ELA-498-1 openssl security update

buffer overrun might result in DoS

2021-10-23
Packageopenssl
Version1.0.1t-1+deb8u16
Related CVEs CVE-2021-3712


An issue has been found in openssl, a Secure Sockets Layer toolkit. Ingo Schwarze reported a buffer overrun flaw when processing ASN.1 strings, which can result in denial of service.



For Debian 8 jessie, these problems have been fixed in version 1.0.1t-1+deb8u16.

We recommend that you upgrade your openssl packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.