Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2021:4154-1

Опубликовано: 22 дек. 2021
Источник: suse-cvrf

Описание

Security update for p11-kit

This update for p11-kit fixes the following issues:

  • CVE-2020-29361: Fixed multiple integer overflows in rpc code (bsc#1180064)
  • Add support for CKA_NSS_{SERVER,EMAIL}_DISTRUST_AFTER (bsc#1187993).

Список пакетов

openSUSE Leap 15.3
libp11-kit0-0.23.2-4.13.1
libp11-kit0-32bit-0.23.2-4.13.1
p11-kit-0.23.2-4.13.1
p11-kit-32bit-0.23.2-4.13.1
p11-kit-devel-0.23.2-4.13.1
p11-kit-nss-trust-0.23.2-4.13.1
p11-kit-nss-trust-32bit-0.23.2-4.13.1
p11-kit-tools-0.23.2-4.13.1

Описание

An issue was discovered in p11-kit 0.21.1 through 0.23.21. Multiple integer overflows have been discovered in the array allocations in the p11-kit library and the p11-kit list command, where overflow checks are missing before calling realloc or calloc.


Затронутые продукты
openSUSE Leap 15.3:libp11-kit0-0.23.2-4.13.1
openSUSE Leap 15.3:libp11-kit0-32bit-0.23.2-4.13.1
openSUSE Leap 15.3:p11-kit-0.23.2-4.13.1
openSUSE Leap 15.3:p11-kit-32bit-0.23.2-4.13.1

Ссылки