<?xml version='1.0' encoding='UTF-8'?>
<oval_definitions xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:unix-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix" xmlns:ind-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:linux="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5">
  <generator>
    <oval:product_name>Tuxcare Errata System</oval:product_name>
    <oval:product_version>0.0.1</oval:product_version>
    <oval:schema_version>5.10</oval:schema_version>
    <oval:timestamp>2026-08-11T19:11:06</oval:timestamp>
  </generator>
  <definitions>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1774536879" version="1">
      <metadata>
        <title>Update of alt-php</title>
        <affected family="unix">
          <platform>Debian 13</platform>
        </affected>
        <reference ref_id="CLSA-2026:1774536879" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1774536879" source="CLSA"/>
        <reference ref_id="CVE-2026-22796" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-22796" source="CVE"/>
        <reference ref_id="CVE-2025-69421" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2025-69421" source="CVE"/>
        <description>* fix changelog</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-03-26"/>
          <updated date="2026-03-26"/>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-1287" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-22796" impact="moderate" public="20260127">CVE-2026-22796</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2025-69421" impact="important" public="20260127">CVE-2025-69421</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl is earlier than 1.1.1w-3.1" test_ref="oval:com.tuxcare.clsa:tst:1774536879001"/>
        <criterion comment="alt-openssl-dev is earlier than 1.1.1w-3.1" test_ref="oval:com.tuxcare.clsa:tst:1774536879002"/>
        <criterion comment="alt-openssl-doc is earlier than 1.1.1w-3.1" test_ref="oval:com.tuxcare.clsa:tst:1774536879003"/>
        <criterion comment="alt-openssl-libs is earlier than 1.1.1w-3.1" test_ref="oval:com.tuxcare.clsa:tst:1774536879004"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1775145732" version="1">
      <metadata>
        <title>Fix CVE(s): CVE-2023-5678, CVE-2024-0727</title>
        <affected family="unix">
          <platform>Debian 13</platform>
        </affected>
        <reference ref_id="CLSA-2026:1775145732" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1775145732" source="CLSA"/>
        <reference ref_id="CVE-2024-0727" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2024-0727" source="CVE"/>
        <reference ref_id="CVE-2023-5678" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2023-5678" source="CVE"/>
        <description>* SECURITY UPDATE: excessive time spent in DH check/generation with large Q
     - debian/patches/openssl-1.1.1-cve-2023-5678.patch: add bounds checks for
       excessively large Q parameter in DH_check_pub_key() and DH_generate_key()
     - CVE-2023-5678
   * SECURITY UPDATE: PKCS12 decoding crashes due to NULL pointer dereference
     - debian/patches/openssl-1.1.1-cve-2024-0727.patch: add NULL checks where
       ContentInfo data can be NULL in PKCS12/PKCS7 parsing functions
     - CVE-2024-0727</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-04-02"/>
          <updated date="2026-04-02"/>
          <cve cvss3="5.5/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2024-0727" impact="moderate" public="20240126">CVE-2024-0727</cve>
          <cve cvss3="5.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-606" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2023-5678" impact="moderate" public="20231106">CVE-2023-5678</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl is earlier than 1.1.1w-3.2" test_ref="oval:com.tuxcare.clsa:tst:1775145732001"/>
        <criterion comment="alt-openssl-dev is earlier than 1.1.1w-3.2" test_ref="oval:com.tuxcare.clsa:tst:1775145732002"/>
        <criterion comment="alt-openssl-doc is earlier than 1.1.1w-3.2" test_ref="oval:com.tuxcare.clsa:tst:1775145732003"/>
        <criterion comment="alt-openssl-libs is earlier than 1.1.1w-3.2" test_ref="oval:com.tuxcare.clsa:tst:1775145732004"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1776686132" version="1">
      <metadata>
        <title>Fix CVE(s): CVE-2026-28387, CVE-2026-28388, CVE-2026-28389, CVE-2026-28390</title>
        <affected family="unix">
          <platform>Debian 13</platform>
        </affected>
        <reference ref_id="CLSA-2026:1776686132" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1776686132" source="CLSA"/>
        <reference ref_id="CVE-2026-28389" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28389" source="CVE"/>
        <reference ref_id="CVE-2026-28390" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28390" source="CVE"/>
        <reference ref_id="CVE-2026-28388" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28388" source="CVE"/>
        <reference ref_id="CVE-2026-28387" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28387" source="CVE"/>
        <description>* SECURITY UPDATE: use-after-free in DANE client code
     - debian/patches/openssl-1.1.1-cve-2026-28387.patch: use X509_free()
       instead of OPENSSL_free() to properly release reference-counted X509
       objects in dane_match()
     - CVE-2026-28387
   * SECURITY UPDATE: NULL pointer dereference in delta CRL processing
     - debian/patches/openssl-1.1.1-cve-2026-28388.patch: add NULL check for
       delta-&gt;crl_number before dereferencing in check_delta_base()
     - CVE-2026-28388
   * SECURITY UPDATE: NULL pointer dereference in CMS KeyAgreeRecipientInfo
     - debian/patches/openssl-1.1.1-cve-2026-28389.patch: use safe
       X509_ALGOR_get0() extraction in dh_cms_set_shared_info() and
       ecdh_cms_set_shared_info()
     - CVE-2026-28389
   * SECURITY UPDATE: NULL pointer dereference in CMS KeyTransportRecipientInfo
     - debian/patches/openssl-1.1.1-cve-2026-28390.patch: use safe
       X509_ALGOR_get0() extraction and OPENSSL_memdup() for label data in
       rsa_cms_decrypt()
     - CVE-2026-28390</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-04-20"/>
          <updated date="2026-04-20"/>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-166" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28389" impact="moderate" public="20260407">CVE-2026-28389</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28390" impact="important" public="20260407">CVE-2026-28390</cve>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28388" impact="moderate" public="20260407">CVE-2026-28388</cve>
          <cve cvss3="3.7/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-1341" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28387" impact="low" public="20260407">CVE-2026-28387</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl is earlier than 1.1.1w-3.4" test_ref="oval:com.tuxcare.clsa:tst:1776686132001"/>
        <criterion comment="alt-openssl-dev is earlier than 1.1.1w-3.4" test_ref="oval:com.tuxcare.clsa:tst:1776686132002"/>
        <criterion comment="alt-openssl-doc is earlier than 1.1.1w-3.4" test_ref="oval:com.tuxcare.clsa:tst:1776686132003"/>
        <criterion comment="alt-openssl-libs is earlier than 1.1.1w-3.4" test_ref="oval:com.tuxcare.clsa:tst:1776686132004"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1781799839" version="1">
      <metadata>
        <title>Fix CVE(s): CVE-2026-45447</title>
        <affected family="unix">
          <platform>Debian 13</platform>
        </affected>
        <reference ref_id="CLSA-2026:1781799839" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1781799839" source="CLSA"/>
        <reference ref_id="CVE-2026-45447" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-45447" source="CVE"/>
        <description>* SECURITY UPDATE: use-after-free in PKCS7_verify
     - debian/patches/openssl-1.1.1-cve-2026-45447.patch: free the BIO chain
       explicitly and stop at the caller-supplied indata BIO so a crafted
       PKCS#7 / S-MIME message with an empty digestAlgorithms ASN.1 SET can no
       longer make OpenSSL free a caller-owned BIO in PKCS7_verify()
     - CVE-2026-45447</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-06-18"/>
          <updated date="2026-06-18"/>
          <cve cvss3="9.4/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-825" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-45447" impact="critical" public="20260609">CVE-2026-45447</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl is earlier than 1.1.1w-3.5" test_ref="oval:com.tuxcare.clsa:tst:1781799839001"/>
        <criterion comment="alt-openssl-dev is earlier than 1.1.1w-3.5" test_ref="oval:com.tuxcare.clsa:tst:1781799839002"/>
        <criterion comment="alt-openssl-doc is earlier than 1.1.1w-3.5" test_ref="oval:com.tuxcare.clsa:tst:1781799839003"/>
        <criterion comment="alt-openssl-libs is earlier than 1.1.1w-3.5" test_ref="oval:com.tuxcare.clsa:tst:1781799839004"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1785893584" version="1">
      <metadata>
        <title>Fix CVE(s): CVE-2025-69419</title>
        <affected family="unix">
          <platform>Debian 13</platform>
        </affected>
        <reference ref_id="CLSA-2026:1785893584" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1785893584" source="CLSA"/>
        <reference ref_id="CVE-2025-69419" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2025-69419" source="CVE"/>
        <description>* SECURITY UPDATE: HollowByte handshake-buffer pre-allocation DoS
     - debian/patches/openssl-1.1.1-hollowbyte.patch: grow the handshake
       init_buf incrementally as data is received instead of pre-allocating
       the full peer-declared message size, so a peer that claims a large
       message but never sends it can no longer strand memory. Backport of
       OpenSSL 3.0 commit c5785a5e35 (PR #30794). OpenSSL handled this as a
       "bug or hardening" fix, so no CVE was assigned.
     - ELS-2635</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-08-05"/>
          <updated date="2026-08-05"/>
          <cve cvss3="7.4/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N" cwe="CWE-787" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2025-69419" impact="important" public="20260127">CVE-2025-69419</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl11 is earlier than 1.1.1w-3.7" test_ref="oval:com.tuxcare.clsa:tst:1785893584001"/>
        <criterion comment="alt-openssl11-dev is earlier than 1.1.1w-3.7" test_ref="oval:com.tuxcare.clsa:tst:1785893584002"/>
        <criterion comment="alt-openssl11-doc is earlier than 1.1.1w-3.7" test_ref="oval:com.tuxcare.clsa:tst:1785893584003"/>
        <criterion comment="alt-openssl11-libs is earlier than 1.1.1w-3.7" test_ref="oval:com.tuxcare.clsa:tst:1785893584004"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1786475430" version="1">
      <metadata>
        <title>Fix CVE(s): CVE-2026-34180, CVE-2026-42766</title>
        <affected family="unix">
          <platform>Debian 13</platform>
        </affected>
        <reference ref_id="CLSA-2026:1786475430" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1786475430" source="CLSA"/>
        <reference ref_id="CVE-2026-34180" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-34180" source="CVE"/>
        <reference ref_id="CVE-2026-42766" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-42766" source="CVE"/>
        <description>* SECURITY UPDATE: heap buffer over-read parsing large DER ASN.1 elements
     - debian/patches/openssl-1.1.1-cve-2026-34180.patch: keep the ASN.1
       content length as a long in asn1_ex_c2i() and reject elements whose
       length does not fit in an int, so a primitive element longer than
       2GB can no longer be truncated into a negative length and make
       ASN1_STRING_set() read past the end of the input buffer.
     - CVE-2026-34180
   * SECURITY UPDATE: NULL pointer dereference in password-based CMS decryption
     - debian/patches/openssl-1.1.1-cve-2026-42766.patch: check that the
       OPTIONAL PasswordRecipientInfo.keyDerivationAlgorithm field is present
       before dereferencing it in cms_RecipientInfo_pwri_crypt(), so a crafted
       password-encrypted CMS message can no longer crash the application.
     - CVE-2026-42766</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-08-11"/>
          <updated date="2026-08-11"/>
          <cve cvss3="8.2/CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:H" cwe="CWE-125" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-34180" impact="important" public="20260609">CVE-2026-34180</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-42766" impact="important" public="20260609">CVE-2026-42766</cve>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl11 is earlier than 1.1.1w-3.8" test_ref="oval:com.tuxcare.clsa:tst:1786475430001"/>
        <criterion comment="alt-openssl11-dev is earlier than 1.1.1w-3.8" test_ref="oval:com.tuxcare.clsa:tst:1786475430002"/>
        <criterion comment="alt-openssl11-doc is earlier than 1.1.1w-3.8" test_ref="oval:com.tuxcare.clsa:tst:1786475430003"/>
        <criterion comment="alt-openssl11-libs is earlier than 1.1.1w-3.8" test_ref="oval:com.tuxcare.clsa:tst:1786475430004"/>
      </criteria>
    </definition>
  </definitions>
  <tests>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl is earlier than 1.1.1w-3.1" id="oval:com.tuxcare.clsa:tst:1774536879001" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879001"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1774536879001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-dev is earlier than 1.1.1w-3.1" id="oval:com.tuxcare.clsa:tst:1774536879002" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879002"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1774536879001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-doc is earlier than 1.1.1w-3.1" id="oval:com.tuxcare.clsa:tst:1774536879003" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879003"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1774536879003"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-libs is earlier than 1.1.1w-3.1" id="oval:com.tuxcare.clsa:tst:1774536879004" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879004"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1774536879001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl is earlier than 1.1.1w-3.2" id="oval:com.tuxcare.clsa:tst:1775145732001" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879001"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1775145732001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-dev is earlier than 1.1.1w-3.2" id="oval:com.tuxcare.clsa:tst:1775145732002" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879002"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1775145732001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-doc is earlier than 1.1.1w-3.2" id="oval:com.tuxcare.clsa:tst:1775145732003" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879003"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1775145732003"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-libs is earlier than 1.1.1w-3.2" id="oval:com.tuxcare.clsa:tst:1775145732004" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879004"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1775145732001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl is earlier than 1.1.1w-3.4" id="oval:com.tuxcare.clsa:tst:1776686132001" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879001"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1776686132001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-dev is earlier than 1.1.1w-3.4" id="oval:com.tuxcare.clsa:tst:1776686132002" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879002"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1776686132001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-doc is earlier than 1.1.1w-3.4" id="oval:com.tuxcare.clsa:tst:1776686132003" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879003"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1776686132003"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-libs is earlier than 1.1.1w-3.4" id="oval:com.tuxcare.clsa:tst:1776686132004" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879004"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1776686132001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl is earlier than 1.1.1w-3.5" id="oval:com.tuxcare.clsa:tst:1781799839001" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879001"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1781799839001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-dev is earlier than 1.1.1w-3.5" id="oval:com.tuxcare.clsa:tst:1781799839002" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879002"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1781799839001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-doc is earlier than 1.1.1w-3.5" id="oval:com.tuxcare.clsa:tst:1781799839003" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879003"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1781799839003"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl-libs is earlier than 1.1.1w-3.5" id="oval:com.tuxcare.clsa:tst:1781799839004" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1774536879004"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1781799839001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl11 is earlier than 1.1.1w-3.7" id="oval:com.tuxcare.clsa:tst:1785893584001" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1785893584001"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1785893584001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl11-dev is earlier than 1.1.1w-3.7" id="oval:com.tuxcare.clsa:tst:1785893584002" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1785893584002"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1785893584001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl11-doc is earlier than 1.1.1w-3.7" id="oval:com.tuxcare.clsa:tst:1785893584003" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1785893584003"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1785893584003"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl11-libs is earlier than 1.1.1w-3.7" id="oval:com.tuxcare.clsa:tst:1785893584004" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1785893584004"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1785893584001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl11 is earlier than 1.1.1w-3.8" id="oval:com.tuxcare.clsa:tst:1786475430001" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1785893584001"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1786475430001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl11-dev is earlier than 1.1.1w-3.8" id="oval:com.tuxcare.clsa:tst:1786475430002" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1785893584002"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1786475430001"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl11-doc is earlier than 1.1.1w-3.8" id="oval:com.tuxcare.clsa:tst:1786475430003" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1785893584003"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1786475430003"/>
    </linux:dpkginfo_test>
    <linux:dpkginfo_test check="at least one" comment="alt-openssl11-libs is earlier than 1.1.1w-3.8" id="oval:com.tuxcare.clsa:tst:1786475430004" version="1">
      <linux:object object_ref="oval:com.tuxcare.clsa:obj:1785893584004"/>
      <linux:state state_ref="oval:com.tuxcare.clsa:ste:1786475430001"/>
    </linux:dpkginfo_test>
  </tests>
  <objects>
    <linux:dpkginfo_object id="oval:com.tuxcare.clsa:obj:1774536879001" version="1">
      <linux:name>alt-openssl</linux:name>
    </linux:dpkginfo_object>
    <linux:dpkginfo_object id="oval:com.tuxcare.clsa:obj:1774536879002" version="1">
      <linux:name>alt-openssl-dev</linux:name>
    </linux:dpkginfo_object>
    <linux:dpkginfo_object id="oval:com.tuxcare.clsa:obj:1774536879003" version="1">
      <linux:name>alt-openssl-doc</linux:name>
    </linux:dpkginfo_object>
    <linux:dpkginfo_object id="oval:com.tuxcare.clsa:obj:1774536879004" version="1">
      <linux:name>alt-openssl-libs</linux:name>
    </linux:dpkginfo_object>
    <linux:dpkginfo_object id="oval:com.tuxcare.clsa:obj:1785893584001" version="1">
      <linux:name>alt-openssl11</linux:name>
    </linux:dpkginfo_object>
    <linux:dpkginfo_object id="oval:com.tuxcare.clsa:obj:1785893584002" version="1">
      <linux:name>alt-openssl11-dev</linux:name>
    </linux:dpkginfo_object>
    <linux:dpkginfo_object id="oval:com.tuxcare.clsa:obj:1785893584003" version="1">
      <linux:name>alt-openssl11-doc</linux:name>
    </linux:dpkginfo_object>
    <linux:dpkginfo_object id="oval:com.tuxcare.clsa:obj:1785893584004" version="1">
      <linux:name>alt-openssl11-libs</linux:name>
    </linux:dpkginfo_object>
  </objects>
  <states>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1774536879001" version="1">
      <linux:arch datatype="string" operation="pattern match">amd64|arm64</linux:arch>
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.1</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1774536879003" version="1">
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.1</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1775145732001" version="1">
      <linux:arch datatype="string" operation="pattern match">amd64|arm64</linux:arch>
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.2</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1775145732003" version="1">
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.2</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1776686132001" version="1">
      <linux:arch datatype="string" operation="pattern match">amd64|arm64</linux:arch>
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.4</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1776686132003" version="1">
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.4</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1781799839001" version="1">
      <linux:arch datatype="string" operation="pattern match">amd64|arm64</linux:arch>
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.5</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1781799839003" version="1">
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.5</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1785893584001" version="1">
      <linux:arch datatype="string" operation="pattern match">amd64|arm64</linux:arch>
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.7</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1785893584003" version="1">
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.7</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1786475430001" version="1">
      <linux:arch datatype="string" operation="equals">amd64</linux:arch>
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.8</linux:evr>
    </linux:dpkginfo_state>
    <linux:dpkginfo_state id="oval:com.tuxcare.clsa:ste:1786475430003" version="1">
      <linux:evr datatype="evr_string" operation="less than">1.1.1w-3.8</linux:evr>
    </linux:dpkginfo_state>
  </states>
</oval_definitions>
