Release Info

Advisory: CLSA-2025:1760023353

OS: Oracle Linux 7 ELS

Public date: 2025-10-09 15:22:41.550118

Project: openssl

Version: 1.0.2k-26.el7_9.tuxcare.els6

Errata link: https://errata.tuxcare.com/els_os/oraclelinux7els/CLSA-2025-1760023353.html

Changelog

- CVE-2019-1547: fix side-channel vulnerability in ECDSA when using explicit EC parameters without cofactor - CVE-2025-9230: fix incorrect check of unwrapped key size

Update

Update command: yum update openssl*

Packages list

openssl-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm openssl-devel-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm openssl-devel-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm openssl-libs-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm openssl-libs-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm openssl-perl-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm openssl-static-1.0.2k-26.el7_9.tuxcare.els6.i686.rpm openssl-static-1.0.2k-26.el7_9.tuxcare.els6.x86_64.rpm

CVEs

CVE-2025-9230
CVE-2019-1547