Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:02754-1

Опубликовано: 12 авг. 2025
Источник: suse-cvrf

Описание

Security update for opensc

This update for opensc fixes the following issues:

  • CVE-2023-5992: Fixed side-channel leaks while stripping encryption PKCS#1 padding (bsc#1219386).

Список пакетов

SUSE Linux Enterprise Module for Basesystem 15 SP6
opensc-0.22.0-150600.11.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP7
opensc-0.22.0-150600.11.6.1
openSUSE Leap 15.6
opensc-0.22.0-150600.11.6.1
opensc-32bit-0.22.0-150600.11.6.1

Описание

A vulnerability was found in OpenSC where PKCS#1 encryption padding removal is not implemented as side-channel resistant. This issue may result in the potential leak of private data.


Затронутые продукты
SUSE Linux Enterprise Module for Basesystem 15 SP6:opensc-0.22.0-150600.11.6.1
SUSE Linux Enterprise Module for Basesystem 15 SP7:opensc-0.22.0-150600.11.6.1
openSUSE Leap 15.6:opensc-0.22.0-150600.11.6.1
openSUSE Leap 15.6:opensc-32bit-0.22.0-150600.11.6.1

Ссылки
Уязвимость SUSE-SU-2025:02754-1