Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Slackware: SSA:2003-273-01 Critical: OpenSSL Denial Of Service Issue

slackware
Calendar Grey October 1, 2003
Dist Slackware Esm H88
Recent updates for Slackware address critical issues related to ASN.1 decoding that might cause service outages. Users are encouraged to apply these updates promptly.
These fix problems with ASN.1 parsing whichcould lead to a denial of service

Summary

Here are the details from the Slackware 9.1 ChangeLog: Tue Sep 30 16:16:35 PDT 2003 patches/packages/openssl-0.9.7c-i486-1.tgz: Upgraded to OpenSSL 0.9.7c. patches/packages/openssl-solibs-0.9.7c-i486-1.tgz: Upgraded to OpenSSL 0.9.7c. This update fixes problems with OpenSSL's ASN.1 parsing which could lead to a denial of service. It is not known whether the problems could lead to the running of malicious code on the server, but it has not been ruled out. For detailed information, see OpenSSL's security advisory: openssl We recommend sites that use OpenSSL upgrade to the fixed packages right away. (* Security fix *) WHERE TO FIND THE NEW PACKAGES: Updated packages for Slackware 8.1: Updated packages for Slackware 9.0: Updated packages for Slackware 9.1: Updated packages for Slackware -current: MD5 SIGNATURES: Slackware 8.1 packages: b16847083943c529ff63a07331d1818f openssl-0.9.6k-i386-1.tgz a371561b0f2148149abc662d02b17381

Read the Full Advisory

Where Find New Packages

MD5 Signatures

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Related News

Your message here