mirror of
				https://github.com/xcat2/xcat-core.git
				synced 2025-10-31 03:12:30 +00:00 
			
		
		
		
	Add security notification for 2018-06-12 OpenSSL reported issue
This commit is contained in:
		
							
								
								
									
										21
									
								
								docs/source/security/2018/20180612_openssl.rst
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										21
									
								
								docs/source/security/2018/20180612_openssl.rst
									
									
									
									
									
										Normal file
									
								
							| @@ -0,0 +1,21 @@ | ||||
| 2018-06-12 - OpenSSL Vulnerabilities | ||||
| ==================================== | ||||
|  | ||||
| *Jun 12, 2018*, OpenSSL announced the following security advisories: https://www.openssl.org/news/secadv/20180612.txt | ||||
|  | ||||
|  | ||||
| Advisory CVEs | ||||
| ------------- | ||||
|  | ||||
| * CVE-2018-0732 - **Client DoS due to large DH parameter** (Severity: Low) | ||||
|  | ||||
| Please see the security bulletin above for patch, upgrade, or suggested work around information. | ||||
|  | ||||
| Action | ||||
| ------ | ||||
|  | ||||
| xCAT uses OpenSSL for client-server communication but **does not** ship it.   | ||||
|  | ||||
| It is highly recommended to keep your OpenSSL levels up-to-date with the indicated versions in the security bulletins to prevent any potential security threats. Obtain the updated software packages from your Operating system distribution channels.  | ||||
|  | ||||
|  | ||||
							
								
								
									
										7
									
								
								docs/source/security/2018/index.rst
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										7
									
								
								docs/source/security/2018/index.rst
									
									
									
									
									
										Normal file
									
								
							| @@ -0,0 +1,7 @@ | ||||
| 2018 Notices  | ||||
| ============ | ||||
|  | ||||
| .. toctree:: | ||||
|    :maxdepth: 1 | ||||
|  | ||||
|    20180612_openssl.rst  | ||||
| @@ -4,6 +4,7 @@ Security Notices | ||||
| .. toctree:: | ||||
|    :maxdepth: 2 | ||||
|  | ||||
|    2018/index.rst | ||||
|    2017/index.rst | ||||
|    2016/index.rst | ||||
|    2015/index.rst | ||||
|   | ||||
		Reference in New Issue
	
	Block a user