SciLinux: CVE-2007-3108 openssl SL4.x i386/x86_64
Summary
Date: Thu, 15 Nov 2007 14:11:17 -0600Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for openssl on SL4.x i386/x86_64Comments: To: scientific-linux-errata@fnal.govSynopsis: Moderate: openssl security and bug fix updateIssue date: 2007-11-15CVE Names: CVE-2007-3108 CVE-2007-5135A flaw was found in the SSL_get_shared_ciphers() utility function. Anattacker could send a list of ciphers to an application that used thisfunction and overrun a buffer by a single byte (CVE-2007-5135). Fewapplications make use of this vulnerable function and generally it is usedonly when applications are compiled for debugging.A number of possible side-channel attacks were discovered affectingOpenSSL. A local attacker could possibly obtain RSA private keys being usedon a system. In practice these attacks would be difficult to performoutside of a lab environment. This update contains backported patches tomitigate these issues. (CVE-2007-3108)As well, these updated packages fix the following bugs:* multithreaded applications could cause a segmentation fault or deadlockwhen calling the random number generator initialization (RAND_poll) in theOpenSSL library, for a large number of threads simultaneously.* in certain circumstances, if an application using the OpenSSL libraryreused the SSL session cache for multiple purposes (with various parametersof the SSL protocol), the session parameters could be mismatched.* a segmentation fault could occur when a corrupted pkcs12 file was beingloaded using the "openssl pkcs12 -in [pkcs12-file]" command, where[pkcs12-file] is the pkcs12 file.SL 4.x SRPMS:openssl-0.9.7a-43.17.el4_6.1.src.rpm i386:openssl-0.9.7a-43.17.1.i386.rpmopenssl-0.9.7a-43.17.1.i686.rpmopenssl-devel-0.9.7a-43.17.1.i386.rpmopenssl-perl-0.9.7a-43.17.1.i386.rpm x86_64:openssl-0.9.7a-43.17.1.i686.rpmopenssl-0.9.7a-43.17.1.x86_64.rpmopenssl-devel-0.9.7a-43.17.1.i386.rpmopenssl-devel-0.9.7a-43.17.1.x86_64.rpmopenssl-perl-0.9.7a-43.17.1.x86_64.rpm-Connie Sieh-Troy Dawson