Skip to navigation

Security Advisory openssl security update

Advisory: RHSA-2006:0661-8
Type: Security Advisory
Severity: Important
Issued on: 2006-09-06
Last updated on: 2006-09-06
Affected Products: Red Hat Desktop (v. 3)
Red Hat Desktop (v. 4)
Red Hat Enterprise Linux AS (v. 2.1)
Red Hat Enterprise Linux AS (v. 3)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux ES (v. 2.1)
Red Hat Enterprise Linux ES (v. 3)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux WS (v. 2.1)
Red Hat Enterprise Linux WS (v. 3)
Red Hat Enterprise Linux WS (v. 4)
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor
CVEs (cve.mitre.org): CVE-2006-4339

Details

Updated OpenSSL packages are now available to correct a security issue.

This update has been rated as having important security impact by the Red
Hat Security Response Team.

The OpenSSL toolkit provides support for secure communications between
machines. OpenSSL includes a certificate management tool and shared
libraries which provide various cryptographic algorithms and protocols.

Daniel Bleichenbacher recently described an attack on PKCS #1 v1.5
signatures. Where an RSA key with exponent 3 is used it may be possible
for an attacker to forge a PKCS #1 v1.5 signature that would be incorrectly
verified by implementations that do not check for excess data in the RSA
exponentiation result of the signature.

The Google Security Team discovered that OpenSSL is vulnerable to this
attack. This issue affects applications that use OpenSSL to verify X.509
certificates as well as other uses of PKCS #1 v1.5. (CVE-2006-4339)

This errata also resolves a problem where a customized ca-bundle.crt file
was overwritten when the openssl package was upgraded.

Users are advised to upgrade to these updated packages, which contain a
backported patch to correct this issue.

Note: After installing this update, users are advised to either restart all
services that use OpenSSL or restart their system.


Solution

Users of Red Hat Enterprise Linux 2.1 may need to use the command "up2date
openssl openssl095a openssl096" to install these updated packages on their
systems. This is due to a conflict between Galeon and the recent Seamonkey
update. We will provide updated Galeon packages to fix this conflict in
a future erratum.

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

This update is available via Red Hat Network. To use Red Hat Network,
launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.

Updated packages

Red Hat Desktop (v. 3)

SRPMS:
openssl-0.9.7a-33.18.src.rpm
File outdated by:  RHSA-2010:0163
    MD5: 7931255997a1d848ce2a7005bc9e6b86
openssl096b-0.9.6b-16.43.src.rpm
File outdated by:  RHSA-2010:0173
    MD5: 3b6be5625565bb346d52fb6a5623d63d
 
IA-32:
openssl-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: 6e0aad070d322d10c2d52791b9da9e33
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-devel-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: c628920238cff2b40b2c0858c4c47e00
openssl-perl-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: e1b3654ce80d8bcfb16fa6e29aa8c2b2
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
 
x86_64:
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 2794780bd750f59abf8b1a1a5ca7cc81
openssl-devel-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 12b7d2a240d5fd33f1814e2600aa30ae
openssl-perl-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 473ef89363b88b74d80fa1dd285fe7b9
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
openssl096b-0.9.6b-16.43.x86_64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 02d32812e2b348d7ffacf91a5c91775d
 
Red Hat Desktop (v. 4)

SRPMS:
openssl-0.9.7a-43.11.src.rpm
File outdated by:  RHSA-2012:0086
    MD5: 513f9d07d6d6bc0ba7c6207937e54623
openssl096b-0.9.6b-22.43.src.rpm
File outdated by:  RHSA-2010:0173
    MD5: 5cb693bd507574dfd15ce06cedd87ddf
 
IA-32:
openssl-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: bb2a2bdf02f86cabb4cffdcfb7a549ab
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-devel-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: d0be647345ea50df30f8e2e63472b33c
openssl-perl-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: 56b168515a7de33a58e8010319cf9632
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
 
x86_64:
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 555fc3ef8e135ab8f637e50975536cc2
openssl-devel-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 9fc39618899eead5b14d7ae433b84e2f
openssl-perl-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: bc291c59edffb66c6dd4a7db50929c8f
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
openssl096b-0.9.6b-22.43.x86_64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 368e81fde3b0d7d99eedb0576e24d579
 
Red Hat Enterprise Linux AS (v. 2.1)

SRPMS:
openssl-0.9.6b-43.src.rpm
File outdated by:  RHSA-2009:0004
    MD5: 9c4e224d4d81207af0b89e368f18dc4e
openssl095a-0.9.5a-29.src.rpm
File outdated by:  RHSA-2009:0004
    MD5: 9783a1849141d3f7239ca7380ca65c80
openssl096-0.9.6-29.src.rpm
File outdated by:  RHSA-2009:0004
    MD5: 84ba18ccae05d9cd15196b7097428720
 
IA-32:
openssl-0.9.6b-43.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: 9546f50bcc58bdc77dbc553fddc15cae
openssl-0.9.6b-43.i686.rpm
File outdated by:  RHSA-2009:0004
    MD5: 44e1a5814a8585403858e7b0efd459e9
openssl-devel-0.9.6b-43.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: c327293080363dc5b634c37412b97e03
openssl-perl-0.9.6b-43.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: c8321b57d63a633b18f778ed9c124058
openssl095a-0.9.5a-29.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: 222f84f8d36e67a4d0e3fc233d5a2b4e
openssl096-0.9.6-29.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: 08b51e19ef3227b369d6a017dbddf8f8
 
IA-64:
openssl-0.9.6b-43.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: 42d7c7305a7c57bb9f20ae9784680589
openssl-devel-0.9.6b-43.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: 691d93e0296e97596610419eb6d3ad4a
openssl-perl-0.9.6b-43.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: d5850aa9c7d3671610dde63bebff2642
openssl095a-0.9.5a-29.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: 14f5eb8463137d39b9c80ebf5140f34a
openssl096-0.9.6-29.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: bf9b84dce7408a3cb6b06d736f03a4af
 
Red Hat Enterprise Linux AS (v. 3)

SRPMS:
openssl-0.9.7a-33.18.src.rpm
File outdated by:  RHSA-2010:0163
    MD5: 7931255997a1d848ce2a7005bc9e6b86
openssl096b-0.9.6b-16.43.src.rpm
File outdated by:  RHSA-2010:0173
    MD5: 3b6be5625565bb346d52fb6a5623d63d
 
IA-32:
openssl-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: 6e0aad070d322d10c2d52791b9da9e33
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-devel-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: c628920238cff2b40b2c0858c4c47e00
openssl-perl-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: e1b3654ce80d8bcfb16fa6e29aa8c2b2
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
 
IA-64:
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-0.9.7a-33.18.ia64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 14901c99907185c4bbe8b2c0e276427b
openssl-devel-0.9.7a-33.18.ia64.rpm
File outdated by:  RHSA-2010:0163
    MD5: fcff948e8fc9685baff13d1d3801f202
openssl-perl-0.9.7a-33.18.ia64.rpm
File outdated by:  RHSA-2010:0163
    MD5: acaecb0841c5a7de3231cc15d5b68c21
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
openssl096b-0.9.6b-16.43.ia64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 56ac07e7577ccfbc08c1c0cda848e454
 
PPC:
openssl-0.9.7a-33.18.ppc.rpm
File outdated by:  RHSA-2010:0163
    MD5: f9b728d0c51d36cff1c10bfbb96e857c
openssl-0.9.7a-33.18.ppc64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 640c4cba8094f18cfe1230af30060408
openssl-devel-0.9.7a-33.18.ppc.rpm
File outdated by:  RHSA-2010:0163
    MD5: 1fb4c48a10d2cceb58a638dfcca690ba
openssl-perl-0.9.7a-33.18.ppc.rpm
File outdated by:  RHSA-2010:0163
    MD5: 0719de47a6d77500d8b57fba3c84cf29
openssl096b-0.9.6b-16.43.ppc.rpm
File outdated by:  RHSA-2010:0173
    MD5: c4c15926b9e6771b6cbc7bcb621d07ab
 
s390:
openssl-0.9.7a-33.18.s390.rpm
File outdated by:  RHSA-2010:0163
    MD5: 712cdf7448cd56f4086592ac99d9efd0
openssl-devel-0.9.7a-33.18.s390.rpm
File outdated by:  RHSA-2010:0163
    MD5: 11c69ed43437826d702db6bad93ad97a
openssl-perl-0.9.7a-33.18.s390.rpm
File outdated by:  RHSA-2010:0163
    MD5: 051f9b48e2359ad0683bf6e968f9891c
openssl096b-0.9.6b-16.43.s390.rpm
File outdated by:  RHSA-2010:0173
    MD5: 2090930263494a9145d6a37ee7ef2d1d
 
s390x:
openssl-0.9.7a-33.18.s390.rpm
File outdated by:  RHSA-2010:0163
    MD5: 712cdf7448cd56f4086592ac99d9efd0
openssl-0.9.7a-33.18.s390x.rpm
File outdated by:  RHSA-2010:0163
    MD5: 3f0695e5419f99424070eb2d33912d16
openssl-devel-0.9.7a-33.18.s390x.rpm
File outdated by:  RHSA-2010:0163
    MD5: cd7d012078096bae3317459e6b80161f
openssl-perl-0.9.7a-33.18.s390x.rpm
File outdated by:  RHSA-2010:0163
    MD5: 17c5f5ee7d49a1ebc1e3d04127d3a363
openssl096b-0.9.6b-16.43.s390.rpm
File outdated by:  RHSA-2010:0173
    MD5: 2090930263494a9145d6a37ee7ef2d1d
 
x86_64:
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 2794780bd750f59abf8b1a1a5ca7cc81
openssl-devel-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 12b7d2a240d5fd33f1814e2600aa30ae
openssl-perl-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 473ef89363b88b74d80fa1dd285fe7b9
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
openssl096b-0.9.6b-16.43.x86_64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 02d32812e2b348d7ffacf91a5c91775d
 
Red Hat Enterprise Linux AS (v. 4)

SRPMS:
openssl-0.9.7a-43.11.src.rpm
File outdated by:  RHSA-2012:0086
    MD5: 513f9d07d6d6bc0ba7c6207937e54623
openssl096b-0.9.6b-22.43.src.rpm
File outdated by:  RHSA-2010:0173
    MD5: 5cb693bd507574dfd15ce06cedd87ddf
 
IA-32:
openssl-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: bb2a2bdf02f86cabb4cffdcfb7a549ab
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-devel-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: d0be647345ea50df30f8e2e63472b33c
openssl-perl-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: 56b168515a7de33a58e8010319cf9632
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
 
IA-64:
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-0.9.7a-43.11.ia64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 56eed948b83ed31a4f1de958e2955a61
openssl-devel-0.9.7a-43.11.ia64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 5248cae306e916fcf5abbfdd1d7298dc
openssl-perl-0.9.7a-43.11.ia64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 2531e237bc267743e361138e88db7a04
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
openssl096b-0.9.6b-22.43.ia64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 79be24a710203ffc87cab0bc3e231d63
 
PPC:
openssl-0.9.7a-43.11.ppc.rpm
File outdated by:  RHSA-2012:0086
    MD5: cac5437c4d7060416c3a32fa5e31c26c
openssl-0.9.7a-43.11.ppc64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 2b2cd841eff757488d5044a236ce887b
openssl-devel-0.9.7a-43.11.ppc.rpm
File outdated by:  RHSA-2012:0086
    MD5: ec77cf71b67e8659771f7c5f46170865
openssl-perl-0.9.7a-43.11.ppc.rpm
File outdated by:  RHSA-2012:0086
    MD5: 044e340c377e4c1802ba6605d6aefe30
openssl096b-0.9.6b-22.43.ppc.rpm
File outdated by:  RHSA-2010:0173
    MD5: efb205dcb0b4bc899c61dd50b259c16d
 
s390:
openssl-0.9.7a-43.11.s390.rpm
File outdated by:  RHSA-2012:0086
    MD5: 2a4e830e5436218f61e717796e83f578
openssl-devel-0.9.7a-43.11.s390.rpm
File outdated by:  RHSA-2012:0086
    MD5: d9df0e940141b967f35d8a2d4208118c
openssl-perl-0.9.7a-43.11.s390.rpm
File outdated by:  RHSA-2012:0086
    MD5: ddf3a3c5db63df101812044a04f9fab6
openssl096b-0.9.6b-22.43.s390.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9988eb45264b6d783850af7397856ae1
 
s390x:
openssl-0.9.7a-43.11.s390.rpm
File outdated by:  RHSA-2012:0086
    MD5: 2a4e830e5436218f61e717796e83f578
openssl-0.9.7a-43.11.s390x.rpm
File outdated by:  RHSA-2012:0086
    MD5: 7b650ece5f5ff839af962b9d4a0f0c88
openssl-devel-0.9.7a-43.11.s390x.rpm
File outdated by:  RHSA-2012:0086
    MD5: 7018d29c78b8c372175809caca7716c5
openssl-perl-0.9.7a-43.11.s390x.rpm
File outdated by:  RHSA-2012:0086
    MD5: 2579a0b769724ae488ea42c19fcbc9de
openssl096b-0.9.6b-22.43.s390.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9988eb45264b6d783850af7397856ae1
 
x86_64:
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 555fc3ef8e135ab8f637e50975536cc2
openssl-devel-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 9fc39618899eead5b14d7ae433b84e2f
openssl-perl-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: bc291c59edffb66c6dd4a7db50929c8f
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
openssl096b-0.9.6b-22.43.x86_64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 368e81fde3b0d7d99eedb0576e24d579
 
Red Hat Enterprise Linux ES (v. 2.1)

SRPMS:
openssl-0.9.6b-43.src.rpm
File outdated by:  RHSA-2009:0004
    MD5: 9c4e224d4d81207af0b89e368f18dc4e
 
IA-32:
openssl-0.9.6b-43.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: 9546f50bcc58bdc77dbc553fddc15cae
openssl-0.9.6b-43.i686.rpm
File outdated by:  RHSA-2009:0004
    MD5: 44e1a5814a8585403858e7b0efd459e9
openssl-devel-0.9.6b-43.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: c327293080363dc5b634c37412b97e03
openssl-perl-0.9.6b-43.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: c8321b57d63a633b18f778ed9c124058
 
Red Hat Enterprise Linux ES (v. 3)

SRPMS:
openssl-0.9.7a-33.18.src.rpm
File outdated by:  RHSA-2010:0163
    MD5: 7931255997a1d848ce2a7005bc9e6b86
openssl096b-0.9.6b-16.43.src.rpm
File outdated by:  RHSA-2010:0173
    MD5: 3b6be5625565bb346d52fb6a5623d63d
 
IA-32:
openssl-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: 6e0aad070d322d10c2d52791b9da9e33
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-devel-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: c628920238cff2b40b2c0858c4c47e00
openssl-perl-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: e1b3654ce80d8bcfb16fa6e29aa8c2b2
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
 
IA-64:
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-0.9.7a-33.18.ia64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 14901c99907185c4bbe8b2c0e276427b
openssl-devel-0.9.7a-33.18.ia64.rpm
File outdated by:  RHSA-2010:0163
    MD5: fcff948e8fc9685baff13d1d3801f202
openssl-perl-0.9.7a-33.18.ia64.rpm
File outdated by:  RHSA-2010:0163
    MD5: acaecb0841c5a7de3231cc15d5b68c21
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
openssl096b-0.9.6b-16.43.ia64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 56ac07e7577ccfbc08c1c0cda848e454
 
x86_64:
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 2794780bd750f59abf8b1a1a5ca7cc81
openssl-devel-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 12b7d2a240d5fd33f1814e2600aa30ae
openssl-perl-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 473ef89363b88b74d80fa1dd285fe7b9
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
openssl096b-0.9.6b-16.43.x86_64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 02d32812e2b348d7ffacf91a5c91775d
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
openssl-0.9.7a-43.11.src.rpm
File outdated by:  RHSA-2012:0086
    MD5: 513f9d07d6d6bc0ba7c6207937e54623
openssl096b-0.9.6b-22.43.src.rpm
File outdated by:  RHSA-2010:0173
    MD5: 5cb693bd507574dfd15ce06cedd87ddf
 
IA-32:
openssl-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: bb2a2bdf02f86cabb4cffdcfb7a549ab
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-devel-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: d0be647345ea50df30f8e2e63472b33c
openssl-perl-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: 56b168515a7de33a58e8010319cf9632
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
 
IA-64:
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-0.9.7a-43.11.ia64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 56eed948b83ed31a4f1de958e2955a61
openssl-devel-0.9.7a-43.11.ia64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 5248cae306e916fcf5abbfdd1d7298dc
openssl-perl-0.9.7a-43.11.ia64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 2531e237bc267743e361138e88db7a04
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
openssl096b-0.9.6b-22.43.ia64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 79be24a710203ffc87cab0bc3e231d63
 
x86_64:
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 555fc3ef8e135ab8f637e50975536cc2
openssl-devel-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 9fc39618899eead5b14d7ae433b84e2f
openssl-perl-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: bc291c59edffb66c6dd4a7db50929c8f
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
openssl096b-0.9.6b-22.43.x86_64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 368e81fde3b0d7d99eedb0576e24d579
 
Red Hat Enterprise Linux WS (v. 2.1)

SRPMS:
openssl-0.9.6b-43.src.rpm
File outdated by:  RHSA-2009:0004
    MD5: 9c4e224d4d81207af0b89e368f18dc4e
 
IA-32:
openssl-0.9.6b-43.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: 9546f50bcc58bdc77dbc553fddc15cae
openssl-0.9.6b-43.i686.rpm
File outdated by:  RHSA-2009:0004
    MD5: 44e1a5814a8585403858e7b0efd459e9
openssl-devel-0.9.6b-43.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: c327293080363dc5b634c37412b97e03
openssl-perl-0.9.6b-43.i386.rpm
File outdated by:  RHSA-2009:0004
    MD5: c8321b57d63a633b18f778ed9c124058
 
Red Hat Enterprise Linux WS (v. 3)

SRPMS:
openssl-0.9.7a-33.18.src.rpm
File outdated by:  RHSA-2010:0163
    MD5: 7931255997a1d848ce2a7005bc9e6b86
openssl096b-0.9.6b-16.43.src.rpm
File outdated by:  RHSA-2010:0173
    MD5: 3b6be5625565bb346d52fb6a5623d63d
 
IA-32:
openssl-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: 6e0aad070d322d10c2d52791b9da9e33
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-devel-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: c628920238cff2b40b2c0858c4c47e00
openssl-perl-0.9.7a-33.18.i386.rpm
File outdated by:  RHSA-2010:0163
    MD5: e1b3654ce80d8bcfb16fa6e29aa8c2b2
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
 
IA-64:
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-0.9.7a-33.18.ia64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 14901c99907185c4bbe8b2c0e276427b
openssl-devel-0.9.7a-33.18.ia64.rpm
File outdated by:  RHSA-2010:0163
    MD5: fcff948e8fc9685baff13d1d3801f202
openssl-perl-0.9.7a-33.18.ia64.rpm
File outdated by:  RHSA-2010:0163
    MD5: acaecb0841c5a7de3231cc15d5b68c21
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
openssl096b-0.9.6b-16.43.ia64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 56ac07e7577ccfbc08c1c0cda848e454
 
x86_64:
openssl-0.9.7a-33.18.i686.rpm
File outdated by:  RHSA-2010:0163
    MD5: ac5c706e41e44d719eed51f218b14713
openssl-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 2794780bd750f59abf8b1a1a5ca7cc81
openssl-devel-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 12b7d2a240d5fd33f1814e2600aa30ae
openssl-perl-0.9.7a-33.18.x86_64.rpm
File outdated by:  RHSA-2010:0163
    MD5: 473ef89363b88b74d80fa1dd285fe7b9
openssl096b-0.9.6b-16.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 625a6a769cc075e8cc7826f3924a397a
openssl096b-0.9.6b-16.43.x86_64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 02d32812e2b348d7ffacf91a5c91775d
 
Red Hat Enterprise Linux WS (v. 4)

SRPMS:
openssl-0.9.7a-43.11.src.rpm
File outdated by:  RHSA-2012:0086
    MD5: 513f9d07d6d6bc0ba7c6207937e54623
openssl096b-0.9.6b-22.43.src.rpm
File outdated by:  RHSA-2010:0173
    MD5: 5cb693bd507574dfd15ce06cedd87ddf
 
IA-32:
openssl-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: bb2a2bdf02f86cabb4cffdcfb7a549ab
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-devel-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: d0be647345ea50df30f8e2e63472b33c
openssl-perl-0.9.7a-43.11.i386.rpm
File outdated by:  RHSA-2012:0086
    MD5: 56b168515a7de33a58e8010319cf9632
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
 
IA-64:
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-0.9.7a-43.11.ia64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 56eed948b83ed31a4f1de958e2955a61
openssl-devel-0.9.7a-43.11.ia64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 5248cae306e916fcf5abbfdd1d7298dc
openssl-perl-0.9.7a-43.11.ia64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 2531e237bc267743e361138e88db7a04
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
openssl096b-0.9.6b-22.43.ia64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 79be24a710203ffc87cab0bc3e231d63
 
x86_64:
openssl-0.9.7a-43.11.i686.rpm
File outdated by:  RHSA-2012:0086
    MD5: 68435a368c5e4a16bea0e9490071e4e6
openssl-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 555fc3ef8e135ab8f637e50975536cc2
openssl-devel-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: 9fc39618899eead5b14d7ae433b84e2f
openssl-perl-0.9.7a-43.11.x86_64.rpm
File outdated by:  RHSA-2012:0086
    MD5: bc291c59edffb66c6dd4a7db50929c8f
openssl096b-0.9.6b-22.43.i386.rpm
File outdated by:  RHSA-2010:0173
    MD5: 9602f5a7a448051483fae33fdc37588e
openssl096b-0.9.6b-22.43.x86_64.rpm
File outdated by:  RHSA-2010:0173
    MD5: 368e81fde3b0d7d99eedb0576e24d579
 
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor

SRPMS:
openssl-0.9.6b-43.src.rpm
File outdated by:  RHSA-2009:0004
    MD5: 9c4e224d4d81207af0b89e368f18dc4e
openssl095a-0.9.5a-29.src.rpm
File outdated by:  RHSA-2009:0004
    MD5: 9783a1849141d3f7239ca7380ca65c80
openssl096-0.9.6-29.src.rpm
File outdated by:  RHSA-2009:0004
    MD5: 84ba18ccae05d9cd15196b7097428720
 
IA-64:
openssl-0.9.6b-43.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: 42d7c7305a7c57bb9f20ae9784680589
openssl-devel-0.9.6b-43.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: 691d93e0296e97596610419eb6d3ad4a
openssl-perl-0.9.6b-43.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: d5850aa9c7d3671610dde63bebff2642
openssl095a-0.9.5a-29.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: 14f5eb8463137d39b9c80ebf5140f34a
openssl096-0.9.6-29.ia64.rpm
File outdated by:  RHSA-2009:0004
    MD5: bf9b84dce7408a3cb6b06d736f03a4af
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

170740 - Custom ca-bundle.crt overwritten on upgrade
175811 - Custom ca-bundle.crt overwritten on upgrade
205180 - CVE-2006-4339 RSA signature forgery


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/