Habitat team has upgraded openssl plan to 1.0.2zf to resolve vulnerabilities which existed in the current package version 1.0.2zb. The following CVE have been fixed with this upgrade.
CVE-2022-2068
CVE-2022-1292
CVE-2022-0778
CVE-2021-4160
The following is the list of packages which have been refreshed with this upgrade.
Linux
core/ansible/2.12.1
core/azure-cli/2.30.0
core/bind/9.17.20
core/buildkite-cli/0.5.0
core/bundler/2.2.33
core/cmake/3.21.4
core/composer/2.1.12
core/crate/1.1.6
core/cuda/9.2.148
core/curator/5.8.4
core/curator4/4.3.1
core/curl/7.79.1
core/cyrus-sasl/2.1.27
core/dcrpm/0.6.2
core/dd-agent/5.32.8
core/docker-compose/1.29.2
core/docutils/0.18.1
core/dotnet-asp-core/3.1.21
core/dotnet-core/3.1.22
core/dotnet-core-sdk/3.1.416
core/dovecot/2.3.17.1
core/elasticsearch/6.8.23
core/elasticsearch5/5.6.16
core/elixir/1.14.0
core/erlang/23.3.4.9
core/erlang20/20.3.8.26
core/erlang21/21.3.8.24
core/erlang22/22.3.4.24
core/erlang24/24.3.4.2
core/erlang25/25.0.4
core/etcd/3.5.1
core/fluentd/1.14.3
core/foulkon/v0.4.0
core/freetds/1.3.3
core/galera/25.3.35
core/git/2.33.1
core/github_changelog_generator/1.16.4
core/gocd-server/18.12.0
core/grafana/7.5.11
core/grpc-cpp/1.42.0
core/handlebars-cmd/0.1.4
core/haproxy/2.2.29
core/haproxy18/1.8.30
core/haproxy20/2.0.25
core/httpd/2.4.51
core/img/0.5.11
core/jenkins/2.319.1
core/kibana/6.8.20
core/lastpass-cli/1.3.3
core/libarchive/3.5.2
core/libpq/9.6.24
core/libssh2/1.10.0
core/libzip/1.8.0
core/llvm/7.1.0
core/llvm7/7.1.0
core/lttng-ust/2.13.0
core/mariadb/10.6.5
core/memcached/1.6.12
core/mercurial/3.9.2
core/meson/0.60.2
core/mongodb/3.6.23
core/monit/5.29.0
core/mosquitto/1.6.15
core/msodbcsql17/17.8.1.1-1
core/mssql/14.0.3421.10-2
core/mysql/5.7.35
core/mysql-client/5.7.35
core/netdata/1.32.0
core/nginx/1.21.4
core/nmap/7.92
core/node/14.18.1
core/node10/10.24.1
core/node11/11.15.0
core/node12/12.22.7
core/node14/14.18.1
core/node6/6.17.1
core/node8/8.17.0
core/node9/9.11.2
core/openldap/2.6.0
core/openresty/1.19.9.1
core/openssh/7.9p1
core/openssl/1.0.2zf
core/openvpn/2.5.4
core/percona-xtrabackup/2.4.24
core/pester/4.10.1
core/php/7.4.26
core/postfix/3.6.3
core/postgresql/9.6.24
core/postgresql11/11.14
core/postgresql11-client/11.14
core/postgresql13/13.5
core/postgresql13-client/13.5
core/postgresql93/9.3.25
core/postgresql93-client/9.3.25
core/postgresql94/9.4.26
core/postgresql94-client/9.4.26
core/postgresql95/9.5.25
core/postgresql95-client/9.5.25
core/postgresql96/9.6.24
core/postgresql96-client/9.6.24
core/postgresql-client/9.6.24
core/powershell/7.2.0
core/psscriptanalyzer/1.20.0
core/python2/2.7.18
core/python34/3.4.10
core/python35/3.5.10
core/python36/3.6.15
core/python37/3.7.11
core/python38/3.8.12
core/python39/3.9.7
core/qemu/2.12.1
core/R/3.6.3
core/rabbitmq/3.11.11
core/rabbitmqadmin/3.9.8
core/raml2html/6.7.0
core/rebar/2.6.4
core/rebar3/3.17.0
core/relx/3.33.0
core/repo/1.13.11
core/rethinkdb/2.4.1
core/rpm/4.17.0
core/rsync/3.2.3
core/ruby/3.0.3
core/ruby25/2.5.9
core/ruby26/2.6.9
core/ruby27/2.7.5
core/ruby30/3.0.3
core/ruby31/3.1.2
core/scaffolding-go/0.2.0
core/scaffolding-go17/0.1.0
core/scaffolding-node/0.6.14
core/scaffolding-ruby/0.8.11
core/sccache/0.2.15
core/scons/2.5.1
core/sensu/1.9.0
core/sensu-agent/2.0.0-beta.2-4
core/sensu-backend/2.0.0-beta.2-4
core/serf/1.3.9
core/shield/0.10.9
core/shield-agent/0.10.9
core/shield-proxy/0.10.9
core/socat/1.7.4.2
core/sqitch_pg/3.15.0
core/subversion/1.14.1
core/tap-xunit/2.4.1
core/tcpdump/4.99.1
core/tlog/12
core/tor/0.4.6.8
core/vde2/2.3.2
core/virtualenv/15.2.0
core/wget/1.21.2
core/wordpress/4.9.18
core/wordpress-proxy/4.9.18
core/wrk/4.1.0
core/yarn/1.22.17
linux2
core/bind/9.17.20
core/bundler/2.2.33
core/cmake/3.21.4
core/curl/7.79.1
core/git/2.33.1
core/libarchive/3.5.2
core/mysql-client/5.7.35
core/node/14.18.1
core/openssh/7.9p1
core/openssl/1.0.2zf
core/postgresql-client/9.6.24
core/python/3.9.10
core/python2/2.7.18
core/python38/3.8.12
core/raml2html/6.7.0
core/ruby/3.0.3
core/ruby26/2.6.9
core/ruby27/2.7.5
core/ruby31/3.1.2
core/wget/1.21.2