Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Gentoo 200902-02 Normal: OpenSSL Certificate Validation Error

gentoo
Calendar Grey February 12, 2009
Dist Gentoo Esm H88
Gentoo Linux Security Notice GLSA 202110-01 regarding OpenSSL vulnerability concerning certificate verification flaws. Users advised to upgrade.
An error in the OpenSSL certificate chain validation might allow for spoofing attacks.

Summary

Gentoo Linux Security Advisory GLSA 200902-02 https://security.gentoo.org/ Severity: Normal Title: OpenSSL: Certificate validation error Date: February 12, 2009 Bugs: #251346 ID: 200902-02

Synopsis ======= An error in the OpenSSL certificate chain validation might allow for spoofing attacks.
Background ========= OpenSSL is an Open Source toolkit implementing the Secure Sockets Layer (SSL v2/v3) and Transport Layer Security (TLS v1) as well as a general purpose cryptography library.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-libs/openssl < 0.9.8j >= 0.9.8j
========== The Google Security Team reported that several functions incorrectly check the re...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns


Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/70798_4c9dbbdde36eef04251a4ced7eac4df9 on line 11

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here