Package(s): openssl
CVE #(s): CVE-2011-3207
Created: September 12, 2011
Updated: October 27, 2011
Description:
From the Red Hat bugzilla:
Under certain circumstances OpenSSL's internal certificate verification routines can incorrectly accept a CRL whose nextUpdate field is in the past.
Alerts:
Scientific Linux
SL-open-20111026
openssl
2011年10月26日
Red Hat
RHSA-2011:1409-01
openssl
2011年10月26日
openSUSE
openSUSE-SU-2011:1144-1
openssl
2011年10月18日
Gentoo
201110-01
openssl
2011年10月09日
Mandriva
MDVSA-2011:137
openssl
2011年09月28日
Fedora
FEDORA-2011-12281
openssl
2011年09月08日