СloudLinux Blog

CloudLinux OS 6 ELS: OPENSSL PACKAGE WITH THE FIX FOR THE CVE-2021-23840 GRADUAL ROLLOUT

Written by Inessa Atmachian | Jun 17, 2021 5:20:21 PM

A new updated OpenSSL package with the fix for the CVE-2021-23840 within CloudLinux OS 6 ELS has been scheduled for gradual rollout from our production repository.

Rollout slot: 1
Rolled out to: 1%
ETA for 100% rollout: June 29

CHANGELOG

openssl-1.0.1e-61.el6.cloudlinux.els

  • CVE-2021-23840: Fix integer overflow in CipherUpdate()

UPDATE COMMAND

yum update openssl*

IMMEDIATE UPDATE (VIA BYPASS)

yum update openssl* --enablerepo=cloudlinux-rollout-1-bypass