ELSA-2023-7879

ELSA-2023-7879 - opensc security update

Type:SECURITY
Impact:MODERATE
Release Date:2023-12-19

Description


[0.23.0-3]
- Fix file caching with different offsets (RHEL-4079)
- Fix CVE-2023-40660: Potential PIN bypass
- Fix CVE-2023-40661: Dynamic analyzers reports in pkcs15init
- Fix CVE-2023-4535: Out-of-bounds read in MyEID driver handling encryption using symmetric keys
- Fix CVE-2023-5992: Side-channel leaks while stripping encryption PKCS#1.5 padding


Related CVEs


CVE-2023-40661
CVE-2023-40660
CVE-2023-4535

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) opensc-0.23.0-3.el9_3.src.rpmcdd614b85f2a8093955aceaacaf3cd13218f0b5b2da805decc7ee02a0abf6e15-ol9_aarch64_baseos_latest
opensc-0.23.0-3.el9_3.aarch64.rpm10544a6933f5e7f1f4df92c4b503b5ca565f2597fca3ccabaf7207e8a4b586d5-ol9_aarch64_baseos_latest
Oracle Linux 9 (x86_64) opensc-0.23.0-3.el9_3.src.rpmcdd614b85f2a8093955aceaacaf3cd13218f0b5b2da805decc7ee02a0abf6e15-ol9_x86_64_baseos_latest
opensc-0.23.0-3.el9_3.i686.rpmc668206963fd4313d67ebddf7e2c8a28801263328a0c333b51e10a9a13910e1f-ol9_x86_64_baseos_latest
opensc-0.23.0-3.el9_3.x86_64.rpmcfcb1653dfb3c5e04df7c5236f6cd8e93bea8664bfaaee3b795602fd7587648b-ol9_x86_64_baseos_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete