compat-openssl097g: ---------------------------------------------------------------------- File: compat-openssl097g-0.9.7g-13.9.ppc.rpm Patchrpm: compat-openssl097g-0.9.7g-13.9.ppc.patch.rpm Version: 0.9.7g-13.9 Size: 662 kB Patchsize: 551 kB Date: Thu 28 Feb 2008 20:4:47 CET Source: compat-openssl097g-0.9.7g-13.9.src.rpm Security: Yes ---------------------------------------------------------------------- Description: This update of openssl fixes a off-by-one buffer overflow in function SSL_get_shared_ciphers(). This vulnerability potentially allows remote code execution; depending on memory layout of the process. (CVE-2007-5135) We released updates for openssl already, but an update for the compat 0.9.7g openssl libraries was missing and is provided with this patch.