File _patchinfo of Package patchinfo.import4669
<patchinfo incident="libopenssl-devel" version="4669"> <issue tracker="bnc" id="693027" /> <issue tracker="CVE" id="CVE-2011-1945" /> <category>security</category> <rating>low</rating> <summary>openssl: security update</summary> <description>This update of openssl fixes a timing attack. This attack can be used to obtain the private key of a TLS server whenever ECDSA signatures are used. CVE-2011-1945: CVSS v2 Base Score: 4.3 (important) (AV:N/AC:M/Au:N/C:P/I:N/A:N): Cryptographic Issues (CWE-310) </description> <packager>adrianSuSE</packager> </patchinfo>