USN-6986-1: OpenSSL vulnerability
3 September 2024
OpenSSL could be made to crash or expose sensitive information if it received a specially crafted certificate.
Releases
Packages
- openssl - Secure Socket Layer (SSL) cryptographic library and tools
Details
David Benjamin discovered that OpenSSL incorrectly handled certain
X.509 certificates. An attacker could possible use this issue to
cause a denial of service or expose sensitive information.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 24.04
Ubuntu 22.04
After a standard system update you need to reboot your computer to make
all the necessary changes.