Details
ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate.Novell Bugzilla entry: 478019 No SUSE Security Announcements cross referenced.
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| Novell Linux Desktop 9 for x86 Novell Linux Desktop 9 for x86_64 Novell Linux POS 9 Open Enterprise Server SUSE CORE 9 for AMD64 and Intel EM64T SUSE CORE 9 for IBM POWER SUSE CORE 9 for IBM S/390 31bit SUSE CORE 9 for IBM zSeries 64bit SUSE CORE 9 for Itanium Processor Family SUSE CORE 9 for x86 |
| core9. s390 sles9-nld. x86 core9. x86-64 sles9-nlpos. x86 core9. ia64 core9. ppc sles9-nld. x86-64 sles9-oes. x86 core9. x86 core9. s390x YOU Patch Nr: 12452 |
| openSUSE 10.3 openSUSE 11.0 |
| ZYPP Patch Nr: 6339 SAT Patch Nr: 1070 |
| openSUSE 11.0 |
| ZYPP Patch Nr: 6339 SAT Patch Nr: 1070 |
| openSUSE 11.1 |
| ZYPP Patch Nr: 6339 SAT Patch Nr: 1070 |
| openSUSE 11.1 |
| ZYPP Patch Nr: 6339 SAT Patch Nr: 1070 |
| SLES 11 DEBUGINFO |
| sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. ppc sle11-debuginfo. ppc sle11-debuginfo. x86 sle11-debuginfo. ppc sle11-debuginfo. s390x sle11-debuginfo. ia64 sle11-debuginfo. s390x sle11-debuginfo. x86-64 sle11-debuginfo. ia64 sle11-debuginfo. x86 sle11-debuginfo. s390x sle11-debuginfo. ia64 SAT Patch Nr: 1073 |
| SLE 11 |
| sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. ppc sle11-debuginfo. ppc sle11-debuginfo. x86 sle11-debuginfo. ppc sle11-debuginfo. s390x sle11-debuginfo. ia64 sle11-debuginfo. s390x sle11-debuginfo. x86-64 sle11-debuginfo. ia64 sle11-debuginfo. x86 sle11-debuginfo. s390x sle11-debuginfo. ia64 SAT Patch Nr: 1073 |
| SLE 11 |
| sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. ppc sle11-debuginfo. ppc sle11-debuginfo. x86 sle11-debuginfo. ppc sle11-debuginfo. s390x sle11-debuginfo. ia64 sle11-debuginfo. s390x sle11-debuginfo. x86-64 sle11-debuginfo. ia64 sle11-debuginfo. x86 sle11-debuginfo. s390x sle11-debuginfo. ia64 SAT Patch Nr: 1073 |
| SLED 11 |
| sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. ppc sle11-debuginfo. ppc sle11-debuginfo. x86 sle11-debuginfo. ppc sle11-debuginfo. s390x sle11-debuginfo. ia64 sle11-debuginfo. s390x sle11-debuginfo. x86-64 sle11-debuginfo. ia64 sle11-debuginfo. x86 sle11-debuginfo. s390x sle11-debuginfo. ia64 SAT Patch Nr: 1073 |
| SLES 11 |
| sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. ppc sle11-debuginfo. ppc sle11-debuginfo. x86 sle11-debuginfo. ppc sle11-debuginfo. s390x sle11-debuginfo. ia64 sle11-debuginfo. s390x sle11-debuginfo. x86-64 sle11-debuginfo. ia64 sle11-debuginfo. x86 sle11-debuginfo. s390x sle11-debuginfo. ia64 SAT Patch Nr: 1073 |
| SUSE Linux Enterprise Desktop 10 SP2 for AMD64 and Intel EM64T SUSE Linux Enterprise Desktop 10 SP2 for x86 |
| sles10-sp2-sdk. x86-64 sled10-sp2. x86 sles10-sp2-sdk. s390x sles10-sp2-sdk. x86 sles10-sp2-sdk. ppc sles10-sp2-sdk. ia64 sled10-sp2. x86-64 ZYPP Patch Nr: 6338 |
| SLE SDK 10 SP2 for IBM iSeries and IBM pSeries SLE SDK 10 SP2 for IBM zSeries SLE SDK 10 SP2 for IPF SLE SDK 10 SP2 for X86-64 SLE SDK 10 SP2 for x86 |
| sles10-sp2-sdk. x86-64 sled10-sp2. x86 sles10-sp2-sdk. s390x sles10-sp2-sdk. x86 sles10-sp2-sdk. ppc sles10-sp2-sdk. ia64 sled10-sp2. x86-64 ZYPP Patch Nr: 6338 |