| openssl-0.9.8e-40.el5_11.x86_64
              [1.7 MiB] | 
            
              Changelog
              by Tomas Mraz (2016-05-17):
              - fix CVE-2016-2108 - memory corruption in ASN.1 encoder 
             | 
        
            | openssl-0.9.8e-40.el5_11.i686
              [1.7 MiB] | 
            
              Changelog
              by Tomas Mraz (2016-05-17):
              - fix CVE-2016-2108 - memory corruption in ASN.1 encoder 
             | 
        
            | openssl-0.9.8e-39.el5_11.i686
              [1.7 MiB] | 
            
              Changelog
              by Tomas Mraz (2016-02-25):
              - fix CVE-2016-0797 - heap corruption in BN_hex2bn and BN_dec2bn 
             | 
        
            | openssl-0.9.8e-39.el5_11.x86_64
              [1.7 MiB] | 
            
              Changelog
              by Tomas Mraz (2016-02-25):
              - fix CVE-2016-0797 - heap corruption in BN_hex2bn and BN_dec2bn 
             | 
        
            | openssl-0.9.8e-37.el5_11.x86_64
              [1.7 MiB] | 
            
              Changelog
              by Tomas Mraz (2015-12-04):
              - fix CVE-2015-3195 - X509_ATTRIBUTE memory leak 
             | 
        
            | openssl-0.9.8e-37.el5_11.i686
              [1.7 MiB] | 
            
              Changelog
              by Tomas Mraz (2015-12-04):
              - fix CVE-2015-3195 - X509_ATTRIBUTE memory leak 
             | 
        
            | openssl-0.9.8e-36.el5_11.x86_64
              [1.7 MiB] | 
            
              Changelog
              by Tomas Mraz (2015-06-25):
              - also change the default DH parameters in s_server to 1024 bits 
             | 
        
            | openssl-0.9.8e-36.el5_11.i686
              [1.7 MiB] | 
            
              Changelog
              by Tomas Mraz (2015-06-25):
              - also change the default DH parameters in s_server to 1024 bits 
             | 
        
            | openssl-0.9.8e-33.el5_11.i686
              [1.5 MiB] | 
            
              Changelog
              by Tomas Mraz (2015-04-02):
              - fix CVE-2014-8275 (without introduction of CVE-2015-0286) - various
  certificate fingerprint issues
- fix CVE-2015-0204 - remove support for RSA ephemeral keys for non-export
  ciphersuites and on server
- fix CVE-2015-0287 - ASN.1 structure reuse decoding memory corruption
- fix CVE-2015-0288 - X509_to_X509_REQ NULL pointer dereference
- fix CVE-2015-0289 - NULL dereference decoding invalid PKCS#7 data
- fix CVE-2015-0292 - integer underflow in base64 decoder
- fix CVE-2015-0293 - triggerable assert in SSLv2 server 
             | 
        
            | openssl-0.9.8e-33.el5_11.x86_64
              [1.5 MiB] | 
            
              Changelog
              by Tomas Mraz (2015-04-02):
              - fix CVE-2014-8275 (without introduction of CVE-2015-0286) - various
  certificate fingerprint issues
- fix CVE-2015-0204 - remove support for RSA ephemeral keys for non-export
  ciphersuites and on server
- fix CVE-2015-0287 - ASN.1 structure reuse decoding memory corruption
- fix CVE-2015-0288 - X509_to_X509_REQ NULL pointer dereference
- fix CVE-2015-0289 - NULL dereference decoding invalid PKCS#7 data
- fix CVE-2015-0292 - integer underflow in base64 decoder
- fix CVE-2015-0293 - triggerable assert in SSLv2 server 
             | 
        
            | openssl-0.9.8e-31.el5_11.x86_64
              [1.5 MiB] | 
            
              Changelog
              by Tomas Mraz (2014-10-15):
              - add support for fallback SCSV to partially mitigate CVE-2014-3566
  (padding attack on SSL3) 
             | 
        
            | openssl-0.9.8e-31.el5_11.i686
              [1.5 MiB] | 
            
              Changelog
              by Tomas Mraz (2014-10-15):
              - add support for fallback SCSV to partially mitigate CVE-2014-3566
  (padding attack on SSL3) 
             |