<?xml version='1.0' encoding='UTF-8'?>
<oval_definitions xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:unix-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix" xmlns:red-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" xmlns:ind-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5">
  <generator>
    <oval:product_name>Tuxcare Errata System</oval:product_name>
    <oval:product_version>0.0.1</oval:product_version>
    <oval:schema_version>5.10</oval:schema_version>
    <oval:timestamp>2026-08-11T18:48:44</oval:timestamp>
  </generator>
  <definitions>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1774531653" version="1">
      <metadata>
        <title>Update of alt-openssl11</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 10</platform>
        </affected>
        <reference ref_id="CLSA-2026:1774531653" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1774531653" source="CLSA"/>
        <reference ref_id="CVE-2026-22796" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-22796" source="CVE"/>
        <reference ref_id="CVE-2025-69421" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2025-69421" source="CVE"/>
        <description>- strip debug symbols from binary files</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-03-26"/>
          <updated date="2026-03-26"/>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-1287" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-22796" impact="moderate" public="20260127">CVE-2026-22796</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2025-69421" impact="important" public="20260127">CVE-2025-69421</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:10</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl11 is earlier than 1:1.1.1w-3.1.el10" test_ref="oval:com.tuxcare.clsa:tst:1774531653001"/>
        <criterion comment="alt-openssl11 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653002"/>
        <criterion comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.1.el10" test_ref="oval:com.tuxcare.clsa:tst:1774531653003"/>
        <criterion comment="alt-openssl11-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653004"/>
        <criterion comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.1.el10" test_ref="oval:com.tuxcare.clsa:tst:1774531653005"/>
        <criterion comment="alt-openssl11-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653006"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1775146316" version="1">
      <metadata>
        <title>alt-openssl11: Fix of 2 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 10</platform>
        </affected>
        <reference ref_id="CLSA-2026:1775146316" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1775146316" source="CLSA"/>
        <reference ref_id="CVE-2024-0727" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2024-0727" source="CVE"/>
        <reference ref_id="CVE-2023-5678" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2023-5678" source="CVE"/>
        <description>- CVE-2023-5678: fix excessive time in DH check/generation with large Q
  parameter by adding bounds checks in DH_check_pub_key and DH_generate_key
- CVE-2024-0727: fix PKCS12 decoding NULL pointer dereference by adding NULL
  checks where ContentInfo data can be NULL</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-04-02"/>
          <updated date="2026-04-02"/>
          <cve cvss3="5.5/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2024-0727" impact="moderate" public="20240126">CVE-2024-0727</cve>
          <cve cvss3="5.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-606" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2023-5678" impact="moderate" public="20231106">CVE-2023-5678</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:10</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl11 is earlier than 1:1.1.1w-3.2.el10" test_ref="oval:com.tuxcare.clsa:tst:1775146316001"/>
        <criterion comment="alt-openssl11 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653002"/>
        <criterion comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.2.el10" test_ref="oval:com.tuxcare.clsa:tst:1775146316002"/>
        <criterion comment="alt-openssl11-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653004"/>
        <criterion comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.2.el10" test_ref="oval:com.tuxcare.clsa:tst:1775146316003"/>
        <criterion comment="alt-openssl11-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653006"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1776705233" version="1">
      <metadata>
        <title>alt-openssl11: Fix of 4 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 10</platform>
        </affected>
        <reference ref_id="CLSA-2026:1776705233" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1776705233" source="CLSA"/>
        <reference ref_id="CVE-2026-28389" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28389" source="CVE"/>
        <reference ref_id="CVE-2026-28390" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28390" source="CVE"/>
        <reference ref_id="CVE-2026-28388" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28388" source="CVE"/>
        <reference ref_id="CVE-2026-28387" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28387" source="CVE"/>
        <description>- CVE-2026-28387: fix use-after-free in DANE client code by using X509_free()
  instead of OPENSSL_free() to properly release reference-counted X509 objects
- CVE-2026-28388: fix NULL pointer dereference when processing a delta CRL
  that has a Delta CRL Indicator but lacks a CRL Number extension
- CVE-2026-28389: fix NULL pointer dereference in CMS KeyAgreeRecipientInfo
  processing when KeyEncryptionAlgorithmIdentifier omits the optional
  parameter field, by using safe X509_ALGOR_get0() extraction
- CVE-2026-28390: fix NULL pointer dereference in CMS KeyTransportRecipientInfo
  processing when RSA-OAEP SourceFunc parameters are missing, by using safe
  X509_ALGOR_get0() extraction and OPENSSL_memdup() for label data</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-04-20"/>
          <updated date="2026-04-20"/>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-166" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28389" impact="moderate" public="20260407">CVE-2026-28389</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28390" impact="important" public="20260407">CVE-2026-28390</cve>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28388" impact="moderate" public="20260407">CVE-2026-28388</cve>
          <cve cvss3="3.7/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-1341" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-28387" impact="low" public="20260407">CVE-2026-28387</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:10</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl11 is earlier than 1:1.1.1w-3.3.el10" test_ref="oval:com.tuxcare.clsa:tst:1776705233001"/>
        <criterion comment="alt-openssl11 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653002"/>
        <criterion comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.3.el10" test_ref="oval:com.tuxcare.clsa:tst:1776705233002"/>
        <criterion comment="alt-openssl11-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653004"/>
        <criterion comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.3.el10" test_ref="oval:com.tuxcare.clsa:tst:1776705233003"/>
        <criterion comment="alt-openssl11-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653006"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1781801595" version="1">
      <metadata>
        <title>alt-openssl11: Fix of CVE-2026-45447</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 10</platform>
        </affected>
        <reference ref_id="CLSA-2026:1781801595" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1781801595" source="CLSA"/>
        <reference ref_id="CVE-2026-45447" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-45447" source="CVE"/>
        <description>- CVE-2026-45447: fix use-after-free in PKCS7_verify triggered by a crafted
  PKCS#7 / S-MIME message with an empty digestAlgorithms ASN.1 SET, which made
  OpenSSL free a caller-owned BIO; free the BIO chain explicitly and stop at
  the caller-supplied indata BIO</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-06-18"/>
          <updated date="2026-06-18"/>
          <cve cvss3="9.4/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-825" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-45447" impact="critical" public="20260609">CVE-2026-45447</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:10</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl11 is earlier than 1:1.1.1w-3.4.el10" test_ref="oval:com.tuxcare.clsa:tst:1781801595001"/>
        <criterion comment="alt-openssl11 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653002"/>
        <criterion comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.4.el10" test_ref="oval:com.tuxcare.clsa:tst:1781801595002"/>
        <criterion comment="alt-openssl11-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653004"/>
        <criterion comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.4.el10" test_ref="oval:com.tuxcare.clsa:tst:1781801595003"/>
        <criterion comment="alt-openssl11-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653006"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1785918695" version="1">
      <metadata>
        <title>alt-openssl11: Fix of CVE-2025-69419</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 10</platform>
        </affected>
        <reference ref_id="CLSA-2026:1785918695" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1785918695" source="CLSA"/>
        <reference ref_id="CVE-2025-69419" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2025-69419" source="CVE"/>
        <description>- HollowByte: grow the handshake init_buf incrementally as data is received
  instead of pre-allocating the full peer-declared message size, so a peer
  that claims a large message but never sends it can no longer strand memory
  (ELS-2635). Backport of OpenSSL 3.0 commit c5785a5e35 (PR #30794); handled
  by OpenSSL as a "bug or hardening" fix with no CVE assigned</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-08-05"/>
          <updated date="2026-08-05"/>
          <cve cvss3="7.4/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N" cwe="CWE-787" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2025-69419" impact="important" public="20260127">CVE-2025-69419</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:10</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl11 is earlier than 1:1.1.1w-3.5.el10" test_ref="oval:com.tuxcare.clsa:tst:1785918695001"/>
        <criterion comment="alt-openssl11 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653002"/>
        <criterion comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.5.el10" test_ref="oval:com.tuxcare.clsa:tst:1785918695002"/>
        <criterion comment="alt-openssl11-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653004"/>
        <criterion comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.5.el10" test_ref="oval:com.tuxcare.clsa:tst:1785918695003"/>
        <criterion comment="alt-openssl11-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653006"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1786474088" version="1">
      <metadata>
        <title>alt-openssl11: Fix of 2 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 10</platform>
        </affected>
        <reference ref_id="CLSA-2026:1786474088" ref_url="https://cve.tuxcare.com/els-alt-common/releases/CLSA-2026:1786474088" source="CLSA"/>
        <reference ref_id="CVE-2026-34180" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-34180" source="CVE"/>
        <reference ref_id="CVE-2026-42766" ref_url="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-42766" source="CVE"/>
        <description>- CVE-2026-34180: asn1: avoid content length truncation in asn1_ex_c2i() so a
  primitive element longer than 2GB can no longer cause a heap buffer over-read
- CVE-2026-42766: cms: check that PasswordRecipientInfo.keyDerivationAlgorithm
  is present before dereferencing it, avoiding a NULL pointer dereference</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-08-11"/>
          <updated date="2026-08-11"/>
          <cve cvss3="8.2/CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:H" cwe="CWE-125" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-34180" impact="important" public="20260609">CVE-2026-34180</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-476" href="https://cve.tuxcare.com/els-alt-common/cve/CVE-2026-42766" impact="important" public="20260609">CVE-2026-42766</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:10</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-openssl11 is earlier than 1:1.1.1w-3.6.el10" test_ref="oval:com.tuxcare.clsa:tst:1786474088001"/>
        <criterion comment="alt-openssl11 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653002"/>
        <criterion comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.6.el10" test_ref="oval:com.tuxcare.clsa:tst:1786474088002"/>
        <criterion comment="alt-openssl11-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653004"/>
        <criterion comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.6.el10" test_ref="oval:com.tuxcare.clsa:tst:1786474088003"/>
        <criterion comment="alt-openssl11-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1774531653006"/>
      </criteria>
    </definition>
  </definitions>
  <tests>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11 is earlier than 1:1.1.1w-3.1.el10" id="oval:com.tuxcare.clsa:tst:1774531653001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1774531653001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-openssl11 isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1774531653002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1774531653002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.1.el10" id="oval:com.tuxcare.clsa:tst:1774531653003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1774531653001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-openssl11-devel isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1774531653004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1774531653002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.1.el10" id="oval:com.tuxcare.clsa:tst:1774531653005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1774531653001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-openssl11-libs isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1774531653006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1774531653002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11 is earlier than 1:1.1.1w-3.2.el10" id="oval:com.tuxcare.clsa:tst:1775146316001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1775146316001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.2.el10" id="oval:com.tuxcare.clsa:tst:1775146316002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1775146316001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.2.el10" id="oval:com.tuxcare.clsa:tst:1775146316003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1775146316001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11 is earlier than 1:1.1.1w-3.3.el10" id="oval:com.tuxcare.clsa:tst:1776705233001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776705233001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.3.el10" id="oval:com.tuxcare.clsa:tst:1776705233002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776705233001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.3.el10" id="oval:com.tuxcare.clsa:tst:1776705233003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776705233001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11 is earlier than 1:1.1.1w-3.4.el10" id="oval:com.tuxcare.clsa:tst:1781801595001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781801595001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.4.el10" id="oval:com.tuxcare.clsa:tst:1781801595002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781801595001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.4.el10" id="oval:com.tuxcare.clsa:tst:1781801595003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781801595001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11 is earlier than 1:1.1.1w-3.5.el10" id="oval:com.tuxcare.clsa:tst:1785918695001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1785918695001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.5.el10" id="oval:com.tuxcare.clsa:tst:1785918695002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1785918695001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.5.el10" id="oval:com.tuxcare.clsa:tst:1785918695003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1785918695001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11 is earlier than 1:1.1.1w-3.6.el10" id="oval:com.tuxcare.clsa:tst:1786474088001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1786474088001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-devel is earlier than 1:1.1.1w-3.6.el10" id="oval:com.tuxcare.clsa:tst:1786474088002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1786474088001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-openssl11-libs is earlier than 1:1.1.1w-3.6.el10" id="oval:com.tuxcare.clsa:tst:1786474088003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1774531653005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1786474088001"/>
    </red-def:rpminfo_test>
  </tests>
  <objects>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1774531653001" version="1">
      <red-def:name>alt-openssl11</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1774531653003" version="1">
      <red-def:name>alt-openssl11-devel</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1774531653005" version="1">
      <red-def:name>alt-openssl11-libs</red-def:name>
    </red-def:rpminfo_object>
  </objects>
  <states>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1774531653001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">1:1.1.1w-3.1.el10</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1774531653002" version="1">
      <red-def:signature_keyid operation="equals">d07bf2a08d50eb66</red-def:signature_keyid>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1775146316001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">1:1.1.1w-3.2.el10</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1776705233001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">1:1.1.1w-3.3.el10</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1781801595001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">1:1.1.1w-3.4.el10</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1785918695001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">1:1.1.1w-3.5.el10</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1786474088001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">1:1.1.1w-3.6.el10</red-def:evr>
    </red-def:rpminfo_state>
  </states>
</oval_definitions>
