First published: Wed Jun 03 2015(Updated: )
A regression was found in the openssl packages shipped with Red Hat Enterprise Linux 6 and 7, leading to a denial-of-service when openssl is used with multi-threaded applications. More details about this issue is available at: <a class="bz_bug_link bz_secure " title="" href="show_bug.cgi?id=1226204">https://bugzilla.redhat.com/show_bug.cgi?id=1226204</a>
Affected Software | Affected Version | How to fix |
---|---|---|
OpenSSL | <=7 | |
OpenSSL | <=6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-1227574 has a high severity as it leads to a denial-of-service in multi-threaded applications using openssl.
To fix REDHAT-BUG-1227574, update the openssl package to the latest version provided by Red Hat.
OpenSSL versions 6 and 7 shipped with Red Hat Enterprise Linux are affected by REDHAT-BUG-1227574.
Multi-threaded applications using openssl are impacted by the vulnerabilities described in REDHAT-BUG-1227574.
There is no official workaround for REDHAT-BUG-1227574, and the recommended action is to apply the available updates.