SuSE: 2014:0759-2: critical: OpenSSL
Summary
OpenSSL was updated to fix the following security vulnerabilities:
* SSL/TLS MITM vulnerability. (CVE-2014-0224)
* DTLS recursion flaw. (CVE-2014-0221)
* Anonymous ECDH denial of service. (CVE-2014-3470)
Further information can be found at
References
#880891
Cross- CVE-2014-0221 CVE-2014-0224 CVE-2014-3470
Affected Products:
SUSE Linux Enterprise Server 10 SP4 LTSS
SUSE Linux Enterprise Server 10 SP3 LTSS
https://www.suse.com/security/cve/CVE-2014-0221.html
https://www.suse.com/security/cve/CVE-2014-0224.html
https://www.suse.com/security/cve/CVE-2014-3470.html
https://bugzilla.novell.com/880891
https://scc.suse.com:443/patches/
https://scc.suse.com:443/patches/