OpenSSL Releases Security Updates
Scheduled updates of OpenSSL products
Summary
Scheduled updates of OpenSSL products
Affected platforms
The following platforms are known to be affected:
Threat details
Introduction
OpenSSL has released a security update to address a vulnerability that could cause a denial-of-service against a process that parses externally supplied certificates. An attacker could exploit this vulnerability to take control of an affected system.
Threat updates
| Date | Update |
|---|---|
| 5 Apr 2022 |
Vendors releasing security advisories
Many vendors are releasing security updates for products affected by this vulnerability. Some vendor articles can be found in the “References” section of CVE-2022-0778. Organisations should consult with suppliers to find out which of their products are vulnerable, especially in the area of networking appliances, devices, and firewalls. |
Remediation advice
Affected organisations are encouraged to review the OpenSSL security advisory and apply any relevant updates.
Definitive source of threat updates
CVE Vulnerabilities
Last edited: 5 April 2022 12:21 pm