Описание
ELSA-2026-18143: p11-kit security update (MODERATE)
[0.26.2-1]
- Rebase to 0.26.2
[0.26.1-1]
- Rebase to 0.26.1
[0.25.10-1]
- Rebase to 0.25.10
[0.25.9-1]
- Rebase to 0.25.9
Обновленные пакеты
Oracle Linux 10
Oracle Linux aarch64
p11-kit-devel
0.26.2-1.el10
p11-kit-server
0.26.2-1.el10
p11-kit
0.26.2-1.el10
p11-kit-client
0.26.2-1.el10
p11-kit-trust
0.26.2-1.el10
Oracle Linux x86_64
p11-kit
0.26.2-1.el10
p11-kit-client
0.26.2-1.el10
p11-kit-trust
0.26.2-1.el10
p11-kit-devel
0.26.2-1.el10
p11-kit-server
0.26.2-1.el10
Связанные CVE
Связанные уязвимости
A flaw was found in p11-kit. A remote attacker could exploit this vulnerability by calling the C_DeriveKey function on a remote token with specific IBM kyber or IBM btc derive mechanism parameters set to NULL. This could lead to the RPC-client attempting to return an uninitialized value, potentially resulting in a NULL dereference or undefined behavior. This issue may cause an application level denial of service or other unpredictable system states.
A flaw was found in p11-kit. A remote attacker could exploit this vulnerability by calling the C_DeriveKey function on a remote token with specific IBM kyber or IBM btc derive mechanism parameters set to NULL. This could lead to the RPC-client attempting to return an uninitialized value, potentially resulting in a NULL dereference or undefined behavior. This issue may cause an application level denial of service or other unpredictable system states.
A flaw was found in p11-kit. A remote attacker could exploit this vulnerability by calling the C_DeriveKey function on a remote token with specific IBM kyber or IBM btc derive mechanism parameters set to NULL. This could lead to the RPC-client attempting to return an uninitialized value, potentially resulting in a NULL dereference or undefined behavior. This issue may cause an application level denial of service or other unpredictable system states.
P11-kit: p11-kit: null dereference via c_derivekey with specific null parameters
A flaw was found in p11-kit. A remote attacker could exploit this vuln ...