This update for erlang fixes the following issues
public_key application accepts non-CA certificates as intermediate issuers and this enables chain
forgery (bsc#1266449).public_key application does not check the validity period of the
OCSP responder certificate and allows for OCSP response response forgery (bsc#1266448).