FlawAtlas
Search the atlas
SUSE-SU-2025:0613-1 Not scored

Security update for openssl-1_1

This update for openssl-1_1 fixes the following issues: - CVE-2024-13176: Fixed timing side-channel in the ECDSA signature computation (bsc#1236136). Other bugfixes: - Non approved PBKDF parameters wrongly resulting as approved (bsc#1236771).

Exploit probability Not scored
Published February 21, 2025
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Module for Basesystem 15 SP6 openssl-1_1
SUSE:Linux Enterprise Module for Development Tools 15 SP6 openssl-1_1
SUSE:Linux Enterprise Module for Legacy 15 SP6 openssl-1_1
openSUSE:Leap 15.6 openssl-1_1

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2025:0613-1

This update for openssl-1_1 fixes the following issues: - CVE-2024-13176: Fixed timing side-channel in the ECDSA signature computation (bsc#1236136). Other bugfixes: - Non approved PBKDF parameters wrongly resulting as approved (bsc#1236771).

View original source

05 / REFERENCES

Further evidence