[Pkg-openssl-devel] Issue with version 3.0.11-1~deb12u2.

Sebastian Andrzej Siewior sebastian at breakpoint.cc
Tue Feb 20 20:16:04 GMT 2024


On 2024-02-20 11:57:54 [+0000], david.rostam at orange.com wrote:
> 
> I have a question regarding the stable version of openssl V3 which has some vulnerability according to tenable
> 
> OpenSSL 3.0.0 < 3.0.12 Vulnerability | Tenable®<https://www.tenable.com/plugins/nessus/183891>
> 
> Debian -- Détails du paquet source openssl dans bookworm<https://packages.debian.org/source/stable/openssl>
> 
> I would like to know when you will put the new version of Openssl in the stable release ?

This appears to be CVE-2023-5363 and according to
	https://security-tracker.debian.org/tracker/CVE-2023-5363

it has been fixed as of 3.0.11-1~deb12u2.

Sebastian



More information about the Pkg-openssl-devel mailing list