CVE-2022-3602 and CVE-2022-3786 Critical OpenSSL 3.0.x security vulnerabilities

Subject: CVE-2022-3602 and CVE-2022-3786 Critical OpenSSL 3.0.x security vulnerabilities


Good day from Singapore,


I refer to the following posts.


[1] OpenSSL Gives Heads Up to Critical Vulnerability Disclosure, Check Point Alerts Organizations to Prepare Now

Link: https://blog.checkpoint.com/2022/10/30/openssl-gives-heads-up-to-critical-vulnerability-disclosure-check-point-alerts-organizations-to-prepare-now/


[2] 2022 OpenSSL vulnerability - CVE-2022-3602 - Spooky SSL

Link: https://github.com/NCSC-NL/OpenSSL-2022


[3] VMware Response to CVE-2022-3602 and CVE-2022-3786: vulnerabilities in OpenSSL 3.0.x

Link: https://blogs.vmware.com/security/2022/11/vmware-response-to-cve-2022-3602-and-cve-2022-3786-vulnerabilities-in-openssl-3-0-x.html


I have 2 internet-facing CentOS 7.9 Linux servers in Europe.


Are the patches available already? How do I patch OpenSSL on my CentOS 7.9 Linux servers?


Thank you.


Regards,


Mr. Turritopsis Dohrnii Teo En Ming

Targeted Individual in Singapore

Blogs:

https://tdtemcerts.blogspot.com

https://tdtemcerts.wordpress.com




REFERENCES

===========


[1] https://mta.openssl.org/pipermail/openssl-users/2022-November/015598.html


[2] https://www.mail-archive.com/openssl-users@openssl.org/msg91285.html


[3] https://marc.info/?l=openssl-users&m=166737139015247&w=2


[4] https://markmail.org/search/?q=teo%20en%20ming#query:teo%20en%20ming%20order%3Adate-backward+page:1+mid:3gqp6r3ilntmhmyj+state:results

Comments

Popular posts from this blog

How the Singapore Government cheated my family of a HDB flat (Draft 22 Aug 2023)

[DRAFT 26 SEP 2022] HDB refuses to reduce monthly rental fees of my rental flat despite many appeals