Bug Fix Advisory openssl bug fix update

Advisory: RHBA-2007:0447-2
Type: Bug Fix Advisory
Severity: N/A
Issued on: 2007-06-11
Last updated on: 2007-06-11
Affected Products: Red Hat Desktop (v. 3)
Red Hat Enterprise Linux AS (v. 3)
Red Hat Enterprise Linux ES (v. 3)
Red Hat Enterprise Linux WS (v. 3)
OVAL: N/A

Details

Updated OpenSSL packages that improve handling of some CA certificates are
now available.

OpenSSL is a toolkit that implements Secure Sockets Layer (SSL v2/v3) and
Transport Layer Security (TLS v1) protocols as well as a full-strength
general purpose cryptography library.

The updated OpenSSL packages fix a problem with verification of
certificates signed by certain CA certificates.

Note: After installing this update, users are advised to either restart all
services that use OpenSSL or restart their system.

Users of openssl should upgrade to these updated packages, which resolve
this issue.


Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

This update is available via Red Hat Network. To use Red Hat Network,
launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.

Updated packages

Red Hat Desktop (v. 3)

SRPMS:
openssl-0.9.7a-33.23.src.rpm
File outdated by:  RHSA-2009:0004
    21122a4c9401b6d69d83afe74a50e29e
 
IA-32:
openssl-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    451bdc520702836c2a67e98ea37773dd
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-devel-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    d20035e40b5b5decd05a688b19d6aeee
openssl-perl-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    80165b1ac6c87bfcd910ebeb341b1691
 
x86_64:
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    c476a10d1cee25f4c0cd5d8dc758904c
openssl-devel-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    6d88507b56ac2869c3d7403f76e044cb
openssl-perl-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    a7afa257265c934396bd56164134b9e2
 
Red Hat Enterprise Linux AS (v. 3)

SRPMS:
openssl-0.9.7a-33.23.src.rpm
File outdated by:  RHSA-2009:0004
    21122a4c9401b6d69d83afe74a50e29e
 
IA-32:
openssl-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    451bdc520702836c2a67e98ea37773dd
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-devel-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    d20035e40b5b5decd05a688b19d6aeee
openssl-perl-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    80165b1ac6c87bfcd910ebeb341b1691
 
IA-64:
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-0.9.7a-33.23.ia64.rpm
File outdated by:  RHSA-2009:0004
    a804e323bbf9ef4477d6ebeaef6ea85d
openssl-devel-0.9.7a-33.23.ia64.rpm
File outdated by:  RHSA-2009:0004
    0a9e19c4c5e91399781b608a1e2f9ff2
openssl-perl-0.9.7a-33.23.ia64.rpm
File outdated by:  RHSA-2009:0004
    ef0fbff2d4d0c69fdbc33a5d69d0b196
 
PPC:
openssl-0.9.7a-33.23.ppc.rpm
File outdated by:  RHSA-2009:0004
    f2341ba7aa2886625f0d18a7b86d77d9
openssl-0.9.7a-33.23.ppc64.rpm
File outdated by:  RHSA-2009:0004
    3db119032b43132b0238ec886e648d5a
openssl-devel-0.9.7a-33.23.ppc.rpm
File outdated by:  RHSA-2009:0004
    df062d671b7abaa6c3b4268de8ea3c99
openssl-perl-0.9.7a-33.23.ppc.rpm
File outdated by:  RHSA-2009:0004
    258a74dde711e27be69dee65ff8bb5a5
 
s390:
openssl-0.9.7a-33.23.s390.rpm
File outdated by:  RHSA-2009:0004
    b3030f23c4bef03b380ac2b8d54ad5b3
openssl-devel-0.9.7a-33.23.s390.rpm
File outdated by:  RHSA-2009:0004
    7ae0dc01ea281a39bef1a4f8ca9b71d8
openssl-perl-0.9.7a-33.23.s390.rpm
File outdated by:  RHSA-2009:0004
    e77dbf00cf26cb95ef2ffaab6f82dca3
 
s390x:
openssl-0.9.7a-33.23.s390.rpm
File outdated by:  RHSA-2009:0004
    b3030f23c4bef03b380ac2b8d54ad5b3
openssl-0.9.7a-33.23.s390x.rpm
File outdated by:  RHSA-2009:0004
    1b6d86ee8f5df7d7b4a5040bdb2ae495
openssl-devel-0.9.7a-33.23.s390x.rpm
File outdated by:  RHSA-2009:0004
    dd3927c9bf0e611d31e9a93e156b82f2
openssl-perl-0.9.7a-33.23.s390x.rpm
File outdated by:  RHSA-2009:0004
    552b79d1ef65aecd4686337bff3b7912
 
x86_64:
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    c476a10d1cee25f4c0cd5d8dc758904c
openssl-devel-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    6d88507b56ac2869c3d7403f76e044cb
openssl-perl-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    a7afa257265c934396bd56164134b9e2
 
Red Hat Enterprise Linux ES (v. 3)

SRPMS:
openssl-0.9.7a-33.23.src.rpm
File outdated by:  RHSA-2009:0004
    21122a4c9401b6d69d83afe74a50e29e
 
IA-32:
openssl-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    451bdc520702836c2a67e98ea37773dd
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-devel-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    d20035e40b5b5decd05a688b19d6aeee
openssl-perl-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    80165b1ac6c87bfcd910ebeb341b1691
 
IA-64:
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-0.9.7a-33.23.ia64.rpm
File outdated by:  RHSA-2009:0004
    a804e323bbf9ef4477d6ebeaef6ea85d
openssl-devel-0.9.7a-33.23.ia64.rpm
File outdated by:  RHSA-2009:0004
    0a9e19c4c5e91399781b608a1e2f9ff2
openssl-perl-0.9.7a-33.23.ia64.rpm
File outdated by:  RHSA-2009:0004
    ef0fbff2d4d0c69fdbc33a5d69d0b196
 
x86_64:
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    c476a10d1cee25f4c0cd5d8dc758904c
openssl-devel-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    6d88507b56ac2869c3d7403f76e044cb
openssl-perl-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    a7afa257265c934396bd56164134b9e2
 
Red Hat Enterprise Linux WS (v. 3)

SRPMS:
openssl-0.9.7a-33.23.src.rpm
File outdated by:  RHSA-2009:0004
    21122a4c9401b6d69d83afe74a50e29e
 
IA-32:
openssl-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    451bdc520702836c2a67e98ea37773dd
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-devel-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    d20035e40b5b5decd05a688b19d6aeee
openssl-perl-0.9.7a-33.23.i386.rpm
File outdated by:  RHSA-2009:0004
    80165b1ac6c87bfcd910ebeb341b1691
 
IA-64:
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-0.9.7a-33.23.ia64.rpm
File outdated by:  RHSA-2009:0004
    a804e323bbf9ef4477d6ebeaef6ea85d
openssl-devel-0.9.7a-33.23.ia64.rpm
File outdated by:  RHSA-2009:0004
    0a9e19c4c5e91399781b608a1e2f9ff2
openssl-perl-0.9.7a-33.23.ia64.rpm
File outdated by:  RHSA-2009:0004
    ef0fbff2d4d0c69fdbc33a5d69d0b196
 
x86_64:
openssl-0.9.7a-33.23.i686.rpm
File outdated by:  RHSA-2009:0004
    ff1adc99b7929e2441503139fe27dc84
openssl-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    c476a10d1cee25f4c0cd5d8dc758904c
openssl-devel-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    6d88507b56ac2869c3d7403f76e044cb
openssl-perl-0.9.7a-33.23.x86_64.rpm
File outdated by:  RHSA-2009:0004
    a7afa257265c934396bd56164134b9e2
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

200880 - openssl-0.9.7a fails to verify a certificate against a CA


Keywords

CA, certifcate, verification


These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/