UbuntuUpdates.org

Bugs fixes in "openssl"

Origin Bug number Title Date fixed
CVE CVE-2023-6129 Issue summary: The POLY1305 MAC (message authentication code) implementation contains a bug that might corrupt the internal state of applications run 2024-02-05
CVE CVE-2023-5678 Issue summary: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow. Impact summary: 2024-02-05
CVE CVE-2024-0727 Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL to crash leading to a potential Denial of Service attack Impact summa 2024-02-05
CVE CVE-2023-6237 openssl: Checking excessively long invalid RSA public keys may take a long time 2024-02-05
CVE CVE-2023-6129 Issue summary: The POLY1305 MAC (message authentication code) implementation contains a bug that might corrupt the internal state of applications run 2024-02-05
CVE CVE-2023-5678 Issue summary: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow. Impact summary: 2024-02-05
Launchpad 2033422 openssl: backport to jammy \ 2024-01-25
Launchpad 1994165 CMS_final: do not ignore CMS_dataFinal result 2024-01-25
Launchpad 2023545 [UBUNTU 22.04] openssl with ibmca engine configured dumps core when creating a new certificate 2024-01-25
Launchpad 2033422 openssl: backport to jammy \ 2024-01-20
Launchpad 1994165 CMS_final: do not ignore CMS_dataFinal result 2024-01-20
Launchpad 2023545 [UBUNTU 22.04] openssl with ibmca engine configured dumps core when creating a new certificate 2024-01-20
CVE CVE-2023-5363 Incorrect cipher key & IV length processing 2023-10-24
CVE CVE-2023-5363 Incorrect cipher key & IV length processing 2023-10-24
CVE CVE-2023-5363 Incorrect cipher key & IV length processing 2023-10-24
CVE CVE-2023-5363 Incorrect cipher key & IV length processing 2023-10-24
CVE CVE-2023-5363 Incorrect cipher key & IV length processing 2023-10-24
CVE CVE-2023-5363 Incorrect cipher key & IV length processing 2023-10-24
CVE CVE-2023-2650 openssl Possible DoS translating ASN.1 object identifiers 2023-05-31
CVE CVE-2023-2650 openssl Possible DoS translating ASN.1 object identifiers 2023-05-30



About   -   Send Feedback to @ubuntu_updates