RHSA-2020:5422: Important: openssl security update
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library.<br>Security Fix(es):<br><li> openssl: EDIPARTYNAME NULL pointer de-reference (CVE-2020-1971)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:5422?
The severity of RHSA-2020:5422 is rated as important.
How do I fix RHSA-2020:5422?
To fix RHSA-2020:5422, upgrade the affected OpenSSL packages to version 1.1.1c-16.el8_2 or later.
What vulnerability does RHSA-2020:5422 address?
RHSA-2020:5422 addresses a null pointer dereference vulnerability in OpenSSL, identified as CVE-2020-1971.
Which versions of OpenSSL are affected by RHSA-2020:5422?
Affected OpenSSL versions by RHSA-2020:5422 include versions prior to 1.1.1c-16.el8_2.
Are there any workarounds for RHSA-2020:5422?
There are no specific workarounds recommended for RHSA-2020:5422; updating is the advised course of action.