ELSA-2022-9240

ELSA-2022-9240 - libtpms security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2022-03-22

Description


libtpms
[0.8.8-1.el7]
- spec: Update spec file to version 0.8.8

* Fri Sep 17 2021 Stefan Berger - 0.8.7-1
- tpm2: Fixes for building and running with OpenSSL 3.0

* Fri Sep 10 2021 Stefan Berger - 0.8.6-1
- tpm2: Marshal event sequence objects' hash state

* Wed Sep 01 2021 Stefan Berger - 0.8.5-1
- tpm2: NVMarshal: Handle index orderly RAM without 0-sized terminating node
- tpm2: Initialize a whole OBJECT before using it

* Wed Jun 23 2021 Stefan Berger - 0.8.4-1
- tpm2: Reset too large size indicators in TPM2B to avoid access beyond buffer

* Tue Jun 01 2021 Stefan Berger - 0.8.3-1
- tpm2: Work-around for Windows 2016 & 2019 bug related to ContextLoad

swtpm
[0.3.4-5.el7]
- swtpm: Check header size indicator against expected size (CID 375869) (Stefan
Berger) [Orabug: 33876933] {CVE-2022-23645}


Related CVEs


CVE-2021-3623
CVE-2022-23645

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) libtpms-0.8.8-1.el7.src.rpmee12e2ffebbe51d769aadeef2b4c0777-
swtpm-0.3.4-5.el7.src.rpmefbb4679a006e5a37132c9bb3666e9da-
libtpms-0.8.8-1.el7.x86_64.rpm733f4cf2c207241fa6207923e90d6443-
libtpms-devel-0.8.8-1.el7.x86_64.rpmd46328bbd52f7181cc8b190219de05ed-
swtpm-0.3.4-5.el7.x86_64.rpm1e0ed6b8192e41bf300ffd4d728f5da8-
swtpm-devel-0.3.4-5.el7.x86_64.rpm6ab8e23954ba4634e80f7c6d69955af0-
swtpm-libs-0.3.4-5.el7.x86_64.rpm384b5dee28475efd7bba819fb1fd3c6c-
swtpm-tools-0.3.4-5.el7.x86_64.rpmdf6375945dbed1acf6740f14554bffd9-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete