ELSA-2023-5080

ELSA-2023-5080 - keylime security update

Type:SECURITY
Impact:MODERATE
Release Date:2023-09-13

Description


[6.5.2-6]
- Fix registrar is subject to a DoS against SSL (CVE-2023-38200)
Resolves: rhbz#2222694
- Fix challenge-protocol bypass during agent registration (CVE-2023-38201)
Resolves: rhbz#2222695


Related CVEs


CVE-2023-38201
CVE-2023-38200

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) keylime-6.5.2-6.el9_2.src.rpm72502a7a64736fd15897c05c287d1ca7aff105f505205f2a8476015e6e261e97-ol9_aarch64_appstream
keylime-6.5.2-6.el9_2.aarch64.rpm9f7cc985d867e8b53c81626875441e4cabc2ae0d035cf1d71e331c1d5bcf002c-ol9_aarch64_appstream
keylime-base-6.5.2-6.el9_2.aarch64.rpm45a6e118f3c0b47b0806652b7b6d7e7a4ccbc09b52b3ec6e176e9f926b9bfc71-ol9_aarch64_appstream
keylime-registrar-6.5.2-6.el9_2.aarch64.rpm361c93482cf5d4287b193693d12b6387ea7c223beecc7b6ead2f63b84bd3f0a9-ol9_aarch64_appstream
keylime-selinux-6.5.2-6.el9_2.noarch.rpm2a063eab9abeaa18ed5ba3ea92d0fc55ff3e789a8665658a12d945ac463c4de3-ol9_aarch64_appstream
keylime-tenant-6.5.2-6.el9_2.aarch64.rpmf088840c5311ae6f5e4fd11733f84848edbfa5603b96d40da7644a670c727221-ol9_aarch64_appstream
keylime-verifier-6.5.2-6.el9_2.aarch64.rpmc36a16b8786b8cd256d87d8f5c9de0351838e1a060aecce8f2c1c00edbfd95d7-ol9_aarch64_appstream
python3-keylime-6.5.2-6.el9_2.aarch64.rpmfe93259e19fc50923018e6a4ab1c34a97d2bc3f18cb9246e72650067a037d1fb-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) keylime-6.5.2-6.el9_2.src.rpm72502a7a64736fd15897c05c287d1ca7aff105f505205f2a8476015e6e261e97-ol9_x86_64_appstream
keylime-6.5.2-6.el9_2.x86_64.rpm4c71684cf2b6a7532572e828f8d6f23eadea5b4f7721f8943f1ed0fd1fa6f22f-ol9_x86_64_appstream
keylime-base-6.5.2-6.el9_2.x86_64.rpmccc1bffc58acf7b768dd0bfdfa5120fb1dbc3e1f9ef755229b1895f675ba4b25-ol9_x86_64_appstream
keylime-registrar-6.5.2-6.el9_2.x86_64.rpm66f522f388ecec8523b63f45b8ae0ae66c3d047dc8f5079f6d7ca4d7099dcea7-ol9_x86_64_appstream
keylime-selinux-6.5.2-6.el9_2.noarch.rpm2a063eab9abeaa18ed5ba3ea92d0fc55ff3e789a8665658a12d945ac463c4de3-ol9_x86_64_appstream
keylime-tenant-6.5.2-6.el9_2.x86_64.rpm89dc1f047b1f225572d9658e9121b7fb37a24e195dedc0f00f252888ae305d4d-ol9_x86_64_appstream
keylime-verifier-6.5.2-6.el9_2.x86_64.rpm1647d68c855972606d34e72241eb1209f3deeecc687445d7a5e52ee08befc1d2-ol9_x86_64_appstream
python3-keylime-6.5.2-6.el9_2.x86_64.rpmd3abf01a7694f039a55eb9158941025b8f41183b0de9c5cca16d96ccf184b5b6-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete