compat-openssl097g: ---------------------------------------------------------------------- File: compat-openssl097g-0.9.7g-13.9.i586.rpm Patchrpm: compat-openssl097g-0.9.7g-13.9.i586.patch.rpm Version: 0.9.7g-13.9 Size: 629 kB Patchsize: 518 kB Date: Thu 28 Feb 2008 19:44:37 CET Source: compat-openssl097g-0.9.7g-13.9.src.rpm Security: Yes ---------------------------------------------------------------------- Description: This update of openssl fixes a off-by-one buffer overflow in function SSL_get_shared_ciphers(). This vulnerability potentially allows remote code execution; depending on memory layout of the process. (CVE-2007-5135) We released updates for openssl already, but an update for the compat 0.9.7g openssl libraries was missing and is provided with this patch.