compat-openssl097g: ---------------------------------------------------------------------- File: compat-openssl097g-0.9.7g-35.ppc.rpm Patchrpm: compat-openssl097g-0.9.7g-35.ppc.patch.rpm Version: 0.9.7g-35 Size: 664 kB Patchsize: 552 kB Date: Thu 28 Feb 2008 19:54:10 CET Source: compat-openssl097g-0.9.7g-35.src.rpm Security: Yes ---------------------------------------------------------------------- Description: This update of openssl fixes a off-by-one buffer overflow in function SSL_get_shared_ciphers(). This vulnerability potentially allows remote code execution; depending on memory layout of the process. (CVE-2007-5135) We released updates for openssl already, but an update for the compat 0.9.7g openssl libraries was missing and is provided with this patch.