SUSE-SU-2025:03523-1
Dashboard / Vulnerabilities / SUSE-SU-2025:03523-1
SUSE-SU-2025:03523-1
Summary: Security update for openssl-1_1-livepatches
Details: This update for openssl-1_1-livepatches fixes the following issues: - Add livepatch for CVE-2025-9230 (bsc#1250410). - Use strong externalization for ssl3_setup_read_buffer and ssl3_release_read_buffer - Use strong externalization for ossl_statem_fatal. - Add livepatch for CVE-2024-4741 (bsc#1225552). - Drop trigger rules for very old libpulp-tools package. - Fix building process to include functions of older livepatches correctly (bsc#1224458)'.
References: https://www.suse.com/support/update/announcement/2025/suse-su-202503523-1/, https://bugzilla.suse.com/1224458, https://bugzilla.suse.com/1225552, https://bugzilla.suse.com/1250410, https://www.suse.com/security/cve/CVE-2024-4741, https://www.suse.com/security/cve/CVE-2025-9230
Affected packages
Package
Name: openssl-1_1-livepatches
Purl: pkg:rpm/suse/openssl-1_1-livepatches&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP7
Affected ranges
Type: ECOSYSTEM
Events:
