Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:
Category:SuSE Local Security Checks
Title:SUSE: Security Advisory (SUSE-SU-2012:0674-1)
Summary:The remote host is missing an update for the 'openssl' package(s) announced via the SUSE-SU-2012:0674-1 advisory.
The remote host is missing an update for the 'openssl' package(s) announced via the SUSE-SU-2012:0674-1 advisory.

Vulnerability Insight:
This update of openssl fixes the following security issues:

* Denial of Service or crash via CBC mode handling.
> )
* Incorrect integer conversions that could result in memory corruption. (CVE-2012-2110
> , CVE-2012-2131
> )
* Potential memory leak in multithreaded key creation.
* Symmetric crypto errors in PKCS7_decrypt.
* Free headers after use in error message.
* S/MIME verification may erroneously fail.
* Tolerating bad MIME headers in ANS.1 parser.
> , CVE-2006-7250
> )
* DTLS DoS Attack. (CVE-2012-0050
> )
* DTLS Plaintext Recovery Attack. (CVE-2011-4108
> )
* Double-free in Policy Checks. (CVE-2011-4109
> )
* Uninitialized SSL 3.0 Padding. (CVE-2011-4576
> )
* SGC Restart DoS Attack. (CVE-2011-4619
> )

Affected Software/OS:
'openssl' package(s) on SUSE Linux Enterprise Server 10 SP3.

Please install the updated package(s).

CVSS Score:

CVSS Vector:

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2006-7250
BugTraq ID: 52181
HPdes Security Advisory: HPSBUX02782
HPdes Security Advisory: SSRT100844
Common Vulnerability Exposure (CVE) ID: CVE-2011-4108
CERT/CC vulnerability note: VU#737740
Debian Security Information: DSA-2390 (Google Search)
HPdes Security Advisory: HPSBMU02776
HPdes Security Advisory: HPSBMU02786
HPdes Security Advisory: HPSBOV02793
HPdes Security Advisory: HPSBUX02734
HPdes Security Advisory: SSRT100729
HPdes Security Advisory: SSRT100852
HPdes Security Advisory: SSRT100877
HPdes Security Advisory: SSRT100891
RedHat Security Advisories: RHSA-2012:1306
RedHat Security Advisories: RHSA-2012:1307
RedHat Security Advisories: RHSA-2012:1308
SuSE Security Announcement: SUSE-SU-2012:0084 (Google Search)
SuSE Security Announcement: SUSE-SU-2014:0320 (Google Search)
SuSE Security Announcement: openSUSE-SU-2012:0083 (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2011-4109
XForce ISS Database: openssl-policy-checks-dos(72129)
Common Vulnerability Exposure (CVE) ID: CVE-2011-4576
Common Vulnerability Exposure (CVE) ID: CVE-2011-4619
Common Vulnerability Exposure (CVE) ID: CVE-2012-0050
BugTraq ID: 51563
Debian Security Information: DSA-2392 (Google Search)
HPdes Security Advisory: HPSBUX02737
HPdes Security Advisory: SSRT100747
Common Vulnerability Exposure (CVE) ID: CVE-2012-1165
BugTraq ID: 52764
Debian Security Information: DSA-2454 (Google Search)
RedHat Security Advisories: RHSA-2012:0426
RedHat Security Advisories: RHSA-2012:0488
RedHat Security Advisories: RHSA-2012:0531
Common Vulnerability Exposure (CVE) ID: CVE-2012-2110
BugTraq ID: 53158
HPdes Security Advisory: HPSBMU02900
HPdes Security Advisory: SSRT101210
RedHat Security Advisories: RHSA-2012:0518
RedHat Security Advisories: RHSA-2012:0522
SuSE Security Announcement: SUSE-SU-2012:0623 (Google Search)
SuSE Security Announcement: SUSE-SU-2012:0637 (Google Search)
SuSE Security Announcement: SUSE-SU-2012:1149 (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2012-2131
BugTraq ID: 53212
XForce ISS Database: openssl-asn1-code-execution(75099)
Common Vulnerability Exposure (CVE) ID: CVE-2012-2333
BugTraq ID: 53476
Debian Security Information: DSA-2475 (Google Search)
HPdes Security Advisory: HPSBOV02852
HPdes Security Advisory: HPSBUX02814
HPdes Security Advisory: SSRT100930
HPdes Security Advisory: SSRT101108
RedHat Security Advisories: RHSA-2012:0699
SuSE Security Announcement: SUSE-SU-2012:0678 (Google Search)
SuSE Security Announcement: SUSE-SU-2012:0679 (Google Search)
XForce ISS Database: openssl-tls-record-dos(75525)
CopyrightCopyright (C) 2021 Greenbone Networks GmbH

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.

© 1998-2022 E-Soft Inc. All rights reserved.