libtasn1-4.13-4.el8

エラータID: AXSA:2023-4782:01

Release date: 
Wednesday, January 18, 2023 - 02:51
Subject: 
libtasn1-4.13-4.el8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

A library that provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions.

Security Fix(es):

* libtasn1: Out-of-bound access in ETYPE_OK (CVE-2021-46848)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2021-46848
GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects asn1_encode_simple_der.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. libtasn1-4.13-4.el8.src.rpm
    MD5: 72d7ffd2f15b21cc07d11ee87a8959ea
    SHA-256: f770b7cb3e8e5726ef6d058352e6f5b951b6e4b63d38ecdf41522eb7a12c386c
    Size: 1.87 MB

Asianux Server 8 for x86_64
  1. libtasn1-4.13-4.el8.x86_64.rpm
    MD5: 2a04e0e69a5b009dc6b37e4957a1db9f
    SHA-256: fd415df943ae22319181357415fb32cf56c870385cbc1c71a812735d90d77e08
    Size: 75.09 kB
  2. libtasn1-devel-4.13-4.el8.x86_64.rpm
    MD5: aeb275885af0ca924423474db85a4f07
    SHA-256: 8241556bdfc959dcfb78c7dd0d4ded930d3397c6ec6335f560afdcec703053bb
    Size: 333.83 kB
  3. libtasn1-tools-4.13-4.el8.x86_64.rpm
    MD5: 12ac781020a625a078d527449e59dc3d
    SHA-256: cafe211ae7f40da2410bebd2d7791a62f099a3f9465503b5aa2a8ff0d983fd10
    Size: 33.67 kB
  4. libtasn1-4.13-4.el8.i686.rpm
    MD5: 7d58cbf91de1310df5f34b7913754fa3
    SHA-256: 9d195f5ac78e70a686fdcf1f6ce1815c1db5f513dae9efb28547d530496ec098
    Size: 77.99 kB
  5. libtasn1-devel-4.13-4.el8.i686.rpm
    MD5: db02d8629a405b86d54145313a2c1686
    SHA-256: 4329bbbb7ef28a110dfb51d9d75495244f65be82acb98a447597f50a41965e90
    Size: 333.86 kB