crafted PKCS#7 input could cause that\napplication to crash. TLS/SSL clients and servers using OpenSSL were not\naffected by this flaw. (CVE-2015-0289)\n\nRed Hat would like to thank the OpenSSL project for reporting\nCVE-2015-0286, CVE-2015-0287, CVE-2015-0288, CVE-2015-0289, CVE-2015-0292,\nand CVE-2015-0293. Upstream acknowledges Stephen Henson of the OpenSSL\ndevelopment team as the original reporter of CVE-2015-0286, Emilia K\u00e4sper\nof the OpenSSL development team as the original reporter of CVE-2015-0287,\nBrian Carpenter as the original reporter of CVE-2015-0288, Michal Zalewski\nof Google as the original reporter of CVE-2015-0289, Robert Dugal and David\nRamos as the original reporters of CVE-2015-0292, and Sean Burford of\nGoogle and Emilia K\u00e4sper of the OpenSSL development team as the original\nreporters of CVE-2015-0293.\n\nThis update also fixes the following bug:\n\n* When a wrapped Advanced Encryption Standard (AES) key did not require any\npadding, it was incorrectly padded with 8 bytes, which could lead to data\ncorruption and interoperability problems. With this update, the rounding\nalgorithm in the RFC 5649 key wrapping implementation has been fixed. As a\nresult, the wrapped key conforms to the specification, which prevents the\ndescribed problems. (BZ#1197667)\n\nAll openssl users are advised to upgrade to these updated packages, which\ncontain backported patches to correct these issues. For the update to take\neffect, all services linked to the OpenSSL library must be restarted, or\nthe system rebooted.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat offerings.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2015:0716", "url": "https://access.redhat.com/errata/RHSA-2015:0716" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#moderate", "url": "https://access.redhat.com/security/updates/classification/#moderate" }, { "category": "external", "summary": "1196737", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1196737" }, { "category": "external", "summary": "1202366", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202366" }, { "category": "external", "summary": "1202380", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202380" }, { "category": "external", "summary": "1202384", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202384" }, { "category": "external", "summary": "1202395", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202395" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1202418", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202418" }, { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/data/csaf/v2/advisories/2015/rhsa-2015_0716.json" } ], "title": "Red Hat Security Advisory: openssl security and bug fix update", "tracking": { "current_release_date": "2024-09-15T22:24:28+00:00", "generator": { "date": "2024-09-15T22:24:28+00:00", "engine": { "name": "Red Hat SDEngine", "version": "3.33.3" } }, "id": "RHSA-2015:0716", "initial_release_date": "2015-03-23T23:04:24+00:00", "revision_history": [ { "date": "2015-03-23T23:04:24+00:00", "number": "1", "summary": "Initial version" }, { "date": "2015-03-23T23:04:24+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-09-15T22:24:28+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat Enterprise Linux Server (v. 7)", "product": { "name": "Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-LE-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server Optional (v. 7)", "product": { "name": "Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-LE-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Client (v. 7)", "product": { "name": "Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::client" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Client Optional (v. 7)", "product": { "name": "Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::client" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux ComputeNode (v. 7)", "product": { "name": "Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::computenode" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product": { "name": "Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::computenode" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server (v. 7)", "product": { "name": "Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Server Optional (v. 7)", "product": { "name": "Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::server" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Workstation (v. 7)", "product": { "name": "Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::workstation" } } }, { "category": "product_name", "name": "Red Hat Enterprise Linux Workstation Optional (v. 7)", "product": { "name": "Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z", "product_identification_helper": { "cpe": "cpe:/o:redhat:enterprise_linux:7::workstation" } } } ], "category": "product_family", "name": "Red Hat Enterprise Linux" }, { "branches": [ { "category": "product_version", "name": "openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "product": { "name": "openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_id": "openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-42.ael7b_1.4?arch=ppc64le\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "product": { "name": "openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_id": "openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-42.ael7b_1.4?arch=ppc64le\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "product": { "name": "openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_id": "openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-42.ael7b_1.4?arch=ppc64le\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "product": { "name": "openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_id": "openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-libs@1.0.1e-42.ael7b_1.4?arch=ppc64le\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "product": { "name": "openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_id": "openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-42.ael7b_1.4?arch=ppc64le\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "product": { "name": "openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_id": "openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-42.ael7b_1.4?arch=ppc64le\u0026epoch=1" } } } ], "category": "architecture", "name": "ppc64le" }, { "branches": [ { "category": "product_version", "name": "openssl-1:1.0.1e-42.ael7b_1.4.src", "product": { "name": "openssl-1:1.0.1e-42.ael7b_1.4.src", "product_id": "openssl-1:1.0.1e-42.ael7b_1.4.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-42.ael7b_1.4?arch=src\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-1:1.0.1e-42.el7_1.4.src", "product": { "name": "openssl-1:1.0.1e-42.el7_1.4.src", "product_id": "openssl-1:1.0.1e-42.el7_1.4.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-42.el7_1.4?arch=src\u0026epoch=1" } } } ], "category": "architecture", "name": "src" }, { "branches": [ { "category": "product_version", "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "product": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "product_id": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-libs@1.0.1e-42.el7_1.4?arch=x86_64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "product": { "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "product_id": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-42.el7_1.4?arch=x86_64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "product": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "product_id": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-42.el7_1.4?arch=x86_64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "product": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "product_id": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-42.el7_1.4?arch=x86_64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "product": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "product_id": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-42.el7_1.4?arch=x86_64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "product": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "product_id": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-42.el7_1.4?arch=x86_64\u0026epoch=1" } } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_version", "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "product": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "product_id": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-libs@1.0.1e-42.el7_1.4?arch=i686\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "product": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "product_id": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-42.el7_1.4?arch=i686\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "product": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "product_id": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-42.el7_1.4?arch=i686\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "product": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "product_id": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-42.el7_1.4?arch=i686\u0026epoch=1" } } } ], "category": "architecture", "name": "i686" }, { "branches": [ { "category": "product_version", "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "product": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "product_id": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-libs@1.0.1e-42.el7_1.4?arch=ppc64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "product": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "product_id": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-42.el7_1.4?arch=ppc64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "product": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "product_id": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-42.el7_1.4?arch=ppc64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "product": { "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "product_id": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-42.el7_1.4?arch=ppc64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "product": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "product_id": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-42.el7_1.4?arch=ppc64\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "product": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "product_id": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-42.el7_1.4?arch=ppc64\u0026epoch=1" } } } ], "category": "architecture", "name": "ppc64" }, { "branches": [ { "category": "product_version", "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "product": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "product_id": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-libs@1.0.1e-42.el7_1.4?arch=ppc\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "product": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "product_id": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-42.el7_1.4?arch=ppc\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "product": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "product_id": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-42.el7_1.4?arch=ppc\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "product": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "product_id": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-42.el7_1.4?arch=ppc\u0026epoch=1" } } } ], "category": "architecture", "name": "ppc" }, { "branches": [ { "category": "product_version", "name": "openssl-1:1.0.1e-42.el7_1.4.s390x", "product": { "name": "openssl-1:1.0.1e-42.el7_1.4.s390x", "product_id": "openssl-1:1.0.1e-42.el7_1.4.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-42.el7_1.4?arch=s390x\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "product": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "product_id": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-42.el7_1.4?arch=s390x\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "product": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "product_id": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-42.el7_1.4?arch=s390x\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "product": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "product_id": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-libs@1.0.1e-42.el7_1.4?arch=s390x\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "product": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "product_id": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-42.el7_1.4?arch=s390x\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "product": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "product_id": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-42.el7_1.4?arch=s390x\u0026epoch=1" } } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "product": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "product_id": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-42.el7_1.4?arch=s390\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "product": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "product_id": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-42.el7_1.4?arch=s390\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "product": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "product_id": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-libs@1.0.1e-42.el7_1.4?arch=s390\u0026epoch=1" } } }, { "category": "product_version", "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "product": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "product_id": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-42.el7_1.4?arch=s390\u0026epoch=1" } } } ], "category": "architecture", "name": "s390" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.src as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.src", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client (v. 7)", "product_id": "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.src as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.src", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Client Optional (v. 7)", "product_id": "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Client-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.src as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.src", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode (v. 7)", "product_id": "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.src as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.src", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux ComputeNode Optional (v. 7)", "product_id": "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7ComputeNode-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.src as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.src", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.ael7b_1.4.src as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.ael7b_1.4.src", "relates_to_product_reference": "7Server-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server (v. 7)", "product_id": "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.src as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.src", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Server-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-optional-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.ael7b_1.4.src as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.ael7b_1.4.src", "relates_to_product_reference": "7Server-optional-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-optional-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-optional-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-optional-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-optional-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le as a component of Red Hat Enterprise Linux Server Optional (v. 7)", "product_id": "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le" }, "product_reference": "openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "relates_to_product_reference": "7Server-optional-LE-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.src as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.src", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 7)", "product_id": "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.src as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.src", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.i686 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.i686", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.s390x as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.s390x", "relates_to_product_reference": "7Workstation-optional-7.1.Z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64 as a component of Red Hat Enterprise Linux Workstation Optional (v. 7)", "product_id": "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" }, "product_reference": "openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "relates_to_product_reference": "7Workstation-optional-7.1.Z" } ] }, "vulnerabilities": [ { "cve": "CVE-2015-0209", "cwe": { "id": "CWE-416", "name": "Use After Free" }, "discovery_date": "2015-02-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1196737" } ], "notes": [ { "category": "description", "text": "A use-after-free flaw was found in the way OpenSSL imported malformed Elliptic Curve private keys. A specially crafted key file could cause an application using OpenSSL to crash when imported.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: use-after-free on invalid EC private key import", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0209" }, { "category": "external", "summary": "RHBZ#1196737", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1196737" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0209", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0209" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0209", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0209" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-02-09T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0716" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.1, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:H/Au:N/C:P/I:P/A:P", "version": "2.0" }, "products": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: use-after-free on invalid EC private key import" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Stephen Henson" ], "organization": "OpenSSL development team", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0286", "cwe": { "id": "CWE-125", "name": "Out-of-bounds Read" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202366" } ], "notes": [ { "category": "description", "text": "An invalid pointer use flaw was found in OpenSSL\u0027s ASN1_TYPE_cmp() function. A remote attacker could crash a TLS/SSL client or server using OpenSSL via a specially crafted X.509 certificate when the attacker-supplied certificate was verified by the application.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: invalid pointer use in ASN1_TYPE_cmp()", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0286" }, { "category": "external", "summary": "RHBZ#1202366", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202366" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0286", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0286" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0286", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0286" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0716" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: invalid pointer use in ASN1_TYPE_cmp()" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0287", "cwe": { "id": "CWE-787", "name": "Out-of-bounds Write" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202380" } ], "notes": [ { "category": "description", "text": "An out-of-bounds write flaw was found in the way OpenSSL reused certain ASN.1 structures. A remote attacker could possibly use a specially crafted ASN.1 structure that, when parsed by an application, would cause that application to crash.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: ASN.1 structure reuse memory corruption", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0287" }, { "category": "external", "summary": "RHBZ#1202380", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202380" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0287", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0287" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0287", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0287" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0716" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: ASN.1 structure reuse memory corruption" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Brian Carpenter" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0288", "cwe": { "id": "CWE-476", "name": "NULL Pointer Dereference" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202418" } ], "notes": [ { "category": "description", "text": "A NULL pointer dereference flaw was found in OpenSSL\u0027s X.509 certificate handling implementation. A specially crafted X.509 certificate could cause an application using OpenSSL to crash if the application attempted to convert the certificate to a certificate request.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: X509_to_X509_REQ NULL pointer dereference", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0288" }, { "category": "external", "summary": "RHBZ#1202418", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202418" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0288", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0288" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0288", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0288" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0716" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: X509_to_X509_REQ NULL pointer dereference" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Michal Zalewski" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0289", "cwe": { "id": "CWE-476", "name": "NULL Pointer Dereference" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202384" } ], "notes": [ { "category": "description", "text": "A NULL pointer dereference was found in the way OpenSSL handled certain PKCS#7 inputs. An attacker able to make an application using OpenSSL verify, decrypt, or parse a specially crafted PKCS#7 input could cause that application to crash. TLS/SSL clients and servers using OpenSSL were not affected by this flaw.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: PKCS7 NULL pointer dereference", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0289" }, { "category": "external", "summary": "RHBZ#1202384", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202384" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0289", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0289" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0289", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0289" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0716" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: PKCS7 NULL pointer dereference" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Robert Dugal", "David Ramos" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0292", "cwe": { "id": "CWE-120", "name": "Buffer Copy without Checking Size of Input (\u0027Classic Buffer Overflow\u0027)" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202395" } ], "notes": [ { "category": "description", "text": "An integer underflow flaw, leading to a buffer overflow, was found in the way OpenSSL decoded malformed Base64-encoded inputs. An attacker able to make an application using OpenSSL decode a specially crafted Base64-encoded input (such as a PEM file) could use this flaw to cause the application to crash. Note: this flaw is not exploitable via the TLS/SSL protocol because the data being transferred is not Base64-encoded.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: integer underflow leading to buffer overflow in base64 decoding", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0292" }, { "category": "external", "summary": "RHBZ#1202395", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202395" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0292", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0292" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0292", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0292" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0716" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.1, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:H/Au:N/C:P/I:P/A:P", "version": "2.0" }, "products": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: integer underflow leading to buffer overflow in base64 decoding" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0716" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0703", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310811" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2 connection handshakes that indicated non-zero clear key length for non-export cipher suites. An attacker could use this flaw to decrypt recorded SSLv2 sessions with the server by using it as a decryption oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: Divide-and-conquer session key recovery in SSLv2", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0703" }, { "category": "external", "summary": "RHBZ#1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0703", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0703" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0716" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: Divide-and-conquer session key recovery in SSLv2" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0704", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310814" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 protocol implementation in OpenSSL did not properly implement the Bleichenbacher protection for export cipher suites. An attacker could use a SSLv2 server using OpenSSL as a Bleichenbacher oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0704" }, { "category": "external", "summary": "RHBZ#1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0704", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0704" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0716" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Client-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Client-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7ComputeNode-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7ComputeNode-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Server-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Server-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-1:1.0.1e-42.ael7b_1.4.src", "7Server-optional-LE-7.1.Z:openssl-debuginfo-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-devel-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-libs-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-perl-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Server-optional-LE-7.1.Z:openssl-static-1:1.0.1e-42.ael7b_1.4.ppc64le", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.src", "7Workstation-optional-7.1.Z:openssl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-debuginfo-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-devel-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-libs-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-perl-1:1.0.1e-42.el7_1.4.x86_64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.i686", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.ppc64", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.s390x", "7Workstation-optional-7.1.Z:openssl-static-1:1.0.1e-42.el7_1.4.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers" } ] }
rhsa-2015_0752
Vulnerability from csaf_redhat
Published
2015-03-30 07:58
Modified
2024-09-15 22:24
Summary
Red Hat Security Advisory: openssl security update
Notes
Topic
Updated openssl packages that fix multiple security issues are now
available for Red Hat Storage 2.1.
Red Hat Product Security has rated this update as having Moderate security
impact. Common Vulnerability Scoring System (CVSS) base scores, which give
detailed severity ratings, are available for each vulnerability from the
CVE links in the References section.
Details
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.
An invalid pointer use flaw was found in OpenSSL's ASN1_TYPE_cmp()
function. A remote attacker could crash a TLS/SSL client or server using
OpenSSL via a specially crafted X.509 certificate when the
attacker-supplied certificate was verified by the application.
(CVE-2015-0286)
An integer underflow flaw, leading to a buffer overflow, was found in the
way OpenSSL decoded malformed Base64-encoded inputs. An attacker able to
make an application using OpenSSL decode a specially crafted Base64-encoded
input (such as a PEM file) could use this flaw to cause the application to
crash. Note: this flaw is not exploitable via the TLS/SSL protocol because
the data being transferred is not Base64-encoded. (CVE-2015-0292)
A denial of service flaw was found in the way OpenSSL handled SSLv2
handshake messages. A remote attacker could use this flaw to cause a
TLS/SSL server using OpenSSL to exit on a failed assertion if it had both
the SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)
A use-after-free flaw was found in the way OpenSSL imported malformed
Elliptic Curve private keys. A specially crafted key file could cause an
application using OpenSSL to crash when imported. (CVE-2015-0209)
An out-of-bounds write flaw was found in the way OpenSSL reused certain
ASN.1 structures. A remote attacker could possibly use a specially crafted
ASN.1 structure that, when parsed by an application, would cause that
application to crash. (CVE-2015-0287)
A NULL pointer dereference flaw was found in OpenSSL's X.509 certificate
handling implementation. A specially crafted X.509 certificate could cause
an application using OpenSSL to crash if the application attempted to
convert the certificate to a certificate request. (CVE-2015-0288)
A NULL pointer dereference was found in the way OpenSSL handled certain
PKCS#7 inputs. An attacker able to make an application using OpenSSL
verify, decrypt, or parse a specially crafted PKCS#7 input could cause that
application to crash. TLS/SSL clients and servers using OpenSSL were not
affected by this flaw. (CVE-2015-0289)
Red Hat would like to thank the OpenSSL project for reporting
CVE-2015-0286, CVE-2015-0287, CVE-2015-0288, CVE-2015-0289, CVE-2015-0292,
and CVE-2015-0293. Upstream acknowledges Stephen Henson of the OpenSSL
development team as the original reporter of CVE-2015-0286, Emilia Käsper
of the OpenSSL development team as the original reporter of CVE-2015-0287,
Brian Carpenter as the original reporter of CVE-2015-0288, Michal Zalewski
of Google as the original reporter of CVE-2015-0289, Robert Dugal and David
Ramos as the original reporters of CVE-2015-0292, and Sean Burford of
Google and Emilia Käsper of the OpenSSL development team as the original
reporters of CVE-2015-0293.
All openssl users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all services linked to the OpenSSL library must be restarted, or
the system rebooted.
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Moderate" }, "category": "csaf_vex", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Updated openssl packages that fix multiple security issues are now\navailable for Red Hat Storage 2.1.\n\nRed Hat Product Security has rated this update as having Moderate security\nimpact. Common Vulnerability Scoring System (CVSS) base scores, which give\ndetailed severity ratings, are available for each vulnerability from the\nCVE links in the References section.", "title": "Topic" }, { "category": "general", "text": "OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)\nand Transport Layer Security (TLS v1) protocols, as well as a\nfull-strength, general purpose cryptography library.\n\nAn invalid pointer use flaw was found in OpenSSL\u0027s ASN1_TYPE_cmp()\nfunction. A remote attacker could crash a TLS/SSL client or server using\nOpenSSL via a specially crafted X.509 certificate when the\nattacker-supplied certificate was verified by the application.\n(CVE-2015-0286)\n\nAn integer underflow flaw, leading to a buffer overflow, was found in the\nway OpenSSL decoded malformed Base64-encoded inputs. An attacker able to\nmake an application using OpenSSL decode a specially crafted Base64-encoded\ninput (such as a PEM file) could use this flaw to cause the application to\ncrash. Note: this flaw is not exploitable via the TLS/SSL protocol because\nthe data being transferred is not Base64-encoded. (CVE-2015-0292)\n\nA denial of service flaw was found in the way OpenSSL handled SSLv2\nhandshake messages. A remote attacker could use this flaw to cause a\nTLS/SSL server using OpenSSL to exit on a failed assertion if it had both\nthe SSLv2 protocol and EXPORT-grade cipher suites enabled. (CVE-2015-0293)\n\nA use-after-free flaw was found in the way OpenSSL imported malformed\nElliptic Curve private keys. A specially crafted key file could cause an\napplication using OpenSSL to crash when imported. (CVE-2015-0209)\n\nAn out-of-bounds write flaw was found in the way OpenSSL reused certain\nASN.1 structures. A remote attacker could possibly use a specially crafted\nASN.1 structure that, when parsed by an application, would cause that\napplication to crash. (CVE-2015-0287)\n\nA NULL pointer dereference flaw was found in OpenSSL\u0027s X.509 certificate\nhandling implementation. A specially crafted X.509 certificate could cause\nan application using OpenSSL to crash if the application attempted to\nconvert the certificate to a certificate request. (CVE-2015-0288)\n\nA NULL pointer dereference was found in the way OpenSSL handled certain\nPKCS#7 inputs. An attacker able to make an application using OpenSSL\nverify, decrypt, or parse a specially crafted PKCS#7 input could cause that\napplication to crash. TLS/SSL clients and servers using OpenSSL were not\naffected by this flaw. (CVE-2015-0289)\n\nRed Hat would like to thank the OpenSSL project for reporting\nCVE-2015-0286, CVE-2015-0287, CVE-2015-0288, CVE-2015-0289, CVE-2015-0292,\nand CVE-2015-0293. Upstream acknowledges Stephen Henson of the OpenSSL\ndevelopment team as the original reporter of CVE-2015-0286, Emilia K\u00e4sper\nof the OpenSSL development team as the original reporter of CVE-2015-0287,\nBrian Carpenter as the original reporter of CVE-2015-0288, Michal Zalewski\nof Google as the original reporter of CVE-2015-0289, Robert Dugal and David\nRamos as the original reporters of CVE-2015-0292, and Sean Burford of\nGoogle and Emilia K\u00e4sper of the OpenSSL development team as the original\nreporters of CVE-2015-0293.\n\nAll openssl users are advised to upgrade to these updated packages, which\ncontain backported patches to correct these issues. For the update to take\neffect, all services linked to the OpenSSL library must be restarted, or\nthe system rebooted.", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat offerings.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2015:0752", "url": "https://access.redhat.com/errata/RHSA-2015:0752" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#moderate", "url": "https://access.redhat.com/security/updates/classification/#moderate" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv_20150319.txt", "url": "https://www.openssl.org/news/secadv_20150319.txt" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "1196737", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1196737" }, { "category": "external", "summary": "1202366", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202366" }, { "category": "external", "summary": "1202380", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202380" }, { "category": "external", "summary": "1202384", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202384" }, { "category": "external", "summary": "1202395", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202395" }, { "category": "external", "summary": "1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "1202418", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202418" }, { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/data/csaf/v2/advisories/2015/rhsa-2015_0752.json" } ], "title": "Red Hat Security Advisory: openssl security update", "tracking": { "current_release_date": "2024-09-15T22:24:39+00:00", "generator": { "date": "2024-09-15T22:24:39+00:00", "engine": { "name": "Red Hat SDEngine", "version": "3.33.3" } }, "id": "RHSA-2015:0752", "initial_release_date": "2015-03-30T07:58:28+00:00", "revision_history": [ { "date": "2015-03-30T07:58:28+00:00", "number": "1", "summary": "Initial version" }, { "date": "2015-03-30T07:58:28+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2024-09-15T22:24:39+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Red Hat Storage Server 2.1", "product": { "name": "Red Hat Storage Server 2.1", "product_id": "6Server-RHS-6.4.z", "product_identification_helper": { "cpe": "cpe:/a:redhat:storage:2.1:server:el6" } } } ], "category": "product_family", "name": "Red Hat Gluster Storage" }, { "branches": [ { "category": "product_version", "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-debuginfo@1.0.1e-30.el6_6.7?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-static@1.0.1e-30.el6_6.7?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-30.el6_6.7?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-perl@1.0.1e-30.el6_6.7?arch=x86_64" } } }, { "category": "product_version", "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "product": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "product_id": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl-devel@1.0.1e-30.el6_6.7?arch=x86_64" } } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_version", "name": "openssl-0:1.0.1e-30.el6_6.7.src", "product": { "name": "openssl-0:1.0.1e-30.el6_6.7.src", "product_id": "openssl-0:1.0.1e-30.el6_6.7.src", "product_identification_helper": { "purl": "pkg:rpm/redhat/openssl@1.0.1e-30.el6_6.7?arch=src" } } } ], "category": "architecture", "name": "src" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.src as a component of Red Hat Storage Server 2.1", "product_id": "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.src", "relates_to_product_reference": "6Server-RHS-6.4.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Storage Server 2.1", "product_id": "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-RHS-6.4.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Storage Server 2.1", "product_id": "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-RHS-6.4.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Storage Server 2.1", "product_id": "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-RHS-6.4.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Storage Server 2.1", "product_id": "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-RHS-6.4.z" }, { "category": "default_component_of", "full_product_name": { "name": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64 as a component of Red Hat Storage Server 2.1", "product_id": "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" }, "product_reference": "openssl-static-0:1.0.1e-30.el6_6.7.x86_64", "relates_to_product_reference": "6Server-RHS-6.4.z" } ] }, "vulnerabilities": [ { "cve": "CVE-2015-0209", "cwe": { "id": "CWE-416", "name": "Use After Free" }, "discovery_date": "2015-02-26T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1196737" } ], "notes": [ { "category": "description", "text": "A use-after-free flaw was found in the way OpenSSL imported malformed Elliptic Curve private keys. A specially crafted key file could cause an application using OpenSSL to crash when imported.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: use-after-free on invalid EC private key import", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0209" }, { "category": "external", "summary": "RHBZ#1196737", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1196737" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0209", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0209" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0209", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0209" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-02-09T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0752" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.1, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:H/Au:N/C:P/I:P/A:P", "version": "2.0" }, "products": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: use-after-free on invalid EC private key import" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Stephen Henson" ], "organization": "OpenSSL development team", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0286", "cwe": { "id": "CWE-125", "name": "Out-of-bounds Read" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202366" } ], "notes": [ { "category": "description", "text": "An invalid pointer use flaw was found in OpenSSL\u0027s ASN1_TYPE_cmp() function. A remote attacker could crash a TLS/SSL client or server using OpenSSL via a specially crafted X.509 certificate when the attacker-supplied certificate was verified by the application.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: invalid pointer use in ASN1_TYPE_cmp()", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0286" }, { "category": "external", "summary": "RHBZ#1202366", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202366" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0286", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0286" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0286", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0286" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0752" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: invalid pointer use in ASN1_TYPE_cmp()" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0287", "cwe": { "id": "CWE-787", "name": "Out-of-bounds Write" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202380" } ], "notes": [ { "category": "description", "text": "An out-of-bounds write flaw was found in the way OpenSSL reused certain ASN.1 structures. A remote attacker could possibly use a specially crafted ASN.1 structure that, when parsed by an application, would cause that application to crash.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: ASN.1 structure reuse memory corruption", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0287" }, { "category": "external", "summary": "RHBZ#1202380", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202380" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0287", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0287" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0287", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0287" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0752" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: ASN.1 structure reuse memory corruption" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Brian Carpenter" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0288", "cwe": { "id": "CWE-476", "name": "NULL Pointer Dereference" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202418" } ], "notes": [ { "category": "description", "text": "A NULL pointer dereference flaw was found in OpenSSL\u0027s X.509 certificate handling implementation. A specially crafted X.509 certificate could cause an application using OpenSSL to crash if the application attempted to convert the certificate to a certificate request.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: X509_to_X509_REQ NULL pointer dereference", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0288" }, { "category": "external", "summary": "RHBZ#1202418", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202418" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0288", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0288" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0288", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0288" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0752" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: X509_to_X509_REQ NULL pointer dereference" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Michal Zalewski" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0289", "cwe": { "id": "CWE-476", "name": "NULL Pointer Dereference" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202384" } ], "notes": [ { "category": "description", "text": "A NULL pointer dereference was found in the way OpenSSL handled certain PKCS#7 inputs. An attacker able to make an application using OpenSSL verify, decrypt, or parse a specially crafted PKCS#7 input could cause that application to crash. TLS/SSL clients and servers using OpenSSL were not affected by this flaw.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: PKCS7 NULL pointer dereference", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0289" }, { "category": "external", "summary": "RHBZ#1202384", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202384" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0289", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0289" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0289", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0289" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0752" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.6, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:H/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Low" } ], "title": "openssl: PKCS7 NULL pointer dereference" }, { "acknowledgments": [ { "names": [ "OpenSSL project" ] }, { "names": [ "Robert Dugal", "David Ramos" ], "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0292", "cwe": { "id": "CWE-120", "name": "Buffer Copy without Checking Size of Input (\u0027Classic Buffer Overflow\u0027)" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202395" } ], "notes": [ { "category": "description", "text": "An integer underflow flaw, leading to a buffer overflow, was found in the way OpenSSL decoded malformed Base64-encoded inputs. An attacker able to make an application using OpenSSL decode a specially crafted Base64-encoded input (such as a PEM file) could use this flaw to cause the application to crash. Note: this flaw is not exploitable via the TLS/SSL protocol because the data being transferred is not Base64-encoded.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: integer underflow leading to buffer overflow in base64 decoding", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0292" }, { "category": "external", "summary": "RHBZ#1202395", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202395" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0292", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0292" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0292", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0292" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0752" } ], "scores": [ { "cvss_v2": { "accessComplexity": "HIGH", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.1, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:H/Au:N/C:P/I:P/A:P", "version": "2.0" }, "products": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: integer underflow leading to buffer overflow in base64 decoding" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "Emilia K\u00e4sper" ], "organization": "the OpenSSL development team", "summary": "Acknowledged by upstream." }, { "names": [ "Sean Burford" ], "organization": "Google", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2015-0293", "cwe": { "id": "CWE-617", "name": "Reachable Assertion" }, "discovery_date": "2015-03-16T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1202404" } ], "notes": [ { "category": "description", "text": "A denial of service flaw was found in the way OpenSSL handled SSLv2 handshake messages. A remote attacker could use this flaw to cause a TLS/SSL server using OpenSSL to exit on a failed assertion if it had both the SSLv2 protocol and EXPORT-grade cipher suites enabled.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: assertion failure in SSLv2 servers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2015-0293" }, { "category": "external", "summary": "RHBZ#1202404", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2015-0293", "url": "https://www.cve.org/CVERecord?id=CVE-2015-0293" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "category": "external", "summary": "https://access.redhat.com/articles/1384453", "url": "https://access.redhat.com/articles/1384453" }, { "category": "external", "summary": "https://openssl.org/news/secadv_20150319.txt", "url": "https://openssl.org/news/secadv_20150319.txt" } ], "release_date": "2015-03-19T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0752" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "products": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: assertion failure in SSLv2 servers" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0703", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310811" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2 connection handshakes that indicated non-zero clear key length for non-export cipher suites. An attacker could use this flaw to decrypt recorded SSLv2 sessions with the server by using it as a decryption oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: Divide-and-conquer session key recovery in SSLv2", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0703" }, { "category": "external", "summary": "RHBZ#1310811", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310811" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0703", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0703" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0703" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0752" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: Divide-and-conquer session key recovery in SSLv2" }, { "acknowledgments": [ { "names": [ "the OpenSSL project" ] }, { "names": [ "David Adrian", "J. Alex Halderman" ], "organization": "University of Michigan", "summary": "Acknowledged by upstream." } ], "cve": "CVE-2016-0704", "discovery_date": "2016-02-22T00:00:00+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "1310814" } ], "notes": [ { "category": "description", "text": "It was discovered that the SSLv2 protocol implementation in OpenSSL did not properly implement the Bleichenbacher protection for export cipher suites. An attacker could use a SSLv2 server using OpenSSL as a Bleichenbacher oracle.", "title": "Vulnerability description" }, { "category": "summary", "text": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers", "title": "Vulnerability summary" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2016-0704" }, { "category": "external", "summary": "RHBZ#1310814", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1310814" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2016-0704", "url": "https://www.cve.org/CVERecord?id=CVE-2016-0704" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0704" }, { "category": "external", "summary": "https://www.openssl.org/news/secadv/20160301.txt", "url": "https://www.openssl.org/news/secadv/20160301.txt" } ], "release_date": "2016-03-01T00:00:00+00:00", "remediations": [ { "category": "vendor_fix", "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258", "product_ids": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2015:0752" } ], "scores": [ { "cvss_v2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "version": "2.0" }, "products": [ "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.src", "6Server-RHS-6.4.z:openssl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-debuginfo-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-devel-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-perl-0:1.0.1e-30.el6_6.7.x86_64", "6Server-RHS-6.4.z:openssl-static-0:1.0.1e-30.el6_6.7.x86_64" ] } ], "threats": [ { "category": "impact", "details": "Moderate" } ], "title": "openssl: SSLv2 Bleichenbacher protection overwrites wrong bytes for export ciphers" } ] }
ghsa-gmcw-2hjf-2h3x
Vulnerability from github
Published
2022-05-14 03:49
Modified
2025-04-12 12:46
Details
The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message.
{ "affected": [], "aliases": [ "CVE-2015-0293" ], "database_specific": { "cwe_ids": [ "CWE-20" ], "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2015-03-19T22:59:00Z", "severity": "MODERATE" }, "details": "The SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a allows remote attackers to cause a denial of service (s2_lib.c assertion failure and daemon exit) via a crafted CLIENT-MASTER-KEY message.", "id": "GHSA-gmcw-2hjf-2h3x", "modified": "2025-04-12T12:46:26Z", "published": "2022-05-14T03:49:17Z", "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0293" }, { "type": "WEB", "url": "https://access.redhat.com/articles/1384453" }, { "type": "WEB", "url": "https://bto.bluecoat.com/security-advisory/sa92" }, { "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1202404" }, { "type": "WEB", "url": "https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf" }, { "type": "WEB", "url": "https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=86f8fb0e344d62454f8daf3e15236b2b59210756" }, { "type": "WEB", "url": "https://git.openssl.org/?p=openssl.git;a=commit;h=86f8fb0e344d62454f8daf3e15236b2b59210756" }, { "type": "WEB", "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10110" }, { "type": "WEB", "url": "https://security.gentoo.org/glsa/201503-11" }, { "type": "WEB", "url": "https://support.citrix.com/article/CTX216642" }, { "type": "WEB", "url": "https://www.freebsd.org/security/advisories/FreeBSD-SA-15%3A06.openssl.asc" }, { "type": "WEB", "url": "https://www.openssl.org/news/secadv_20150319.txt" }, { "type": "WEB", "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10680" }, { "type": "WEB", "url": "http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html" }, { "type": "WEB", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152733.html" }, { "type": "WEB", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152734.html" }, { "type": "WEB", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152844.html" }, { "type": "WEB", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/156823.html" }, { "type": "WEB", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157177.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00022.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00027.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00001.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00002.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00003.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00004.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00006.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00007.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00009.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00010.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00011.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00012.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00025.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00038.html" }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-updates/2015-03/msg00062.html" }, { "type": "WEB", "url": "http://marc.info/?l=bugtraq\u0026m=143213830203296\u0026w=2" }, { "type": "WEB", "url": "http://marc.info/?l=bugtraq\u0026m=143748090628601\u0026w=2" }, { "type": "WEB", "url": "http://marc.info/?l=bugtraq\u0026m=144050155601375\u0026w=2" }, { "type": "WEB", "url": "http://marc.info/?l=bugtraq\u0026m=144050297101809\u0026w=2" }, { "type": "WEB", "url": "http://rhn.redhat.com/errata/RHSA-2015-0715.html" }, { "type": "WEB", "url": "http://rhn.redhat.com/errata/RHSA-2015-0716.html" }, { "type": "WEB", "url": "http://rhn.redhat.com/errata/RHSA-2015-0752.html" }, { "type": "WEB", "url": "http://rhn.redhat.com/errata/RHSA-2015-0800.html" }, { "type": "WEB", "url": "http://support.apple.com/kb/HT204942" }, { "type": "WEB", "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:062" }, { "type": "WEB", "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:063" }, { "type": "WEB", "url": "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html" }, { "type": "WEB", "url": "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html" }, { "type": "WEB", "url": "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html" }, { "type": "WEB", "url": "http://www.oracle.com/technetwork/topics/security/bulletinjan2015-2370101.html" }, { "type": "WEB", "url": "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html" }, { "type": "WEB", "url": "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html" }, { "type": "WEB", "url": "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html" }, { "type": "WEB", "url": "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/73232" }, { "type": "WEB", "url": "http://www.securitytracker.com/id/1031929" }, { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-2537-1" } ], "schema_version": "1.4.0", "severity": [] }
Loading...
Loading...
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.