Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-7022

Опубликовано: 17 нояб. 2023
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2023-7022: tang security and bug fix update (MODERATE)

[7-8]

  • Set correct user/group (tang/tang) in tangd-keygen Resolves: rhbz#2188743

[7-7]

  • Fix race condition when creating/rotating keys Resolves: rhbz#2182410 Resolves: CVE-2023-1672

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

tang

7-8.el8

Oracle Linux x86_64

tang

7-8.el8

Связанные CVE

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 2 лет назад

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

CVSS3: 5.3
redhat
около 2 лет назад

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

CVSS3: 5.3
nvd
около 2 лет назад

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

CVSS3: 5.3
debian
около 2 лет назад

A race condition exists in the Tang server functionality for key gener ...

CVSS3: 5.3
github
около 2 лет назад

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.