From nobody Thu Feb 16 18:23:55 2023
X-Original-To: freebsd-security-notifications@mlmmj.nyi.freebsd.org
Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1])
	by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4PHjy40fNcz3rHct
	for <freebsd-security-notifications@mlmmj.nyi.freebsd.org>; Thu, 16 Feb 2023 18:23:56 +0000 (UTC)
	(envelope-from security-advisories@freebsd.org)
Received: from freefall.freebsd.org (freefall.freebsd.org [96.47.72.132])
	(using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)
	 key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256
	 client-signature RSA-PSS (4096 bits) client-digest SHA256)
	(Client CN "freefall.freebsd.org", Issuer "R3" (verified OK))
	by mx1.freebsd.org (Postfix) with ESMTPS id 4PHjy373RXz4NHD;
	Thu, 16 Feb 2023 18:23:55 +0000 (UTC)
	(envelope-from security-advisories@freebsd.org)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim;
	t=1676571836; h=from:from:reply-to:reply-to:subject:subject:date:date:
	 message-id:message-id:to:to:cc; bh=YJ0uDUnD7UJGia3Yxty6QouScwSMaRSrIvCQM6q3IZ8=;
	b=mb98QRh+pUFe77gJTICppiWJnKLAF4lU6hSUjtja6QG8cQY1YPY/3J95F40CVC6riFi307
	DL6mvAQc10/AiTGXjGPzhx2K5SGAdDTFdwrovW7ctsZqFuON34UgVVjdOvDcOlPOcwuDLf
	0+LTvIPRHgkQN13NSUSLoWXmPDS7OcKlgXYk8LzdIQJesrWv6ua7cWif39gzWdXrkZRuHn
	KrJ5WoBxxg1r9n+YzASGlq1x6CK5YyNymRnIwNNbEGcDyDdCg4tgHYIc7s5rRbbqVugCfU
	cp4NJ4xVyTNHau/Ih99yFZcJKYwZ/aGoMN+hFoRIJ76F+RQUqUPcIATUVuFKUg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org;
	s=dkim; t=1676571836; h=from:from:reply-to:reply-to:subject:subject:date:date:
	 message-id:message-id:to:to:cc;
	bh=YJ0uDUnD7UJGia3Yxty6QouScwSMaRSrIvCQM6q3IZ8=;
	b=Qir3YcxF7FNkm86KwIw6drjwfkQNBG8DWsW4RUptU84DUdoLXm+84LPR1G+ugOE0gJtAFZ
	uSsp+rAQLTx+2yn5Hw653D7IBKSCDJKk6546+WGod0Ah88ffNaWJQ5fD8uUrzZfmcFaf5I
	rdfbNlsf6F+QyqLrAaX+vR/iLOMl7dNRAr+4cGdHjAsDuJXMD6UbLD/UrS9mxEo/AoRxVI
	4Xxj2r7fvp3hfMt6vlRv17miFEKQsw6GG4NnVaPPLsG3Z9+IGOXAx4I4u9ezsFHNA1igHc
	Pd4mxWxiJF7cTzGk6ybtz6npS1M3v9qWT8Yfn5j1Ega5FBis5Ni5x+0xg6J6Xg==
ARC-Authentication-Results: i=1;
	mx1.freebsd.org;
	none
ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1676571836; a=rsa-sha256; cv=none;
	b=RUK1P+p6XGM0K0DooZlTlEUzv5+1+1kE5aPprag43QbEXyfLfr6odQaoUK740qY7LAyu4i
	lca943XGc9jKeIsDwJawMldmgOHqTXkEJ/gxKIwjgUBuZc6T7/1mxIjczuCAP8u38KQ8Uv
	r/+vAqIha3I/FFedHbKKg6AaQV81kkRODZPkYCy3Z8uhpSQXdn28xVajjiMj/CsM6wiVZl
	Zl3/qlN/OBtOGEUBRE/pyxIdTH5TLY4o9t/XpcCDM5gU0llGGcby61Ig50obqqv77aeskD
	Cw0NB680PeIiH1yCvD4f9TYiXQA0mYFvp6a0fjU78APjmLJmXt363ukUhuh/SA==
Received: by freefall.freebsd.org (Postfix, from userid 945)
	id CF25C44CE; Thu, 16 Feb 2023 18:23:55 +0000 (UTC)
From: FreeBSD Security Advisories <security-advisories@freebsd.org>
To: FreeBSD Security Advisories <security-advisories@freebsd.org>
Subject: FreeBSD Security Advisory FreeBSD-SA-23:02.openssh
Reply-To: freebsd-security@freebsd.org
Precedence: bulk
Message-Id: <20230216182355.CF25C44CE@freefall.freebsd.org>
Date: Thu, 16 Feb 2023 18:23:55 +0000 (UTC)
X-ThisMailContainsUnwantedMimeParts: N
List-Id: Moderated Security Notifications [moderated, low volume] <freebsd-security-notifications.freebsd.org>
List-Archive: https://lists.freebsd.org/archives/freebsd-security-notifications
List-Help: <mailto:security-notifications+help@freebsd.org>
List-Post: <mailto:security-notifications@freebsd.org>
List-Subscribe: <mailto:security-notifications+subscribe@freebsd.org>
List-Unsubscribe: <mailto:security-notifications+unsubscribe@freebsd.org>
Sender: owner-freebsd-security-notifications@freebsd.org
X-BeenThere: freebsd-security-notifications@freebsd.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

=============================================================================
FreeBSD-SA-23:02.openssh                                    Security Advisory
                                                          The FreeBSD Project

Topic:		OpenSSH pre-authentication double free

Category:       contrib
Module:         openssh
Announced:      2023-02-16
Credits:        Mantas Mikulenas
Affects:        FreeBSD 12.4
Corrected:      2023-02-08 21:06:22 UTC (stable/13, 13.2-STABLE)
                2023-02-08 21:07:30 UTC (stable/12, 12.4-STABLE)
                2023-02-16 18:04:07 UTC (releng/12.4, 12.4-RELEASE-p2)
CVE Name:       CVE-2023-25136

For general information regarding FreeBSD Security Advisories,
including descriptions of the fields above, security branches, and the
following sections, please visit <URL:https://security.FreeBSD.org/>.

I.   Background

OpenSSH is an implementation of the SSH protocol suite, providing an
encrypted and authenticated transport for a variety of services,
including remote shell access.

II.  Problem Description

A flaw in the backwards-compatibility key exchange route allows a pointer
to be freed twice.

III. Impact

A remote, unauthenticated attacker may be able to cause a denial of service,
or possibly remote code execution.

Note that FreeBSD 12.3 and FreeBSD 13.1 include older versions of OpenSSH,
and are not affected.  FreeBSD 13.2-BETA1 and later include the fix.

IV.  Workaround

No workaround is available.

V.   Solution

Upgrade your vulnerable system to a supported FreeBSD stable or
release / security branch (releng) dated after the correction date.

Perform one of the following:

1) To update your vulnerable system via a binary patch:

Systems running a RELEASE version of FreeBSD on the amd64, i386, or
(on FreeBSD 13 and later) arm64 platforms can be updated via the
freebsd-update(8) utility:

# freebsd-update fetch
# freebsd-update install

2) To update your vulnerable system via a source code patch:

The following patches have been verified to apply to the applicable
FreeBSD release branches.

a) Download the relevant patch from the location below, and verify the
detached PGP signature using your PGP utility.

[FreeBSD 12.4]
# fetch https://security.FreeBSD.org/patches/SA-23:02/openssh.patch
# fetch https://security.FreeBSD.org/patches/SA-23:02/openssh.patch.asc
# gpg --verify openssh.patch.asc

b) Apply the patch.  Execute the following commands as root:

# cd /usr/src
# patch < /path/to/patch

c) Recompile the operating system using buildworld and installworld as
described in <URL:https://www.FreeBSD.org/handbook/makeworld.html>.

Restart the applicable daemons, or reboot the system.

VI.  Correction details

This issue is corrected by the corresponding Git commit hash or Subversion
revision number in the following stable and release branches:

Branch/path                             Hash                     Revision
- -------------------------------------------------------------------------
stable/13/                              296ec8eae0c8    stable/13-n260933
stable/12/                                                        r372919
releng/12.4/                                                      r372938
- -------------------------------------------------------------------------

For FreeBSD 13 and later:

Run the following command to see which files were modified by a
particular commit:

# git show --stat <commit hash>

Or visit the following URL, replacing NNNNNN with the hash:

<URL:https://cgit.freebsd.org/src/commit/?id=NNNNNN>

To determine the commit count in a working tree (for comparison against
nNNNNNN in the table above), run:

# git rev-list --count --first-parent HEAD

For FreeBSD 12 and earlier:

Run the following command to see which files were modified by a particular
revision, replacing NNNNNN with the revision number:

# svn diff -cNNNNNN --summarize svn://svn.freebsd.org/base

Or visit the following URL, replacing NNNNNN with the revision number:

<URL:https://svnweb.freebsd.org/base?view=revision&revision=NNNNNN>

VII. References

<URL:https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-25136>

The latest revision of this advisory is available at
<URL:https://security.FreeBSD.org/advisories/FreeBSD-SA-23:02.openssh.asc>
-----BEGIN PGP SIGNATURE-----

iQIzBAEBCgAdFiEEthUnfoEIffdcgYM7bljekB8AGu8FAmPucY4ACgkQbljekB8A
Gu+iNA/+OSEEsiNqkwsODt83JcagAx2MmEyDOjj0sz5IHXpjSWB0kfM4HU7spG1p
F94ELys9aMzedPtvHtt0xZGTb6mMmdo+xJyit8NJaEsTqfsx6qjaEwyieakJleLs
HMWBpvf8Gd7WVek8uxSmw146LpvuIXMPvASJ2aW0x8KDcPMagmZjHenFtX73F3c7
Hkqn3dgwoQCtwGLNVliQukq7v0Vdhq8s0WbmYcZxqXkg8l8Kf8NusT2koDcQUWR+
PH7OAAwA4DLxvOrPnmni2rxdfDgbXmcwpr8tBvHliN/Sgw3zH0fLUr2sL6gi/ORX
iUKZB+RaI8Edw+FZhycKRSFJbl29TpzCr8ucgyspNamsbuPHVwai0mGCZ4UuKSuo
mfnEup9DGkBYWZNPMeq4t7BF7oytDZTIKxmHS89XGZR22NZe7UNeRwIkxct61H8Z
HBObWH/i2pCSOrFghVW8xnqgYbIr/evb95otL0Drkl605oR34pIlcH/4dvfrxadz
Ugn83baGssvqYVL41Uc73ofL6ESveRjyYKKwP0EWSHDqOgjFcybFtf5y4mZqZr3f
sjusHcHhzcQ5Cn1XL7cHVyM0/6ErGUD36Suy6LoAwUwXvXgM1B1QOQeopMiGE4EF
40AmlMBHMmWrMKauhOrs5n4J2MRZIeJg0uTmg7QS7I2+BE56NN8=
=IJSD
-----END PGP SIGNATURE-----

From nobody Thu Feb 16 18:24:00 2023
X-Original-To: freebsd-security-notifications@mlmmj.nyi.freebsd.org
Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1])
	by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4PHjy82PPjz3rHdP
	for <freebsd-security-notifications@mlmmj.nyi.freebsd.org>; Thu, 16 Feb 2023 18:24:00 +0000 (UTC)
	(envelope-from security-advisories@freebsd.org)
Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2610:1c1:1:6074::16:84])
	(using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)
	 key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256
	 client-signature RSA-PSS (4096 bits) client-digest SHA256)
	(Client CN "freefall.freebsd.org", Issuer "R3" (verified OK))
	by mx1.freebsd.org (Postfix) with ESMTPS id 4PHjy81SMbz4NWl;
	Thu, 16 Feb 2023 18:24:00 +0000 (UTC)
	(envelope-from security-advisories@freebsd.org)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim;
	t=1676571840; h=from:from:reply-to:reply-to:subject:subject:date:date:
	 message-id:message-id:to:to:cc; bh=rXbgk+wXLveXQ8AnIU6JrETIi0kMK3H4hBLaJfmDr/Y=;
	b=ZMJv4hFBMDVo03CMV3Pyde6TFxKTrXsOc1tFv0PYNSnjBMReYkN9RoHEIOXNZ9PHt/x426
	6lPI2864FV41l5Ik1OSXL66St1h2nE+tnGttQ2AFfKk/nujpySBpWnqXwKdDEEXCr+VWz6
	JQW7Nwtf3EDRX3Y1m1pkX/qw8ltJFDU5ot70LnRhbEGLId75KM8F8K/Hn9XQgn09/KkIIW
	Cv1V/lfefqIs/QR7qIDAmBzgbjRdoA1iLC70P0o4q8z+9v3buYl6tYaRumk8dYh+ZNGS1t
	JXX4yO0ICzV8QOChBpkL8LLwvvio0xs9cBMp47HR38LuWSnKpAQ/Mxu00pSeTQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org;
	s=dkim; t=1676571840; h=from:from:reply-to:reply-to:subject:subject:date:date:
	 message-id:message-id:to:to:cc;
	bh=rXbgk+wXLveXQ8AnIU6JrETIi0kMK3H4hBLaJfmDr/Y=;
	b=qjWc3+B62zQ1l/ACdWEmWf+MDlFSBdm0LT1L8Yt8Rn+t57qQ80W5PF2SL562an3b2RZey9
	Hp63d+EUqVkwolLPpva+FUdpGOFahcyJXS78nDF+6uxxp3MBW4aAelZPUoRpsUxIoJCQH4
	ZX+fY6Mq+YXrxMm9g/uSZ91Vrhz9By58HE333WtGOKkNsghD5or1A6hLrQ1zj3hsQMY5QA
	d/YZ+qCwb1Qqr7lKmMNeg8kai47QD95M0nmISjE7P0s03TakAsEkyfXFYpz+GgnRqpUGOH
	AsKmSwAIcsfwwye3xn9ZdRwUrAz5kTwhHTsJ58lWTz5JAVXETep4YJuGZlYhiA==
ARC-Authentication-Results: i=1;
	mx1.freebsd.org;
	none
ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1676571840; a=rsa-sha256; cv=none;
	b=Z+VcJhIbab8BbDZ6qj0AQ5mb3AOlWSb2Ny0m1/RzJVzwVt7gygcyUC4vrnB4DylVftzwhZ
	AdumoYV5wb9p2N1P/4JPRs7Erp7wSqBxmOM23/RmD8IZX9OB10ciYxyt124h6NnNQ43bBL
	F5FzUx6mZtMoI5nDkh6QGAxNGN4VOjtc02lzTkhoylGyLjL6SVWsZ3Q/l+OtXoTbLTtmd/
	iaBWwmUquq1rVfnTtnXc4D//Cg7ldljdE6djyW+KuPW1SQcHba6EYfUbqr7UfGfsQc+hln
	CWevunlVJH+YflGCO+7p6Jyfo4mxv+pKZlDPGtRQwhsa3ROt1tActe7h/KlwDQ==
Received: by freefall.freebsd.org (Postfix, from userid 945)
	id 1DCF14628; Thu, 16 Feb 2023 18:24:00 +0000 (UTC)
From: FreeBSD Security Advisories <security-advisories@freebsd.org>
To: FreeBSD Security Advisories <security-advisories@freebsd.org>
Subject: FreeBSD Security Advisory FreeBSD-SA-23:03.openssl
Reply-To: freebsd-security@freebsd.org
Precedence: bulk
Message-Id: <20230216182400.1DCF14628@freefall.freebsd.org>
Date: Thu, 16 Feb 2023 18:24:00 +0000 (UTC)
X-ThisMailContainsUnwantedMimeParts: N
List-Id: Moderated Security Notifications [moderated, low volume] <freebsd-security-notifications.freebsd.org>
List-Archive: https://lists.freebsd.org/archives/freebsd-security-notifications
List-Help: <mailto:security-notifications+help@freebsd.org>
List-Post: <mailto:security-notifications@freebsd.org>
List-Subscribe: <mailto:security-notifications+subscribe@freebsd.org>
List-Unsubscribe: <mailto:security-notifications+unsubscribe@freebsd.org>
Sender: owner-freebsd-security-notifications@freebsd.org
X-BeenThere: freebsd-security-notifications@freebsd.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

=============================================================================
FreeBSD-SA-23:03.openssl                                    Security Advisory
                                                          The FreeBSD Project

Topic:          Multiple vulnerabilities in OpenSSL

Category:       contrib
Module:         openssl
Announced:      2023-02-16
Credits:        See referenced OpenSSL advisory.
Affects:        All supported versions of FreeBSD.
Corrected:      2023-02-07 22:38:40 UTC (stable/13, 13.1-STABLE)
                2023-02-16 17:58:13 UTC (releng/13.1, 13.1-RELEASE-p7)
                2023-02-07 23:09:41 UTC (stable/12, 12.4-STABLE)
                2023-02-16 18:04:12 UTC (releng/12.4, 12.4-RELEASE-p2)
                2023-02-16 18:03:37 UTC (releng/12.3, 12.3-RELEASE-p12)
CVE Name:       CVE-2023-0286, CVE-2023-0215, CVE-2022-4450, CVE-2022-4304

For general information regarding FreeBSD Security Advisories,
including descriptions of the fields above, security branches, and the
following sections, please visit <URL:https://security.FreeBSD.org/>.

I.   Background

FreeBSD includes software from the OpenSSL Project.  The OpenSSL Project is a
collaborative effort to develop a robust, commercial-grade, full-featured
Open Source toolkit for the Transport Layer Security (TLS) protocol.  It is
also a general-purpose cryptography library.

II.  Problem Description

* X.400 address type confusion in X.509 GeneralName (CVE-2023-0286)

There is a type confusion vulnerability relating to X.400 address processing
inside an X.509 GeneralName. X.400 addresses were parsed as an ASN1_STRING but
the public structure definition for GENERAL_NAME incorrectly specified the type
of the x400Address field as ASN1_TYPE. This field is subsequently interpreted by
the OpenSSL function GENERAL_NAME_cmp as an ASN1_TYPE rather than an
ASN1_STRING.

* Timing Oracle in RSA Decryption (CVE-2022-4304)

A timing based side channel exists in the OpenSSL RSA Decryption
implementation.

* Use-after-free following BIO_new_NDEF (CVE-2023-0215)

The public API function BIO_new_NDEF is a helper function used for streaming
ASN.1 data via a BIO. It is primarily used internally to OpenSSL to support
the SMIME, CMS and PKCS7 streaming capabilities, but may also be called
directly by end user applications.

The function receives a BIO from the caller, prepends a new BIO_f_asn1 filter
BIO onto the front of it to form a BIO chain, and then returns the new head
of the BIO chain to the caller. Under certain conditions, for example if a
CMS recipient public key is invalid, the new filter BIO is freed and the
function returns a NULL result indicating a failure. However, in this case,
the BIO chain is not properly cleaned up and the BIO passed by the caller
still retains internal pointers to the previously freed filter BIO.

* Double free after calling PEM_read_bio_ex (CVE-2022-4450)

The function PEM_read_bio_ex() reads a PEM file from a BIO and parses and
decodes the "name" (e.g. "CERTIFICATE"), any header data and the payload
data.  If the function succeeds then the "name_out", "header" and "data"
arguments are populated with pointers to buffers containing the relevant
decoded data. The caller is responsible for freeing those buffers. It is
possible to construct a PEM file that results in 0 bytes of payload data. In
this case PEM_read_bio_ex() will return a failure code but will populate the
header argument with a pointer to a buffer that has already been freed.

III. Impact

* X.400 address type confusion in X.509 GeneralName (CVE-2023-0286)

When CRL checking is enabled (i.e. the application sets the
X509_V_FLAG_CRL_CHECK flag), this vulnerability may allow an attacker to pass
arbitrary pointers to a memcmp call, enabling them to read memory contents or
enact a denial of service. In most cases, the attack requires the attacker to
provide both the certificate chain and CRL, neither of which need to have a
valid signature. If the attacker only controls one of these inputs, the other
input must already contain an X.400 address as a CRL distribution point, which
is uncommon. As such, this vulnerability is most likely to only affect
applications which have implemented their own functionality for retrieving CRLs
over a network.

* Timing Oracle in RSA Decryption (CVE-2022-4304)

A timing based side channel exists in the OpenSSL RSA Decryption implementation
which could be sufficient to recover a plaintext across a network in a
Bleichenbacher style attack. To achieve a successful decryption an attacker
would have to be able to send a very large number of trial messages for
decryption. The vulnerability affects all RSA padding modes: PKCS#1 v1.5,
RSA-OEAP and RSASVE.

* Use-after-free following BIO_new_NDEF (CVE-2023-0215)

A use-after-free will occur under certain conditions. This will most likely
result in a crash.

* Double free after calling PEM_read_bio_ex (CVE-2022-4450)

A double free may occur. This will most likely lead to a crash. This could be
exploited by an attacker who has the ability to supply malicious PEM files
for parsing to achieve a denial of service attack.

IV.  Workaround

No workaround is available.

V.   Solution

Upgrade your vulnerable system to a supported FreeBSD stable or
release / security branch (releng) dated after the correction date.

Perform one of the following:

1) To update your vulnerable system via a binary patch:

Systems running a RELEASE version of FreeBSD on the amd64, i386, or
(on FreeBSD 13 and later) arm64 platforms can be updated via the
freebsd-update(8) utility:

# freebsd-update fetch
# freebsd-update install

2) To update your vulnerable system via a source code patch:

The following patches have been verified to apply to the applicable
FreeBSD release branches.

a) Download the relevant patch from the location below, and verify the
detached PGP signature using your PGP utility.

# fetch https://security.FreeBSD.org/patches/SA-23:03/openssl.patch
# fetch https://security.FreeBSD.org/patches/SA-23:03/openssl.patch.asc
# gpg --verify openssl.patch.asc

b) Apply the patch.  Execute the following commands as root:

# cd /usr/src
# patch < /path/to/patch

c) Recompile the operating system using buildworld and installworld as
described in <URL:https://www.FreeBSD.org/handbook/makeworld.html>.

Restart all daemons that use the library, or reboot the system.

VI.  Correction details

This issue is corrected by the corresponding Git commit hash or Subversion
revision number in the following stable and release branches:

Branch/path                             Hash                     Revision
- -------------------------------------------------------------------------
stable/13/                              0904c29a0a11    stable/13-n254398
releng/13.1/                            e237b128e080  releng/13.1-n250181
stable/12/                                                        r372906
releng/12.4/                                                      r372939
releng/12.3/                                                      r372936
- -------------------------------------------------------------------------

For FreeBSD 13 and later:

Run the following command to see which files were modified by a
particular commit:

# git show --stat <commit hash>

Or visit the following URL, replacing NNNNNN with the hash:

<URL:https://cgit.freebsd.org/src/commit/?id=NNNNNN>

To determine the commit count in a working tree (for comparison against
nNNNNNN in the table above), run:

# git rev-list --count --first-parent HEAD

For FreeBSD 12 and earlier:

Run the following command to see which files were modified by a particular
revision, replacing NNNNNN with the revision number:

# svn diff -cNNNNNN --summarize svn://svn.freebsd.org/base

Or visit the following URL, replacing NNNNNN with the revision number:

<URL:https://svnweb.freebsd.org/base?view=revision&revision=NNNNNN>

VII. References

<URL:https://www.openssl.org/news/secadv/20230207.txt>
<URL:https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-0286>
<URL:https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-0215>
<URL:https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-4450>
<URL:https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-4304>

For general information regarding FreeBSD Security Advisories,
including descriptions of the fields above, security branches, and the
following sections, please visit <URL:https://security.FreeBSD.org/>.

The latest revision of this advisory is available at
<URL:https://security.FreeBSD.org/advisories/FreeBSD-SA-23:03.openssl.asc>
-----BEGIN PGP SIGNATURE-----

iQIzBAEBCgAdFiEEthUnfoEIffdcgYM7bljekB8AGu8FAmPucZwACgkQbljekB8A
Gu9HjQ//Re9YWzj2N2OaIbEljpogMIUxDzltPdCk+v6SODdiMh2ZesKojEHv9u3G
3pFkJxzvqPX1BID8S7arZHnHUTeDKGq+eJef+q6gVmSA7F92l9eAK9UhTgeV5CDT
VzFijM225KzFWA6VeD5pUtnCxze+Cor1y/XHAFPU1Ld5O+Tiem+vpN3OQt/hRlxI
3YC2zOKbpZiXX0vAiSsJw4r31yLqbY97Lmu3ccEAnKSNagkuFzuXyCSHroOPrIuB
zvNmFK6Brv6hnG+yucqdGi2g21oIW2i/UhObohCcxnUXBIa6xAbVVoiEy+fmutXx
T0JAOR75GqMuBUv4B4OT32cVkhZZJqWzSmeDed28cr5J3fWov+z7iePTezcFVMKj
gY3G5Awm41Qg6zjVqxZdj5n56yFSUgD63ZN0MKBPy8VDgSOv9vQzVR12/XyGOQrv
LnMtwtiI1qAoLiHXBLhrUOqrYw/WABHGNJVIVer4dzZCXw3VUqqxluqsUw0r5h9A
J9Ox1zcTV3N6wTHeVwUsScwjANg5dfQ2xnDZHWsPwPJuyCCiDXx8X7D13ACkHYVS
3MqvRC4+wZTNttp3jH1JINe0CE7Z/euLDtPUdM3/xD/+mtO9g9ADg+GHkF5Tief2
i+AAWY/igHC1jQiXvmdFHf3IddxLoyhJAL5MiPxyTwAErR/8Xwc=
=G1z4
-----END PGP SIGNATURE-----