openSUSE Security Update : libgcrypt (openSUSE-2017-743)
Medium Nessus Plugin ID 101136
SynopsisThe remote openSUSE host is missing a security update.
DescriptionThis update for libgcrypt fixes the following issues :
- CVE-2017-9526: Store the session key in secure memory to ensure that constant time point operations are used in the MPI library. (bsc#1042326)
- Don't require secure memory for the fips selftests, this prevents the 'Oops, secure memory pool already initialized' warning. (bsc#931932)
This update was imported from the SUSE:SLE-12:Update update project.
SolutionUpdate the affected libgcrypt packages.