File _patchinfo of Package patchinfo.28594

<patchinfo incident="28594">
  <issue tracker="cve" id="2023-0466"/>
  <issue tracker="cve" id="2023-0465"/>
  <issue tracker="bnc" id="1209873">VUL-1: CVE-2023-0466: openssl-3,openssl-1_0_0,openssl-1_1,openssl1,openssl: Certificate policy check not enabled</issue>
  <issue tracker="bnc" id="1209878">VUL-0: CVE-2023-0465: openssl-1_1,openssl1,openssl,openssl-1_0_0,openssl-3: Invalid certificate policies in leaf certificates are silently ignored</issue>
  <packager>ohollmann</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for openssl-1_1</summary>
  <description>This update for openssl-1_1 fixes the following issues:

- CVE-2023-0465: Fixed ignored invalid certificate policies in leaf certificates (bsc#1209878).
- CVE-2023-0466: Fixed disabled certificate policy check (bsc#1209873).
</description>
</patchinfo>
openSUSE Build Service is sponsored by