Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:01631-1

Опубликовано: 21 мая 2025
Источник: suse-cvrf

Описание

Security update for s390-tools

This update for s390-tools rebuilds the existing package with the new 4k RSA secure boot key.

Security issues fixed:

  • CVE-2025-3416: Fixed Use-After-Free in Md::fetch and Cipher::fetch in rust-openssl crate. (bsc#1242622)

Other issues:

  • Added the new IBM z17 (9175) processor type

Список пакетов

SUSE Linux Enterprise Micro 5.3
libekmfweb1-2.31.0-150400.7.31.1
libkmipclient1-2.31.0-150400.7.31.1
s390-tools-2.31.0-150400.7.31.1
s390-tools-genprotimg-data-2.31.0-150400.7.31.1
SUSE Linux Enterprise Micro 5.4
libekmfweb1-2.31.0-150400.7.31.1
libkmipclient1-2.31.0-150400.7.31.1
s390-tools-2.31.0-150400.7.31.1
s390-tools-genprotimg-data-2.31.0-150400.7.31.1
SUSE Linux Enterprise Server 15 SP4-LTSS
libekmfweb1-2.31.0-150400.7.31.1
libekmfweb1-devel-2.31.0-150400.7.31.1
libkmipclient1-2.31.0-150400.7.31.1
osasnmpd-2.31.0-150400.7.31.1
s390-tools-2.31.0-150400.7.31.1
s390-tools-chreipl-fcp-mpath-2.31.0-150400.7.31.1
s390-tools-genprotimg-data-2.31.0-150400.7.31.1
s390-tools-hmcdrvfs-2.31.0-150400.7.31.1
s390-tools-zdsfs-2.31.0-150400.7.31.1
SUSE Manager Server 4.3
libekmfweb1-2.31.0-150400.7.31.1
libekmfweb1-devel-2.31.0-150400.7.31.1
libkmipclient1-2.31.0-150400.7.31.1
osasnmpd-2.31.0-150400.7.31.1
s390-tools-2.31.0-150400.7.31.1
s390-tools-chreipl-fcp-mpath-2.31.0-150400.7.31.1
s390-tools-genprotimg-data-2.31.0-150400.7.31.1
s390-tools-hmcdrvfs-2.31.0-150400.7.31.1
s390-tools-zdsfs-2.31.0-150400.7.31.1

Описание

A flaw was found in OpenSSL's handling of the properties argument in certain functions. This vulnerability can allow use-after-free exploitation, which may result in undefined behavior or incorrect property parsing, leading to OpenSSL treating the input as an empty string.


Затронутые продукты
SUSE Linux Enterprise Micro 5.3:libekmfweb1-2.31.0-150400.7.31.1
SUSE Linux Enterprise Micro 5.3:libkmipclient1-2.31.0-150400.7.31.1
SUSE Linux Enterprise Micro 5.3:s390-tools-2.31.0-150400.7.31.1
SUSE Linux Enterprise Micro 5.3:s390-tools-genprotimg-data-2.31.0-150400.7.31.1

Ссылки