Upstream information
Description
Double free vulnerability in OpenSSL 0.9.8 before 0.9.8s, when X509_V_FLAG_POLICY_CHECK is enabled, allows remote attackers to have an unspecified impact by triggering failure of a policy check.NVD CVSS v2 Base Score: 9.3 (AV:N/AC:M/Au:N/C:C/I:C/A:C)
Novell/SUSE information
Novell Bugzilla entry: 739719, 758060 SUSE Security Advisories:- SUSE-SU-2012:0084-1, published Mon, 16 Jan 2012 17:08:28 +0100 (CET)
- SUSE-SU-2012:0674-1, published Wed, 30 May 2012 23:08:17 +0200 (CEST)
