From 71f778f62a2efcb557f168dbe0817cb4d8d88543 Mon Sep 17 00:00:00 2001 From: xumia <59720581+xumia@users.noreply.github.com> Date: Fri, 10 Feb 2023 05:57:50 +0800 Subject: [PATCH] [Security] Upgrade the openssl version to 1.1.1n-0+deb11u4+fips (#13737) Why I did it [Security] Upgrade the openssl version to 1.1.1n-0+deb11u4+fips f6df7303d8 Update expired certs. 84540b59c1 CVE-2022-2068 f763d8a93e Prepare 1.1.1n-0+deb11u2 576562cebe CVE-2022-1292 How I did it Upgrade the OpenSSL version --- rules/sonic-fips.mk | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/rules/sonic-fips.mk b/rules/sonic-fips.mk index 4c925ebf4e..9eb2d86bfb 100644 --- a/rules/sonic-fips.mk +++ b/rules/sonic-fips.mk @@ -1,7 +1,7 @@ # fips packages -FIPS_VERSION = 0.6 -FIPS_OPENSSL_VERSION = 1.1.1n-0+deb11u3+fips +FIPS_VERSION = 0.7 +FIPS_OPENSSL_VERSION = 1.1.1n-0+deb11u4+fips FIPS_OPENSSH_VERSION = 8.4p1-5+deb11u1+fips FIPS_PYTHON_MAIN_VERSION = 3.9 FIPS_PYTHON_VERSION = 3.9.2-1+fips