RHSA-2020:4514: Low: openssl security, bug fix, and enhancement update
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library.The following packages have been upgraded to a later upstream version: openssl (1.1.1g). (BZ#1817593)Security Fix(es): openssl: Integer overflow in RSAZ modular exponentiation on x8664 (CVE-2019-1551) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Additional Changes:For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.3 Release Notes linked from the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:4514?
The severity of RHSA-2020:4514 is classified as moderate.
How do I fix RHSA-2020:4514?
You can fix RHSA-2020:4514 by upgrading to openssl version 1.1.1g-11.el8.
What are the affected packages in RHSA-2020:4514?
The affected packages in RHSA-2020:4514 include openssl, openssl-debuginfo, openssl-devel, and openssl-libs.
Is RHSA-2020:4514 applicable to multiple architectures?
Yes, RHSA-2020:4514 is applicable to several architectures including x86_64 and ppc64le.
What does RHSA-2020:4514 address in OpenSSL?
RHSA-2020:4514 addresses security vulnerabilities and enhances the security of OpenSSL.