rpm-4.14.3-14.el8

エラータID: AXSA:2021-2180:05

Release date: 
Monday, July 12, 2021 - 05:19
Subject: 
rpm-4.14.3-14.el8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

The RPM Package Manager (RPM) is a command-line driven package management system capable of installing, uninstalling, verifying, querying, and updating software packages.

Security Fix(es):

* rpm: Signature checks bypass via corrupted rpm package (CVE-2021-20271)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2021-20271
A flaw was found in RPM's signature check functionality when reading a package file. This flaw allows an attacker who can convince a victim to install a seemingly verifiable package, whose signature header was modified, to cause RPM database corruption and execute code. The highest threat from this vulnerability is to data integrity, confidentiality, and system availability.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. rpm-4.14.3-14.el8.src.rpm
    MD5: 1e4779f770c3ab0f0a086b7cf623560b
    SHA-256: 90e993e8efcc0cff9f35c745f814580ad54ad3833fc9622506fdf3636c6d0b52
    Size: 4.97 MB

Asianux Server 8 for x86_64
  1. python3-rpm-4.14.3-14.el8.x86_64.rpm
    MD5: afb58e08f8aeb23015ec53199559e271
    SHA-256: ba1d409f76d872244063ae99ab66c3ed763a569c792a611fffc197799b61bdbf
    Size: 156.71 kB
  2. rpm-4.14.3-14.el8.x86_64.rpm
    MD5: 72d02597c895e8f942a80f5099cea55b
    SHA-256: 377b28f0d8358b8906bef3a2c07057ab9018adb13df96662642dc59225268c1e
    Size: 540.80 kB
  3. rpm-apidocs-4.14.3-14.el8.noarch.rpm
    MD5: 16ff7b25b03226019a9c4995f7ddf3f7
    SHA-256: 64bfedda9f1049538020fc6f9f33a4ee0a95f049ff13837ee8ecb54dd9ac5365
    Size: 1.76 MB
  4. rpm-build-4.14.3-14.el8.x86_64.rpm
    MD5: f41c86a11eaa44062f6ad4554b996790
    SHA-256: 6b32ed74338d7cede6e31bb91852601e32223b000dc8b69df9c5fb3a56bd2339
    Size: 171.65 kB
  5. rpm-build-libs-4.14.3-14.el8.x86_64.rpm
    MD5: 3b67628e63d092726bc31bbce0d59114
    SHA-256: 5b7eb31f0c4f304dc41f6d348f513d69ea5e20e3ca3de3de93d615366808d212
    Size: 154.37 kB
  6. rpm-cron-4.14.3-14.el8.noarch.rpm
    MD5: d324bcce25582ff0617c163f82bf40b2
    SHA-256: e0266144b092593ab6c1f8b60f4189f7c0ff52da5ab749f5d5da382fcbd2bb9d
    Size: 70.62 kB
  7. rpm-devel-4.14.3-14.el8.x86_64.rpm
    MD5: bea2d2a4e5349e6a804b6a039c0f8bf4
    SHA-256: f849d028b16b3aab5c46e391d411ebf558a7609c7770c8e40aa1c1ed843e9885
    Size: 141.05 kB
  8. rpm-libs-4.14.3-14.el8.x86_64.rpm
    MD5: 8d99abd256e9803fd21486fbd070b3f7
    SHA-256: f4d295714a7506e4d3858176076bb50e27f79ee76caf00597ee0e630645863d5
    Size: 338.34 kB
  9. rpm-plugin-fapolicyd-4.14.3-14.el8.x86_64.rpm
    MD5: 8662bd729e2341d9927f503d506ea454
    SHA-256: c67b9aaf39e3f5c4f3615084094f3014dc4a860c5a9c99efb6eed8454c95d1f5
    Size: 76.20 kB
  10. rpm-plugin-ima-4.14.3-14.el8.x86_64.rpm
    MD5: 2f7cb0e7ad7dc571d1ce40cc468d3305
    SHA-256: 2cc123aac283b32a30dc6f2ba02fc3e0393ee555801fd45fdf7617360f4fb26d
    Size: 74.25 kB
  11. rpm-plugin-prioreset-4.14.3-14.el8.x86_64.rpm
    MD5: 2a42212ded51075a75de8fa351552e25
    SHA-256: 33d4327aef6da59dc4baa0aec891b4e47b3ee2a9709ebfb89f9d5f91e28e0833
    Size: 74.25 kB
  12. rpm-plugin-selinux-4.14.3-14.el8.x86_64.rpm
    MD5: 643892b15ecf32a78ba884d60c38df5b
    SHA-256: 935973398b542201e38f7d0a09a20851118ae3a4b2a05fa5c4566f144428d569
    Size: 75.16 kB
  13. rpm-plugin-syslog-4.14.3-14.el8.x86_64.rpm
    MD5: 1c1743c82ee8b67c6a77c1754ab16810
    SHA-256: 31c296834839fdf6694b0c99f68222b571469f951dfcce773036bb72d5ef16b0
    Size: 74.77 kB
  14. rpm-plugin-systemd-inhibit-4.14.3-14.el8.x86_64.rpm
    MD5: 1c0f97ce31364aef4d5249f4d46037a2
    SHA-256: 41fe2d38ecf87f228a9503166d61edd806d3ce27c4ce8e507b0b4d60bc553ebc
    Size: 76.35 kB
  15. rpm-sign-4.14.3-14.el8.x86_64.rpm
    MD5: 491abc6df2392cae86aa361f34b8603f
    SHA-256: e8edd4886bc5e6fbb0ee1a3feb0db4b918dab6710d310e58b51720d81330ba2b
    Size: 78.86 kB
  16. rpm-build-libs-4.14.3-14.el8.i686.rpm
    MD5: f80b519fd0c46f448d9118170bbfa6c9
    SHA-256: dac4ef78098f0b5b78fb537b9de9edcef5ec0377f52ba277c6261e1586599180
    Size: 164.20 kB
  17. rpm-devel-4.14.3-14.el8.i686.rpm
    MD5: cad474d95010b392a84552481a87bde0
    SHA-256: c2861f148f5b1466b7142ddd9d99c71f5aa2633fd9003ea757b3281bad6a4dae
    Size: 140.90 kB
  18. rpm-libs-4.14.3-14.el8.i686.rpm
    MD5: c6063e4bf9403620fa6ac028856de8ea
    SHA-256: 5f34ae79666c2e5154974e437991b39dd86b9522df7d61a13ecf5cc7039b0ad4
    Size: 368.36 kB