<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="248f4f500ff1abd84df2b2e973885818"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="786">
  <id>dbg111-libopenssl-devel</id>
  <title>openssl security update</title>
  <release>openSUSE 11.1</release>
  <issued date="1239811525"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=489641" id="489641" title="bug number 489641" type="bugzilla"/>
  </references>
  <description>This update of openssl fixes the following problems:
- CVE-2009-0590: ASN1_STRING_print_ex() function allows
  remote denial of service
- CVE-2009-0591: CMS_verify() function allows signatures to
  look valid
- CVE-2009-0789: denial of service due to malformed ASN.1
  structures
</description>
  <pkglist>
    <collection>
        <package name="openssl-debuginfo" arch="i586" version="0.9.8h" release="28.8.1">
          <filename>openssl-debuginfo-0.9.8h-28.8.1.i586.rpm</filename>
        </package>
        <package name="openssl-debuginfo" arch="ppc" version="0.9.8h" release="28.8.1">
          <filename>openssl-debuginfo-0.9.8h-28.8.1.ppc.rpm</filename>
        </package>
        <package name="openssl-debuginfo" arch="x86_64" version="0.9.8h" release="28.8.1">
          <filename>openssl-debuginfo-0.9.8h-28.8.1.x86_64.rpm</filename>
        </package>
        <package name="openssl-debugsource" arch="i586" version="0.9.8h" release="28.8.1">
          <filename>openssl-debugsource-0.9.8h-28.8.1.i586.rpm</filename>
        </package>
        <package name="openssl-debugsource" arch="ppc" version="0.9.8h" release="28.8.1">
          <filename>openssl-debugsource-0.9.8h-28.8.1.ppc.rpm</filename>
        </package>
        <package name="openssl-debugsource" arch="x86_64" version="0.9.8h" release="28.8.1">
          <filename>openssl-debugsource-0.9.8h-28.8.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
