QID 159615

Date Published: 2022-02-23

QID 159615: Oracle Enterprise Linux Security Update for openssl (ELSA-2022-9017)

Oracle Enterprise Linux has released a security update for openssl to fix the vulnerabilities.

Affected Product:
Oracle Linux 7

This vulnerability could be exploited to gain partial access to sensitive information. Additionally this vulnerability can also be used to cause a limited denial of service in the form of interruptions in resource availability.

  • CVSS V3 rated as High - 7.4 severity.
  • CVSS V2 rated as Medium - 5.8 severity.
  • Solution
    To resolve this issue, upgrade to the latest packages which contain a patch. Refer to Oracle Enterprise Linux advisory below for updates and patch information:

    ELSA-2022-9017.
    Vendor References

    CVEs related to QID 159615

    Software Advisories
    Advisory ID Software Component Link
    ELSA-2022-9017 Oracle Linux URL Logo linux.oracle.com/errata/ELSA-2022-9017.html