QID 159616

Date Published: 2022-02-23

QID 159616: Oracle Enterprise Linux Security Update for openssl (ELSA-2022-9023)

Oracle Enterprise Linux has released a security update for openssl to fix the vulnerabilities.

Affected Product:
Oracle Linux 7

This vulnerability could be exploited to gain partial access to sensitive information. Additionally this vulnerability can also be used to cause a limited denial of service in the form of interruptions in resource availability.

  • CVSS V3 rated as High - 7.4 severity.
  • CVSS V2 rated as Medium - 5.8 severity.
  • Solution
    To resolve this issue, upgrade to the latest packages which contain a patch. Refer to Oracle Enterprise Linux advisory below for updates and patch information:

    ELSA-2022-9023.
    Vendor References

    CVEs related to QID 159616

    Software Advisories
    Advisory ID Software Component Link
    ELSA-2022-9023 Oracle Linux URL Logo linux.oracle.com/errata/ELSA-2022-9023.html