• openssl_3.0.11-1~deb12u2 ()
  • 3.0.14-1~deb12u2
  • 2024-10-29 14:45:17
  • CVE CVE-2023-6129, CVSSv2 Score: 6.5
  • Description:

    A security flaw in OpenSSL's POLY1305 MAC implementation for PowerPC CPU platforms using vector instructions can corrupt application states, potentially causing crashes and denial of service if exploited.

  • CVE CVE-2023-6237, CVSSv2 Score: 5.9
  • Description:

    A vulnerability in OpenSSL's EVP_PKEY_public_check() function for RSA public keys can lead to denial of service if it processes a key with a prime modulus from an untrusted source, causing prolonged computation