vulnerability

SUSE: CVE-2023-29409: SUSE Linux Security Advisory

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Aug 2, 2023
Added
Aug 4, 2023
Modified
Jan 28, 2025

Description

Extremely large RSA keys in certificate chains can cause a client/server to expend significant CPU time verifying signatures. With fix, the size of RSA keys transmitted during handshakes is restricted to

Solution(s)

suse-upgrade-go1-19suse-upgrade-go1-19-docsuse-upgrade-go1-19-opensslsuse-upgrade-go1-19-openssl-docsuse-upgrade-go1-19-openssl-racesuse-upgrade-go1-19-racesuse-upgrade-go1-20suse-upgrade-go1-20-docsuse-upgrade-go1-20-opensslsuse-upgrade-go1-20-openssl-docsuse-upgrade-go1-20-openssl-racesuse-upgrade-go1-20-racesuse-upgrade-golang-github-lusitaniae-apache_exportersuse-upgrade-golang-github-prometheus-alertmanagersuse-upgrade-golang-github-prometheus-node_exportersuse-upgrade-golang-github-qubitproducts-exporter_exportersuse-upgrade-grafanasuse-upgrade-prometheus-blackbox_exportersuse-upgrade-prometheus-postgres_exportersuse-upgrade-spacecmdsuse-upgrade-supportutils-plugin-susemanager-client
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.