[prev in list] [next in list] [prev in thread] [next in thread] 

List:       openbsd-announce
Subject:    OpenBSD Errata: June 14th, 2018 (libcrypto)
From:       Theo Buehler <tb () openbsd ! org>
Date:       2018-06-14 13:54:23
Message-ID: 20180614135422.GA4505 () theobuehler ! org
[Download RAW message or body]

Errata patches for libcrypto have been released for OpenBSD 6.3 and 6.2.

DSA and ECDSA signature generation can potentially leak secret information
to a timing side-channel attack.

Binary updates for the amd64, i386, and arm64 platforms are available via
the syspatch utility. Source code patches can be found on the respective
errata pages:

  https://www.openbsd.org/errata62.html
  https://www.openbsd.org/errata63.html

For users running 6.3, the syspatches will be delayed approximately two days.
Use the source code patch if you need the fix before then.

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic