Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Oracle Linux 9 ELSA-2022-6224 Moderate OpenSSL Security Update

oracle
Calendar Grey August 30, 2022
Oracle Linux Logo Esm H88
Oracle Linux ELSA-2022-6225 introduces a notable security update for OpenSSH attending to critical weaknesses and enhancements.
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[3.0.1-41.0.1] - Replace upstream references [Orabug: 34340177] [1:3.0.1-41] - Zeroize public keys as required by FIPS 140-3 Resolves: rhbz#2115861 - Add FIPS indicator for HKDF Resolves: rhbz#2118388 [1:3.0.1-40] - Deal with DH keys in FIPS mode according FIPS-140-3 requirements Related: rhbz#2115856 - Deal with ECDH keys in FIPS mode according FIPS-140-3 requirements Related: rhbz#2115857 - Use signature for RSA pairwise test according FIPS-140-3 requirements Related: rhbz#2115858 - Reseed all the parent DRBGs in chain on reseeding a DRBG Related: rhbz#2115859 - Zeroization according to FIPS-140-3 requirements Related: rhbz#2115861 [1:3.0.1-39] - Use RSA-OAEP in FIPS RSA encryption/decryption FIPS self-test - Use Use digest_sign & digest_verify in FIPS signature self test - Use FFDHE2048 in Diffie-Hellman FIPS self-test Resolves: rhbz#2112978 [1:3.0.1-38] - Fix segfault in EVP_PKEY_Q_keygen() when OpenSSL was not previously initialized. Resolves: rhbz#...

Read the Full Advisory

SRPMs

https://oss.oracle.com:443/ol9/SRPMS-updates/openssl-3.0.1-41.0.1.el9_0.src.rpm

x86_64

openssl-3.0.1-41.0.1.el9_0.x86_64.rpm openssl-devel-3.0.1-41.0.1.el9_0.i686.rpm openssl-devel-3.0.1-41.0.1.el9_0.x86_64.rpm openssl-libs-3.0.1-41.0.1.el9_0.i686.rpm openssl-libs-3.0.1-41.0.1.el9_0.x86_64.rpm openssl-perl-3.0.1-41.0.1.el9_0.x86_64.rpm

aarch64

openssl-3.0.1-41.0.1.el9_0.aarch64.rpm openssl-devel-3.0.1-41.0.1.el9_0.aarch64.rpm openssl-libs-3.0.1-41.0.1.el9_0.aarch64.rpm openssl-perl-3.0.1-41.0.1.el9_0.aarch64.rpm

Related CVEs: CVE-2022-1292 CVE-2022-1343 CVE-2022-1473 CVE-2022-2068 CVE-2022-2097

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here