[CLSA-2026:1775146507] alt-openssl11: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-04-02 16:15:11 UTC
Description:
- CVE-2023-5678: fix excessive time in DH check/generation with large Q parameter by adding bounds checks in DH_check_pub_key and DH_generate_key - CVE-2024-0727: fix PKCS12 decoding NULL pointer dereference by adding NULL checks where ContentInfo data can be NULL
Updated packages:
  • alt-openssl11-1.1.1w-3.2.el7.x86_64.rpm
    sha:ac12898ae3e9127c8a07ae45b25ece782da8b60c4ff2cccb041c3493916d8a18
  • alt-openssl11-devel-1.1.1w-3.2.el7.x86_64.rpm
    sha:1f03be491573718430872734c6975a1f5d51aaafa7acbcd02b8cdf77090c22e5
  • alt-openssl11-libs-1.1.1w-3.2.el7.x86_64.rpm
    sha:a315194c62999d3f70219eaf280cad6b9019b0c7f12319221e461184ab96e957
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.