CNNVD-ID编号 | CNNVD-201909-450 | CVE编号 | CVE-2019-1563 |
发布时间 | 2019-09-10 | 更新时间 | 2021-01-21 |
漏洞类型 | 其他 | 漏洞来源 | Ubuntu,Red Hat,openssl.org,Slackware Security Team |
危险等级 | 低危 | 威胁类型 | 远程 |
厂商 | N/A |
OpenSSL是OpenSSL团队的一个开源的能够实现安全套接层(SSLv2/v3)和安全传输层(TLSv1)协议的通用加密库。该产品支持多种加密算法,包括对称密码、哈希算法、安全散列算法等。
OpenSSL 1.0.2版本至1.0.2s版本、1.1.0版本至1.1.0k版本和1.1.1版本至1.1.1c版本中存在安全漏洞。攻击者可通过发送大量加密的消息利用该漏洞恢复CMS/PKCS7传输的加密密钥或解密使用公共的RSA密钥加密的消息。
目前厂商已发布升级了OpenSSL 安全漏洞的补丁,OpenSSL 安全漏洞的补丁获取链接:
https://www.openssl.org/news/secadv/20190910.txt
来源:CONFIRM
来源:MISC
链接:https://packetstormsecurity.com/files/154467/Slackware-Security-Advisory-openssl-Updates.html
来源:MLIST
链接:https://lists.debian.org/debian-lts-announce/2019/09/msg00026.html
来源:MISC
链接:https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
来源:UBUNTU
来源:N/A
来源:CONFIRM
来源:BUGTRAQ
来源:BUGTRAQ
来源:DEBIAN
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00072.html
来源:git.openssl.org
来源:git.openssl.org
来源:MISC
来源:FEDORA
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00054.html
来源:DEBIAN
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00016.html
来源:MISC
来源:FEDORA
来源:GENTOO
来源:UBUNTU
来源:SUSE
链接:http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00012.html
来源:CONFIRM
来源:UBUNTU
来源:CONFIRM
来源:BUGTRAQ
来源:CONFIRM
链接:https://support.f5.com/csp/article/K97324400?utm_source=f5support&utm_medium=RSS
来源:MISC
来源:www.suse.com
链接:https://www.suse.com/support/update/announcement/2020/suse-su-20200099-1.html
来源:www.ibm.com
来源:www.ibm.com
来源:www.ibm.com
来源:www.hitachi.co.jp
链接:https://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/ hitachi-sec-2019-127/index.html
来源:www.hitachi.co.jp
链接:https://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/ hitachi-sec-2019-112/index.html
来源:www.suse.com
链接:https://www.suse.com/support/update/announcement/2019/suse-su-201914171-1.html
来源:www.ibm.com
来源:www.ibm.com
来源:www.ibm.com
来源:www.suse.com
链接:https://www.suse.com/support/update/announcement/2019/suse-su-201914174-1.html
来源:www.suse.com
链接:https://www.suse.com/support/update/announcement/2019/suse-su-20192397-1.html
来源:www.suse.com
链接:https://www.suse.com/support/update/announcement/2019/suse-su-20192413-1.html
来源:www.suse.com
链接:https://www.suse.com/support/update/announcement/2019/suse-su-20192410-1.html
来源:www.intel.com
链接:https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00311.html
来源:www.ibm.com
来源:www.ibm.com
来源:www.ibm.com
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/154467/Slackware-Security-Advisory-openssl-Updates.html
来源:www.ibm.com
来源:www.ibm.com
来源:www.auscert.org.au
来源:www.ibm.com
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.ibm.com
来源:www.ibm.com
来源:www.ibm.com
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/157421/Red-Hat-Security-Advisory-2020-1840-01.html
来源:www.auscert.org.au
来源:www.ibm.com
来源:www.ibm.com
来源:www.auscert.org.au
来源:www.ibm.com
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/158377/Ubuntu-Security-Notice-USN-4376-2.html
来源:www.ibm.com
来源:www.ibm.com
来源:www.ibm.com
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/157856/Ubuntu-Security-Notice-USN-4376-1.html
来源:www.ibm.com
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.ibm.com
来源:www.auscert.org.au
来源:www.ibm.com
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/159195/Ubuntu-Security-Notice-USN-4504-1.html
来源:www.ibm.com
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/157128/Red-Hat-Security-Advisory-2020-1337-01.html
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-openssl-publicly-disclosed-vulnerability-2/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/158637/Red-Hat-Security-Advisory-2020-3194-01.html
来源:www.ibm.com
来源:www.nsfocus.net
来源:www.ibm.com
来源:www.ibm.com
来源:www.auscert.org.au
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/154455/OpenSSL-Toolkit-1.1.1d.html
来源:www.ibm.com
来源:www.ibm.com
来源:www.ibm.com
来源:www.auscert.org.au
来源:www.auscert.org.au
来源:www.ibm.com
来源:nvd.nist.gov
暂无