libksba-1.3.0-6.el7

エラータID: AXSA:2022-3916:02

Release date: 
Tuesday, October 25, 2022 - 12:41
Subject: 
libksba-1.3.0-6.el7
Affected Channels: 
Asianux Server 7 for x86_64
Severity: 
High
Description: 

KSBA (pronounced Kasbah) is a library to make X.509 certificates as well as the
CMS easily accessible by other applications. Both specifications are building
blocks of S/MIME and TLS.

Security Fix(es):

* libksba: integer overflow may lead to remote code execution (CVE-2022-3515)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.

CVE-2022-3515
** RESERVED ** This candidate has been reserved by an organization or individual
that will use it when announcing a new security problem. When the candidate has
been publicized, the details for this candidate will be provided.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. libksba-1.3.0-6.el7.src.rpm
    MD5: 083e5af64f892e6c38910b7c6d6465b7
    SHA-256: d775db04914419ef42d2b5f4a1e55c2074b9d0d3da0475d2785f14191dc75e37
    Size: 620.86 kB

Asianux Server 7 for x86_64
  1. libksba-1.3.0-6.el7.x86_64.rpm
    MD5: 0c4066098e77c04125cc9c23d545df99
    SHA-256: d84f69ef472cd61a9fc2012ff113a0d0aed63e59e80c4a6b38d4b60ecaa4f21b
    Size: 118.72 kB
  2. libksba-devel-1.3.0-6.el7.x86_64.rpm
    MD5: c39ac755116dffa65757e62caa27c39c
    SHA-256: 3c22d7c45c7253d32d476daea352014930d69f08d39b8ee3ccd012ff32d138d2
    Size: 39.64 kB
  3. libksba-1.3.0-6.el7.i686.rpm
    MD5: c7af1ab00861bf6fcd23ad37a387db48
    SHA-256: 8c9cbace4713580872aeda2e66fc9ce5f8d14f126b8ddd5a62b3852707891357
    Size: 119.78 kB
  4. libksba-devel-1.3.0-6.el7.i686.rpm
    MD5: f1131250635c378cf845be2d2c6a3969
    SHA-256: 339587fc18598ad0745e4dc39ba5efc36a7219618dbbe3dd0183531c27f5ab3a
    Size: 39.68 kB