RHSA-2022:5326: Low: compat-openssl10 security update
OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library. compat-openssl10 provides the legacy 1.0 version of OpenSSL for use with older binaries.Security Fix(es): compat-openssl10: Infinite loop in BNmodsqrt() reachable when parsing certificates (CVE-2022-0778) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:5326?
RHSA-2022:5326 has been classified as a critical vulnerability.
How do I fix RHSA-2022:5326?
To resolve RHSA-2022:5326, update your system to install the patched version 1.0.2o-4.el8_6 of compat-openssl10.
Which systems are affected by RHSA-2022:5326?
RHSA-2022:5326 affects systems using compat-openssl10 version below 1.0.2o-4.el8_6.
What is the impact of RHSA-2022:5326?
The impact of RHSA-2022:5326 includes potential exposure to vulnerabilities that could lead to unauthorized access or data leakage.
Is there a workaround for RHSA-2022:5326?
There is no official workaround for RHSA-2022:5326; updating to the latest version is the recommended approach.