[ubuntu/bionic-security] openssl1.0 1.0.2n-1ubuntu5.11 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Tue Feb 7 17:22:08 UTC 2023


openssl1.0 (1.0.2n-1ubuntu5.11) bionic-security; urgency=medium

  * SECURITY UPDATE: Use-after-free following BIO_new_NDEF
    - debian/patches/CVE-2023-0215.patch: fix a UAF resulting from a bug in
      BIO_new_NDEF in crypto/asn1/bio_ndef.c.
    - CVE-2023-0215
  * SECURITY UPDATE: X.400 address type confusion in X.509 GeneralName
    - debian/patches/CVE-2023-0286.patch: fix GENERAL_NAME_cmp for
      x400Address in crypto/x509/v3_genn.c, crypto/x509v3/x509v3.h.
    - CVE-2023-0286

Date: 2023-02-06 18:35:10.115180+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/openssl1.0/1.0.2n-1ubuntu5.11
-------------- next part --------------
Sorry, changesfile not available.


More information about the Bionic-changes mailing list