VDB
BDU%3A2023-04960
BDU%3A2023-04960
PUBLISHED
CVSS 5 MEDIUM
Уязвимость функций DH_check(), DH_check_ex(), EVP_PKEY_param_check() библиотеки OpenSSL, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», Novell Inc., Red Hat Inc., Сообщество свободного программного обеспечения, Canonical Ltd., ООО «Ред Софт», АО «ИВК», АО «НТЦ ИТ РОСА», OpenSSL Software Foundation, АО "НППКТ", Project Harbor, Node.js Foundation, Camunda Services GmbH | Astra Linux Special Edition (запись в едином реестре российских программ №369), OpenSUSE Leap, Red Hat Enterprise Linux, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Software Development Kit, Debian GNU/Linux, openSUSE Tumbleweed, Ubuntu, SUSE CaaS Platform, SUSE Linux Enterprise High Performance Computing, РЕД ОС (запись в едином реестре российских программ №3751), SUSE Manager Proxy, SUSE Manager Server, SUSE Linux Enterprise Micro, Альт 8 СП (запись в едином реестре российских программ №4305), Suse Linux Enterprise Desktop, SUSE Manager Retail Branch Server, SUSE Enterprise Storage, SUSE Linux Enterprise Module for Basesystem, openSUSE Leap Micro, SUSE Linux Enterprise Module for Legacy Software, ROSA Virtualization (запись в едином реестре российских программ №5091), Red Hat JBoss Core Services, РОСА ХРОМ (запись в едином реестре российских программ №1607), OpenSSL, Red Hat Satellite, АЛЬТ СП 10, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), Red Hat JBoss Web Server, SUSE Liberty Linux, harbor, Node.js, Camunda Modeler |
Timeline
- Aug 29, 2023 CVE Published
- Mar 19, 2025 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Security Advisory
- Mar 19, 2026 Security Advisory
- Mar 19, 2026 Security Advisory
- Mar 19, 2026 Security Advisory
References
- http://seclists.org/fulldisclosure/2023/Jul/43 url
- http://www.openwall.com/lists/oss-security/2023/07/31/1 url
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=6a1eb62c29db6cb5eec707f9338aee00f44e26f5 url
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=869ad69aadd985c7b8ca6f4e5dd0eb274c9f3644 url
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=9002fd07327a91f35ba6c1307e71fa6fd4409b7f url
- https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff;h=91ddeba0f2269b017dc06c46c993a788974b1aa5 url
- https://lists.debian.org/debian-lts-announce/2023/08/msg00019.html url
- https://security.netapp.com/advisory/ntap-20230818-0014/ url
- https://www.openssl.org/news/secadv/20230731.txt url
- https://vuldb.com/ru/?id.235807 url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://поддержка.нппкт.рф/bin/view/ОСнова/Обновления/2.9/ url
- https://cve.basealt.ru/ url
- https://security-tracker.debian.org/tracker/CVE-2023-3817 url
- https://access.redhat.com/security/cve/CVE-2023-3817#cve-cvss-v3 url
- https://www.suse.com/security/cve/CVE-2023-3817.html url
- https://ubuntu.com/security/notices/USN-6709-1 url
- https://ubuntu.com/security/notices/USN-6435-2 url
- https://ubuntu.com/security/notices/USN-6450-1 url
- https://ubuntu.com/security/notices/USN-6435-1 url
…and 8 more