UbuntuUpdates.org

Bugs fixes in "openssl"

Origin Bug number Title Date fixed
CVE CVE-2023-6129 Issue summary: The POLY1305 MAC (message authentication code) implementation contains a bug that might corrupt the internal state of applications run 2024-02-05
CVE CVE-2023-5678 Issue summary: Generating excessively long X9.42 DH keys or checking excessively long X9.42 DH keys or parameters may be very slow. Impact summary: 2024-02-05
Launchpad 2033422 openssl: backport to jammy \ 2024-01-25
Launchpad 1994165 CMS_final: do not ignore CMS_dataFinal result 2024-01-25
Launchpad 2023545 [UBUNTU 22.04] openssl with ibmca engine configured dumps core when creating a new certificate 2024-01-25
Launchpad 2033422 openssl: backport to jammy \ 2024-01-20
Launchpad 1994165 CMS_final: do not ignore CMS_dataFinal result 2024-01-20
Launchpad 2023545 [UBUNTU 22.04] openssl with ibmca engine configured dumps core when creating a new certificate 2024-01-20
CVE CVE-2023-5363 Incorrect cipher key & IV length processing 2023-10-24
CVE CVE-2023-5363 Incorrect cipher key & IV length processing 2023-10-24
CVE CVE-2023-2650 openssl Possible DoS translating ASN.1 object identifiers 2023-05-31
CVE CVE-2023-2650 openssl Possible DoS translating ASN.1 object identifiers 2023-05-30
CVE CVE-2023-2650 openssl Possible DoS translating ASN.1 object identifiers 2023-05-30
CVE CVE-2023-2650 openssl Possible DoS translating ASN.1 object identifiers 2023-05-30
CVE CVE-2023-2650 openssl Possible DoS translating ASN.1 object identifiers 2023-05-30
CVE CVE-2023-2650 openssl Possible DoS translating ASN.1 object identifiers 2023-05-30
CVE CVE-2023-0464 A security vulnerability has been identified in all supported versions of OpenSSL related to the verification of X.509 certificate chains that includ 2023-04-25
CVE CVE-2023-0464 A security vulnerability has been identified in all supported versions of OpenSSL related to the verification of X.509 certificate chains that includ 2023-04-25
CVE CVE-2023-0464 A security vulnerability has been identified in all supported versions of OpenSSL related to the verification of X.509 certificate chains that includ 2023-04-25
CVE CVE-2022-3996 If an X.509 certificate contains a malformed policy constraint and policy processing is enabled, then a write lock will be taken twice recursively. O 2023-04-25



About   -   Send Feedback to @ubuntu_updates