FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

OpenSSL -- Excessive time spent checking DH q parameter value

Affected packages
openssl < 1.1.1u_1,1
openssl30 < 3.0.9_2
openssl31 < 3.1.1_2

Details

VuXML ID bad6588e-2fe0-11ee-a0d1-84a93843eb75
Discovery 2023-07-31
Entry 2023-07-31

The OpenSSL project reports:

Checking excessively long DH keys or parameters may be very slow (severity: Low).

References

CVE Name CVE-2023-3817
URL https://www.openssl.org/news/secadv/20230731.txt