Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 438
Alerts This Week
Warning Icon 1 438

SUSE: 2020:1234-5 Urgent: OpenSSH Vulnerabilities and Potential Exploits

suse
Calendar Grey June 7, 2014
Scroller Suse
Important SUSE Security alert concerning OpenSSL, focused on various vulnerabilities and necessary updates to safeguard systems.
An update that fixes three vulnerabilities is now available

Summary

OpenSSL was updated to fix the following security vulnerabilities: * SSL/TLS MITM vulnerability. (CVE-2014-0224) * DTLS recursion flaw. (CVE-2014-0221) * Anonymous ECDH denial of service. (CVE-2014-3470) Further information can be found at . Security Issues references: * CVE-2014-0224 * CVE-2014-0221 * CVE-2014-3470 Package List: - SUSE Linux Enterprise Server 10 SP4 LTSS (i586 s390x x86_64): openssl-0.9.8a-18.82.4 openssl-devel-0.9.8a-18.82.4 openssl-doc-0.9.8a-18.82.4

References

#880891

Cross- CVE-2014-0221 CVE-2014-0224 CVE-2014-3470

Affected Products:

SUSE Linux Enterprise Server 10 SP4 LTSS

SUSE Linux Enterprise Server 10 SP3 LTSS

https://www.suse.com/security/cve/CVE-2014-0221.html

https://www.suse.com/security/cve/CVE-2014-0224.html

https://www.suse.com/security/cve/CVE-2014-3470.html

https://scc.suse.com:443/patches/

https://scc.suse.com:443/patches/

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2014:0759-2
Rating: critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.