Secunia Logo
Netsikker nu! 2008
 
SUSE update for openssl
Secunia Advisory: SA22172
Release Date: 2006-09-29
Popularity: 6,187 views

Critical:
Highly critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:SUSE Linux 10
SUSE Linux 10.1
SUSE Linux 9.2
SUSE Linux 9.3
SuSE Linux Desktop 1.x
SuSE Linux Enterprise Server 8
SUSE Linux Enterprise Server 9
SuSE Linux Openexchange Server 4.x
SuSE Linux Standard Server 8
UnitedLinux 1.0

Software:Novell Open Enterprise Server 1.x

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2006-2937
CVE-2006-2940
CVE-2006-3738
CVE-2006-4343


Description:
SUSE has issued an update for openssl. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system.

For more information:
SA22130

Solution:
Apply updated packages.

-- x86 Platform --

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/openssl-0.9.8a-18.10.i586.rpm
f5d7a08e60a52b7816cae88e9def7762
ftp://ftp.suse.com/pub/suse/update/10...6/openssl-devel-0.9.8a-18.10.i586.rpm
a583491fc985dff2f3f405776fa8554a

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...rpm/i586/openssl-0.9.7g-2.10.i586.rpm
13d07a7a3b81fdef9ba68b0f0670f14c
ftp://ftp.suse.com/pub/suse/i386/upda...86/openssl-devel-0.9.7g-2.10.i586.rpm
1198085023a60d99ce90207b5498db45

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/openssl-0.9.7e-3.6.i586.rpm
51606d0da43bc5c61562bb8d4679ca8b
ftp://ftp.suse.com/pub/suse/i386/upda...586/openssl-devel-0.9.7e-3.6.i586.rpm
c6a9122fec64b5a82f433c56b602f2b5

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/upda...rpm/i586/openssl-0.9.7d-25.6.i586.rpm
96b59a2af5663ae1f780626da0b5756a
ftp://ftp.suse.com/pub/suse/i386/upda...86/openssl-devel-0.9.7d-25.6.i586.rpm
e33a86104b85919dda444b4a9901a10b

-- Power PC Platform --

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/openssl-0.9.8a-18.10.ppc.rpm
8310266cd6da01baaf964ed8cac841c0
ftp://ftp.suse.com/pub/suse/update/10...pc/openssl-devel-0.9.8a-18.10.ppc.rpm
8ff4b94e685be05d00599ecc6cc939e7

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/openssl-0.9.7g-2.10.ppc.rpm
0678839057c3170dc84fab28b3dd202f
ftp://ftp.suse.com/pub/suse/i386/upda...ppc/openssl-devel-0.9.7g-2.10.ppc.rpm
e86965c19538073b15c2131a04c20260

-- x86-64 Platform --

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...86_64/openssl-0.9.8a-18.10.x86_64.rpm
28dc138c088450b753fdd419c487023e
ftp://ftp.suse.com/pub/suse/update/10...openssl-32bit-0.9.8a-18.10.x86_64.rpm
651d62cab3c31d0bc3e18b91a4ba9ac3
ftp://ftp.suse.com/pub/suse/update/10...openssl-devel-0.9.8a-18.10.x86_64.rpm
2a3e98aca1aa613a58f09b39f12e84a4
ftp://ftp.suse.com/pub/suse/update/10...l-devel-32bit-0.9.8a-18.10.x86_64.rpm
81bb446763424df4c18eac760e0ed80e

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...x86_64/openssl-0.9.7g-2.10.x86_64.rpm
5a612bd7a6756e2926a3ef59a72fd197
ftp://ftp.suse.com/pub/suse/i386/upda.../openssl-32bit-0.9.7g-2.10.x86_64.rpm
840e98707317d9cef51837a486541be7
ftp://ftp.suse.com/pub/suse/i386/upda.../openssl-devel-0.9.7g-2.10.x86_64.rpm
46b1a289d445c5304001aba4417e73a9
ftp://ftp.suse.com/pub/suse/i386/upda...sl-devel-32bit-0.9.7g-2.10.x86_64.rpm
a4e2a59c151ff22ed683e115da8fce48

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda.../x86_64/openssl-0.9.7e-3.6.x86_64.rpm
3bf35d8e03848aa87a662b93a8c14fe1
ftp://ftp.suse.com/pub/suse/i386/upda...6_64/openssl-32bit-9.3-7.3.x86_64.rpm
35ce818f05f655397c4b1b13ba3a93b3
ftp://ftp.suse.com/pub/suse/i386/upda...4/openssl-devel-0.9.7e-3.6.x86_64.rpm
dcfbcadb626de068028ac546f07ba685
ftp://ftp.suse.com/pub/suse/i386/upda...penssl-devel-32bit-9.3-7.3.x86_64.rpm
da50170edc9a2596954c2453030494d6

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/upda...x86_64/openssl-0.9.7d-25.6.x86_64.rpm
32ec53e71eefb0ebe893034ac2e552ac
ftp://ftp.suse.com/pub/suse/i386/upda...ssl-32bit-9.2-200609270647.x86_64.rpm
0b7706ce568832eb1b2e86bdd7cbe51d
ftp://ftp.suse.com/pub/suse/i386/upda.../openssl-devel-0.9.7d-25.6.x86_64.rpm
c8671a7a77dcc5a08e2c19f9a6ff056c
ftp://ftp.suse.com/pub/suse/i386/upda...vel-32bit-9.2-200609270647.x86_64.rpm
2bebb0fea9579ca5e659fca63c7beac0

-- Sources --

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/openssl-0.9.8a-18.10.src.rpm
2613501ca4ea03f1a79548014b13ff67

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/src/openssl-0.9.7g-2.10.src.rpm
c5b1ff892ff74af82ddbceaf757c6fb3

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/src/openssl-0.9.7e-3.6.src.rpm
f62e34422fc77343fd15a1790e6ef8d8

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/src/openssl-0.9.7d-25.6.src.rpm
8c451560ea55a3bec1b01f0b36943048

Original Advisory:
http://lists.suse.com/archive/suse-security-announce/2006-Sep/0013.html

Other References:
SA22130:
http://secunia.com/advisories/22130/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. My PHP Indexer "d" File Disclosure Vulnerability // 39 views
2. Ayco Okul "linkid" SQL Injection Vulnerability // 38 views
3. Joomla Ignite Gallery Component "gallery" SQL Injection // 36 views
4. Real Estates Classifieds "cat" SQL Injection Vulnerability // 36 views
5. WinFTP "PASV" Denial of Service Vulnerability // 35 views
6. NewLife Blogger "nlb3" SQL Injection Vulnerability // 31 views
7. Joomla OwnBiblio Component "catid" SQL Injection // 29 views
8. Joomla Mad4Joomla Mailforms Component "jid" SQL Injection // 29 views
9. ScriptsEz Mini Hosting Panel "dir" File Disclosure // 26 views
10. MunzurSoft Wep Portal W3 "kat" SQL Injection Vulnerability // 25 views