Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2021:1131 - Security Advisory
Issued:
2021-04-07
Updated:
2021-04-07

RHSA-2021:1131 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: openssl security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openssl is now available for Red Hat Enterprise Linux 8.1 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, as well as a full-strength general-purpose cryptography library.

Security Fix(es):

  • openssl: NULL pointer dereference in signature_algorithms processing (CVE-2021-3449)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

For the update to take effect, all services linked to the OpenSSL library must be restarted, or the system rebooted.

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.1 x86_64
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.1 s390x
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.1 ppc64le
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.1 aarch64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1 x86_64

Fixes

  • BZ - 1941554 - CVE-2021-3449 openssl: NULL pointer dereference in signature_algorithms processing

CVEs

  • CVE-2021-3449

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.1

SRPM
openssl-1.1.1c-5.el8_1.src.rpm SHA-256: 85b2215faa95298139aba754e23081de23d222350a67c91efbdb0288073b8250
x86_64
openssl-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 06b31761e4b04f0a60992557f8a234d1a8cc016588b143ccf3fe1fcec546f037
openssl-debuginfo-1.1.1c-5.el8_1.i686.rpm SHA-256: 71f99d2c189e25ace94a60e41a564a404ad98fb328843354e611e8fc8ec91e34
openssl-debuginfo-1.1.1c-5.el8_1.x86_64.rpm SHA-256: f97436183381cff4db71952e58c22c12bf2c2316b1e37c86b1eeb0e75b9cab66
openssl-debugsource-1.1.1c-5.el8_1.i686.rpm SHA-256: 314681029a52eb90b6ef483b8dd372fc12a7fa5a320491656dd8e8aee833cd9f
openssl-debugsource-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 1ffc68c3aeee52197cce83343f0f8c5cf34ed077e8c94bd8a1bc8de827c2f12b
openssl-devel-1.1.1c-5.el8_1.i686.rpm SHA-256: 0abe15af9b14222be3911bbbb06782d07d78f38a5a9b202aa2eec73217e0f286
openssl-devel-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 66edf666b98d42ab5d011697567a4e13926ee893ef8d1c69f61da8684cae0edd
openssl-libs-1.1.1c-5.el8_1.i686.rpm SHA-256: 250ede59daeade145c2a195349550fec9931a95ad8128015f1a589b51efea061
openssl-libs-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 02ac4249962c75f58feaafae04b7385c9851a5ef51aebe82f9f89a903ab2029e
openssl-libs-debuginfo-1.1.1c-5.el8_1.i686.rpm SHA-256: 2e5cb8533b23e28921e29cd58bfd422d3bb8f047cfb95fda8588dae4e3f3f056
openssl-libs-debuginfo-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 21864f2b13e9848573bbe78d4d3a675413f68794d574351def682a0e1a11f39f
openssl-perl-1.1.1c-5.el8_1.x86_64.rpm SHA-256: c5580fbe4bee88063ec709a207896fa2fffb63ef2c6977f592bd1a633d2620b1

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.1

SRPM
openssl-1.1.1c-5.el8_1.src.rpm SHA-256: 85b2215faa95298139aba754e23081de23d222350a67c91efbdb0288073b8250
s390x
openssl-1.1.1c-5.el8_1.s390x.rpm SHA-256: 4d0c6c5f66f2fc01ac83940c517050ea1511d20c2d24ad569663ad32772f9bd0
openssl-debuginfo-1.1.1c-5.el8_1.s390x.rpm SHA-256: fb5f8d10376065dd05176539ecb734702da728a5f615ef87ccfd194358d56232
openssl-debugsource-1.1.1c-5.el8_1.s390x.rpm SHA-256: f44f4d3a8a83deabc8067ca4be3c602791087e81fd00fb3aee5d1cbe2d43829c
openssl-devel-1.1.1c-5.el8_1.s390x.rpm SHA-256: 29902e14f1407fa7943bf355fd6d5d79718abbd03cf5b5f539304dcfda59a4d2
openssl-libs-1.1.1c-5.el8_1.s390x.rpm SHA-256: a4bf97e6911794dd0ea48b8fa98b172db72f4e7d6f00b2b300c7a8c4676e454a
openssl-libs-debuginfo-1.1.1c-5.el8_1.s390x.rpm SHA-256: e2e39ddb68736c7e3acc6b9f84a05d1bd35231f5d4e9d36af3463bdc488ecc72
openssl-perl-1.1.1c-5.el8_1.s390x.rpm SHA-256: 7a3baf5cc0c4cd37bfc371b15f4f1a84cc4fedbd73a2931c2776d4f35a3e4e56

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.1

SRPM
openssl-1.1.1c-5.el8_1.src.rpm SHA-256: 85b2215faa95298139aba754e23081de23d222350a67c91efbdb0288073b8250
ppc64le
openssl-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: e6b5e4d211eea47d838ce9dcf95f53dc0cbfc9598fd5486577c6a1a905fa6782
openssl-debuginfo-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: 60b4a0af7e8b7fc27c718c1053268183108035fe0034e5865203a7970cc74af2
openssl-debugsource-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: e32c29d925dfc4800163da953be78021766967a40e19f03c3a264b7b9c6d7579
openssl-devel-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: 9ff9c903499ce2588653743096e1b9b692a914609587a8337527b99e34954995
openssl-libs-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: 75fce39dc77a1e9567672575b1bc826578939f24a3b3bf71cc291f62388b0151
openssl-libs-debuginfo-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: 95ad7795231df9aed28ca166464b7e5cb11e53d0274452c045343009906f1b30
openssl-perl-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: e833307319e233e9f1466bb1ce5c6e49609f4a6d0e00f2019bf4c3b52c4b09dd

Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.1

SRPM
openssl-1.1.1c-5.el8_1.src.rpm SHA-256: 85b2215faa95298139aba754e23081de23d222350a67c91efbdb0288073b8250
aarch64
openssl-1.1.1c-5.el8_1.aarch64.rpm SHA-256: 3a7e2db1f58e8fb86326c1a53d2198d90db108355cdff8bba55c508f2a935c6b
openssl-debuginfo-1.1.1c-5.el8_1.aarch64.rpm SHA-256: 4f406b6bb2423b3a08d5de95ffa5d46962f0224aa1b7954aaa913bc6f97ebf95
openssl-debugsource-1.1.1c-5.el8_1.aarch64.rpm SHA-256: 9d7d58504b95af20b84cd0d7b5753bb561420f0213f5e764b37dc6062fe236ab
openssl-devel-1.1.1c-5.el8_1.aarch64.rpm SHA-256: f4647847762e51e52be80ade1bb2631be1df75f3ef85ea936030af431c1dc255
openssl-libs-1.1.1c-5.el8_1.aarch64.rpm SHA-256: 48b396b356016c83d06e08478a0d942f92fcc75672b0b041c39a08a318c61ece
openssl-libs-debuginfo-1.1.1c-5.el8_1.aarch64.rpm SHA-256: a8d09aeab3e944f07c2e943e1f9beac2cf64a4996c46efee9787f13b6f3ffa92
openssl-perl-1.1.1c-5.el8_1.aarch64.rpm SHA-256: a063aef30c575faeeff576845413c9f5c05b2e2ce9c3db625a1cda02a751379f

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1

SRPM
openssl-1.1.1c-5.el8_1.src.rpm SHA-256: 85b2215faa95298139aba754e23081de23d222350a67c91efbdb0288073b8250
ppc64le
openssl-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: e6b5e4d211eea47d838ce9dcf95f53dc0cbfc9598fd5486577c6a1a905fa6782
openssl-debuginfo-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: 60b4a0af7e8b7fc27c718c1053268183108035fe0034e5865203a7970cc74af2
openssl-debugsource-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: e32c29d925dfc4800163da953be78021766967a40e19f03c3a264b7b9c6d7579
openssl-devel-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: 9ff9c903499ce2588653743096e1b9b692a914609587a8337527b99e34954995
openssl-libs-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: 75fce39dc77a1e9567672575b1bc826578939f24a3b3bf71cc291f62388b0151
openssl-libs-debuginfo-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: 95ad7795231df9aed28ca166464b7e5cb11e53d0274452c045343009906f1b30
openssl-perl-1.1.1c-5.el8_1.ppc64le.rpm SHA-256: e833307319e233e9f1466bb1ce5c6e49609f4a6d0e00f2019bf4c3b52c4b09dd

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1

SRPM
openssl-1.1.1c-5.el8_1.src.rpm SHA-256: 85b2215faa95298139aba754e23081de23d222350a67c91efbdb0288073b8250
x86_64
openssl-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 06b31761e4b04f0a60992557f8a234d1a8cc016588b143ccf3fe1fcec546f037
openssl-debuginfo-1.1.1c-5.el8_1.i686.rpm SHA-256: 71f99d2c189e25ace94a60e41a564a404ad98fb328843354e611e8fc8ec91e34
openssl-debuginfo-1.1.1c-5.el8_1.x86_64.rpm SHA-256: f97436183381cff4db71952e58c22c12bf2c2316b1e37c86b1eeb0e75b9cab66
openssl-debugsource-1.1.1c-5.el8_1.i686.rpm SHA-256: 314681029a52eb90b6ef483b8dd372fc12a7fa5a320491656dd8e8aee833cd9f
openssl-debugsource-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 1ffc68c3aeee52197cce83343f0f8c5cf34ed077e8c94bd8a1bc8de827c2f12b
openssl-devel-1.1.1c-5.el8_1.i686.rpm SHA-256: 0abe15af9b14222be3911bbbb06782d07d78f38a5a9b202aa2eec73217e0f286
openssl-devel-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 66edf666b98d42ab5d011697567a4e13926ee893ef8d1c69f61da8684cae0edd
openssl-libs-1.1.1c-5.el8_1.i686.rpm SHA-256: 250ede59daeade145c2a195349550fec9931a95ad8128015f1a589b51efea061
openssl-libs-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 02ac4249962c75f58feaafae04b7385c9851a5ef51aebe82f9f89a903ab2029e
openssl-libs-debuginfo-1.1.1c-5.el8_1.i686.rpm SHA-256: 2e5cb8533b23e28921e29cd58bfd422d3bb8f047cfb95fda8588dae4e3f3f056
openssl-libs-debuginfo-1.1.1c-5.el8_1.x86_64.rpm SHA-256: 21864f2b13e9848573bbe78d4d3a675413f68794d574351def682a0e1a11f39f
openssl-perl-1.1.1c-5.el8_1.x86_64.rpm SHA-256: c5580fbe4bee88063ec709a207896fa2fffb63ef2c6977f592bd1a633d2620b1

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility