compat-openssl097g-64bit: ---------------------------------------------------------------------- File: compat-openssl097g-64bit-0.9.7g-35.ppc.rpm Patchrpm: compat-openssl097g-64bit-0.9.7g-35.ppc.patch.rpm Version: 0.9.7g-35 Size: 613 kB Patchsize: 614 kB Date: Thu 28 Feb 2008 19:41:1 CET Source: compat-openssl097g-0.9.7g-35.src.rpm Security: Yes ---------------------------------------------------------------------- Description: This update of openssl fixes a off-by-one buffer overflow in function SSL_get_shared_ciphers(). This vulnerability potentially allows remote code execution; depending on memory layout of the process. (CVE-2007-5135) We released updates for openssl already, but an update for the compat 0.9.7g openssl libraries was missing and is provided with this patch.