Back to bug 1310811
| Who | When | What | Removed | Added |
|---|---|---|---|---|
| Adam Mariš | 2016-02-22 17:20:13 UTC | CC | security-response-team | |
| Red Hat Bugzilla | 2016-02-22 17:20:13 UTC | Doc Type | --- | Bug Fix |
| Adam Mariš | 2016-02-22 17:25:28 UTC | Blocks | 1301847 | |
| Tomas Hoger | 2016-02-25 20:24:27 UTC | Whiteboard | impact=moderate,public=no,reported=20160222,source=upstream,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,rhel-5/openssl=new,rhel-5/openssl097a=new,rhel-6/openssl=new,rhel-6/openssl098e=new,rhel-7/openssl=new,rhel-7/openssl098e=new,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,eap-6/openssl=new,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected | impact=moderate,public=20160301,reported=20160222,source=upstream,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,rhel-5/openssl=new,rhel-5/openssl097a=new,rhel-6/openssl=new,rhel-6/openssl098e=new,rhel-7/openssl=new,rhel-7/openssl098e=new,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,eap-6/openssl=new,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected |
| Huzaifa S. Sidhpurwala | 2016-02-29 07:19:39 UTC | Whiteboard | impact=moderate,public=20160301,reported=20160222,source=upstream,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,rhel-5/openssl=new,rhel-5/openssl097a=new,rhel-6/openssl=new,rhel-6/openssl098e=new,rhel-7/openssl=new,rhel-7/openssl098e=new,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,eap-6/openssl=new,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected | impact=moderate,public=20160301,reported=20160222,source=upstream,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,rhel-5/openssl=notaffected,rhel-5/openssl097a=wontfix,rhel-6/openssl=notaffected,rhel-6/openssl098e=wontfix,rhel-7/openssl=notaffected,rhel-7/openssl098e=wontfix,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,eap-6/openssl=new,fedora-all/openssl=notaffected,fedora-all/mingw-openssl=new,epel-5/openssl101e=notaffected |
| Martin Prpič | 2016-02-29 14:43:54 UTC | Doc Text | It was discovered that the SSLv2 servers using OpenSSL accepted SSLv2 connection handshakes that indicated non-zero clear key length for non-export cipher suites. An attacker could use this flaw to decrypt recorded SSLv2 sessions with the server by using it as a decryption oracle. | |
| Huzaifa S. Sidhpurwala | 2016-03-01 14:14:10 UTC | Group | security, qe_staff | |
| Summary | EMBARGOED CVE-2016-0703 openssl: Divide-and-conquer session key recovery in SSLv2 | CVE-2016-0703 openssl: Divide-and-conquer session key recovery in SSLv2 | ||
| Norman Sardella | 2016-03-01 15:31:29 UTC | CC | sardella | |
| Tomas Hoger | 2016-03-01 22:56:16 UTC | Fixed In Version | openssl 1.0.2a, openssl 1.0.1m | openssl 1.0.2a, openssl 1.0.1m, openssl 1.0.0r, openssl 0.9.8zf |
| Tomas Hoger | 2016-03-02 11:18:54 UTC | Whiteboard | impact=moderate,public=20160301,reported=20160222,source=upstream,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,rhel-5/openssl=notaffected,rhel-5/openssl097a=wontfix,rhel-6/openssl=notaffected,rhel-6/openssl098e=wontfix,rhel-7/openssl=notaffected,rhel-7/openssl098e=wontfix,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,eap-6/openssl=new,fedora-all/openssl=notaffected,fedora-all/mingw-openssl=new,epel-5/openssl101e=notaffected | impact=moderate,public=20160301,reported=20160222,source=upstream,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,rhel-5/openssl=affected,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,eap-6/openssl=new,fedora-all/openssl=notaffected,fedora-all/mingw-openssl=new,epel-5/openssl101e=notaffected |
| Slawomir Czarko | 2016-03-03 08:20:23 UTC | CC | slawomir | |
| Huzaifa S. Sidhpurwala | 2016-03-09 04:27:31 UTC | Whiteboard | impact=moderate,public=20160301,reported=20160222,source=upstream,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,rhel-5/openssl=affected,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,eap-6/openssl=new,fedora-all/openssl=notaffected,fedora-all/mingw-openssl=new,epel-5/openssl101e=notaffected | impact=moderate,public=20160301,reported=20160222,source=upstream,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,rhel-5/openssl=affected,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,eap-6/openssl=new,fedora-all/openssl=notaffected,fedora-all/mingw-openssl=new,epel-5/openssl101e=notaffected |
| Harkanwal | 2016-06-13 06:23:39 UTC | CC | harkanwal.johar | |
| Harkanwal | 2016-09-09 06:01:20 UTC | Flags | needinfo? | |
| Harkanwal | 2016-09-09 06:14:37 UTC | Flags | needinfo? | |
| Product Security DevOps Team | 2019-09-29 13:44:17 UTC | Whiteboard | impact=moderate,public=20160301,reported=20160222,source=upstream,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,rhel-5/openssl=affected,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,eap-6/openssl=new,fedora-all/openssl=notaffected,fedora-all/mingw-openssl=new,epel-5/openssl101e=notaffected | |
| PnT Account Manager | 2019-11-05 01:06:43 UTC | CC | psakar | |
| PnT Account Manager | 2020-10-16 22:24:36 UTC | CC | pgier | |
| Red Hat Bugzilla | 2021-02-16 02:43:32 UTC | CC | dknox | |
| Red Hat Bugzilla | 2021-02-16 03:17:21 UTC | CC | tmraz | |
| Joshua Padman | 2021-10-21 00:50:45 UTC | Resolution | --- | ERRATA |
| Status | NEW | CLOSED | ||
| Last Closed | 2021-10-21 00:50:45 UTC |
Back to bug 1310811