[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RLSA-2021:1609 --- p11-kit

ID: oval:org.secpod.oval:def:4501340Date: (C)2023-04-03   (M)2023-12-20
Class: PATCHFamily: unix




The p11-kit packages provide a mechanism to manage PKCS#11 modules. The p11-kit-trust subpackage includes a PKCS#11 trust module that provides certificate anchors and black lists based on configuration files. The following packages have been upgraded to a later upstream version: p11-kit . Security Fix: * p11-kit: integer overflow when allocating memory for arrays or attributes and object identifiers * p11-kit: out-of-bounds read in p11_rpc_buffer_get_byte_array function in rpc-message.c * p11-kit: out-of-bounds write in p11_rpc_buffer_get_byte_array_value function in rpc-message.c For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section.

Platform:
Rocky Linux 8
Product:
p11-kit
Reference:
RLSA-2021:1609
CVE-2020-29361
CVE-2020-29362
CVE-2020-29363
CVE    3
CVE-2020-29361
CVE-2020-29363
CVE-2020-29362
CPE    1
cpe:/a:freedesktop:p11-kit

© SecPod Technologies