elsa-2024-12232

oracle_linux
Description

[7.4p1-23.0.3_fips] - Change Epoch from 1 to 10 - Enable fips KDF POST [Orabug: 32461750] - Disable diffie-hellman-group-exchange-sha256 KEX FIPS method [Orabug: 32461739] [7.4p1-23.0.3] - add KEX_INITIAL flag [Orabug: 36160445] - implement 'strict key exchange' [CVE-2023-48795][Orabug: 36160445]

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cves": [
    "CVE-2023-48795"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "MODERATE"
  },
  "description": "[7.4p1-23.0.3_fips]\n- Change Epoch from 1 to 10\n- Enable fips KDF POST [Orabug: 32461750]\n- Disable diffie-hellman-group-exchange-sha256 KEX FIPS method [Orabug: 32461739]\n\n[7.4p1-23.0.3]\n- add KEX_INITIAL flag [Orabug: 36160445]\n- implement 'strict key exchange' [CVE-2023-48795][Orabug: 36160445]",
  "id": "ELSA-2024-12232",
  "ovalId": "oval:com.oracle.elsa:def:202412232",
  "source": "oracle_linux",
  "title": "ELSA-2024-12232: openssh security update (MODERATE)",
  "url": "https://linux.oracle.com/errata/ELSA-2024-12232.html"
}
View JSON API Download JSON