Описание
Security update for opensc
This update for opensc fixes the following issues:
- CVE-2023-5992: Fixed side-channel leaks while stripping encryption PKCS#1 padding (bsc#1219386).
Список пакетов
SUSE Linux Enterprise Module for Basesystem 15 SP6
opensc-0.22.0-150600.11.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP7
opensc-0.22.0-150600.11.6.1
openSUSE Leap 15.6
opensc-0.22.0-150600.11.6.1
opensc-32bit-0.22.0-150600.11.6.1
Ссылки
- Link for SUSE-SU-2025:02754-1
- E-Mail link for SUSE-SU-2025:02754-1
- SUSE Security Ratings
- SUSE Bug 1219386
- SUSE CVE CVE-2023-5992 page
Описание
A vulnerability was found in OpenSC where PKCS#1 encryption padding removal is not implemented as side-channel resistant. This issue may result in the potential leak of private data.
Затронутые продукты
SUSE Linux Enterprise Module for Basesystem 15 SP6:opensc-0.22.0-150600.11.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP7:opensc-0.22.0-150600.11.6.1
openSUSE Leap 15.6:opensc-0.22.0-150600.11.6.1
openSUSE Leap 15.6:opensc-32bit-0.22.0-150600.11.6.1
Ссылки
- CVE-2023-5992
- SUSE Bug 1219386