Back to bug 1312219

Who When What Removed Added
Huzaifa S. Sidhpurwala 2016-02-26 06:44:51 UTC CC security-response-team
Red Hat Bugzilla 2016-02-26 06:44:51 UTC Doc Type --- Bug Fix
Huzaifa S. Sidhpurwala 2016-02-26 06:44:57 UTC Blocks 1301847
Huzaifa S. Sidhpurwala 2016-02-29 07:22:47 UTC Whiteboard impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-6/openssl=affected,rhel-7/openssl=affected,fedora-all/openssl=affected impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=new,rhel-5/openssl097a=new,rhel-6/openssl=new,rhel-6/openssl098e=new,rhel-7/openssl=new,rhel-7/openssl098e=new,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new
Huzaifa S. Sidhpurwala 2016-02-29 07:23:14 UTC Whiteboard impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=new,rhel-5/openssl097a=new,rhel-6/openssl=new,rhel-6/openssl098e=new,rhel-7/openssl=new,rhel-7/openssl098e=new,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new
Huzaifa S. Sidhpurwala 2016-02-29 08:40:50 UTC Doc Text Several flaws were found in the way BIO_*printf functions were internally implemented in OpenSSL. Applications which pass large amounts of untrusted data through these functions, could crash or potentially execute code with the permission of the user running such an application.
Mark J. Cox 2016-02-29 11:56:42 UTC CC mjc
Martin Prpič 2016-02-29 12:01:22 UTC Whiteboard impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new impact=low,public=20160227,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new
Martin Prpič 2016-02-29 12:01:25 UTC Summary EMBARGOED CVE-2016-0799 OpenSSL: Fix memory issues in BIO_*printf functions CVE-2016-0799 OpenSSL: Fix memory issues in BIO_*printf functions
Martin Prpič 2016-02-29 12:01:27 UTC Group security, qe_staff
Martin Prpič 2016-02-29 12:01:58 UTC Depends On 1312856
Martin Prpič 2016-02-29 12:02:05 UTC Depends On 1312857
Martin Prpič 2016-02-29 12:02:16 UTC Depends On 1312858
Martin Prpič 2016-02-29 12:14:20 UTC Whiteboard impact=low,public=20160227,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new
Slawomir Czarko 2016-03-01 08:47:46 UTC CC slawomir
Norman Sardella 2016-03-01 15:30:12 UTC CC sardella
Tomas Hoger 2016-03-01 22:56:48 UTC Fixed In Version openssl 1.0.1s, openssl 1.0.2g
Yasuhiro Ozone 2016-03-03 00:18:55 UTC CC yozone
Huzaifa S. Sidhpurwala 2016-03-14 05:06:24 UTC Blocks 1314768
Huzaifa S. Sidhpurwala 2016-03-14 05:07:25 UTC Blocks 1301847
Summer Long 2016-03-15 22:39:01 UTC CC slong
Doc Text Several flaws were found in the way BIO_*printf functions were internally implemented in OpenSSL. Applications which pass large amounts of untrusted data through these functions, could crash or potentially execute code with the permission of the user running such an application. Several flaws were found in the way BIO_*printf functions were internally implemented in OpenSSL. Applications which passed large amounts of untrusted data through these functions could crash or potentially execute code with the permissions of the user running such an application.
Muhammad Azhar Shaikh 2016-03-17 13:35:32 UTC CC mdshaikh
Huzaifa S. Sidhpurwala 2016-03-25 05:39:13 UTC CC ykawada
Flags needinfo?(security-response-team)
Flags needinfo?(security-response-team)
Huzaifa S. Sidhpurwala 2016-03-29 09:07:00 UTC Depends On 1321841
Huzaifa S. Sidhpurwala 2016-03-29 09:07:06 UTC Depends On 1321842
Birol Bilgin 2016-04-25 12:50:28 UTC CC bbilgin
Tomas Hoger 2016-04-28 20:27:28 UTC Depends On 1331569
Tomas Hoger 2016-04-29 20:54:41 UTC Depends On 1331865
Tomas Hoger 2016-04-29 20:54:50 UTC Depends On 1331866
Martin Prpič 2016-05-03 14:50:23 UTC Doc Text Several flaws were found in the way BIO_*printf functions were internally implemented in OpenSSL. Applications which passed large amounts of untrusted data through these functions could crash or potentially execute code with the permissions of the user running such an application. Several flaws were found in the way BIO_*printf functions were implemented in OpenSSL. Applications which passed large amounts of untrusted data through these functions could crash or potentially execute code with the permissions of the user running such an application.
Huzaifa S. Sidhpurwala 2016-05-11 03:17:23 UTC Whiteboard impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new
Timothy Walsh 2016-05-17 11:15:05 UTC CC jkeilson
Whiteboard impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,jbcs-1/openssl=affected,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new
Timothy Walsh 2016-05-17 11:15:11 UTC CC cdewolf, csutherl, jawilson, jclere, mbabacek, twalsh
Timothy Walsh 2016-05-17 11:30:32 UTC Link ID JBoss Issue Tracker JCSP-92
Timothy Walsh 2016-05-17 11:37:05 UTC Link ID JBoss Issue Tracker JCSP-92
Timothy Walsh 2016-05-24 04:52:45 UTC Whiteboard impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,jbcs-1/openssl=affected,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=new,jbews-2/openssl=wontfix,jbews-3/openssl=affected,rhev-m-3/rhev-hypervisor=new
Martin Prpič 2016-08-15 08:28:34 UTC Whiteboard impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=new,jbews-2/openssl=wontfix,jbews-3/openssl=affected,rhev-m-3/rhev-hypervisor=new impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=new,jbews-2/openssl=wontfix,jbews-3/openssl=affected,rhev-m-3/rhev-hypervisor=new,rhel-6.7.z/openssl=affected
Martin Prpič 2016-08-15 08:32:12 UTC Depends On 1366994
Timothy Walsh 2017-01-19 06:55:25 UTC Blocks 1395463
Timothy Walsh 2017-04-03 07:19:30 UTC CC bmcclain, dblechte, dougsland, eedri, erik-fedora, gklein, gzaronik, ktietz, lgao, lsurette, marcandre.lureau, mgoldboi, michal.skrivanek, mturk, myarboro, pstehlik, redhat-bugzilla, rjones, sherold, srevivo, weli, ycui, ydary, ykaul
Whiteboard impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=new,jbews-2/openssl=wontfix,jbews-3/openssl=affected,rhev-m-3/rhev-hypervisor=new,rhel-6.7.z/openssl=affected impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=wontfix,jbews-2/openssl=wontfix,jbews-3/openssl=defer,rhev-m-3/rhev-hypervisor=new,rhel-6.7.z/openssl=affected
Scott Herold 2017-09-12 15:35:33 UTC CC sherold
Šimon Lukašík 2017-11-14 13:31:21 UTC CC slukasik
PnT Account Manager 2018-08-27 21:30:20 UTC CC mdshaikh
PnT Account Manager 2018-11-05 22:43:05 UTC CC ylavi
PnT Account Manager 2018-12-03 22:31:21 UTC CC bbilgin
Gil Klein 2019-04-14 12:36:03 UTC CC gklein
Product Security DevOps Team 2019-06-08 02:48:53 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2019-06-08 02:48:53 UTC
Product Security DevOps Team 2019-09-29 13:45:06 UTC Whiteboard impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=wontfix,jbews-2/openssl=wontfix,jbews-3/openssl=defer,rhev-m-3/rhev-hypervisor=new,rhel-6.7.z/openssl=affected
Stanislav Ochotnicky 2020-12-15 08:51:02 UTC See Also https://issues.redhat.com/browse/JBCS-94

Back to bug 1312219