[CLSA-2026:1775146316] alt-openssl11: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-04-02 16:12:00 UTC
Description:
- CVE-2023-5678: fix excessive time in DH check/generation with large Q parameter by adding bounds checks in DH_check_pub_key and DH_generate_key - CVE-2024-0727: fix PKCS12 decoding NULL pointer dereference by adding NULL checks where ContentInfo data can be NULL
Updated packages:
  • alt-openssl11-1.1.1w-3.2.el10.x86_64.rpm
    sha:519edff62104ac730cbde6c06f9296d99652662f1c6cce25c1adba119aaf48c1
  • alt-openssl11-devel-1.1.1w-3.2.el10.x86_64.rpm
    sha:4d3f2f4d326297e750c26b9de61c4902f8c2b57d817aece977a211bc6e9eb1f0
  • alt-openssl11-libs-1.1.1w-3.2.el10.x86_64.rpm
    sha:998f57cb1141321606d298db9aa1f15f6232e3deb7e979d4cc530e820c8d2a35
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.