Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

openSUSE 12.3 and 13.1 - 2014:0492-1 Important: OpenSSL Heartbeat Issue

opensuse
Calendar Grey April 8, 2014
Dist Opensuse Esm H88
Patch addressing OpenSSL security flaws in openSUSE versions 12.3 and 13.1 released, marked with high severity. Essential update now accessible.
An update that fixes one vulnerability is now available

Description

This openssl update fixes one security issue:

- bnc#872299: Fixed missing bounds checks for heartbeat

messages (CVE-2014-0160).

Patch

Patch Instructions:

To install this openSUSE Security Update use YaST online_update.

Alternatively you can run the command listed for your product:

- openSUSE 13.1:

zypper in -t patch openSUSE-2014-277

- openSUSE 12.3:

zypper in -t patch openSUSE-2014-277

To bring your system up-to-date, use "zypper patch".

Package List

- openSUSE 13.1 (i586 x86_64):

libopenssl-devel-1.0.1e-11.32.1

libopenssl1_0_0-1.0.1e-11.32.1

libopenssl1_0_0-debuginfo-1.0.1e-11.32.1

openssl-1.0.1e-11.32.1

openssl-debuginfo-1.0.1e-11.32.1

openssl-debugsource-1.0.1e-11.32.1

- openSUSE 13.1 (x86_64):

libopenssl-devel-32bit-1.0.1e-11.32.1

libopenssl1_0_0-32bit-1.0.1e-11.32.1

libopenssl1_0_0-debuginfo-32bit-1.0.1e-11.32.1

- openSUSE 13.1 (noarch):

openssl-doc-1.0.1e-11.32.1

- openSUSE 12.3 (i586 x86_64):

libopenssl-devel-1.0.1e-1.44.1

libopenssl1_0_0-1.0.1e-1.44.1

libopenssl1_0_0-debuginfo-1.0.1e-1.44.1

openssl-1.0.1e-1.44.1

openssl-debuginfo-1.0.1e-1.44.1

openssl-debugsource-1.0.1e-1.44.1

- openSUSE 12.3 (x86_64):

libopenssl-devel-32bit-1.0.1e-1.44.1

libopenssl1_0_0-32bit-1.0.1e-1.44.1

libopenssl1_0_0-debuginfo-32bit-1.0.1e-1.44.1

- openSUSE 12.3 (noarch):

openssl-doc-1.0.1e-1.44.1

References

https://www.suse.com/security/cve/CVE-2014-0160.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2014:0492-1
Rating: important
Affected Products: openSUSE 13.1 openSUSE 12.3 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here