rpm-4.14.3-14.el8
エラータID: AXSA:2021-2180:05
リリース日:
2021/07/12 Monday - 05:19
題名:
rpm-4.14.3-14.el8
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- RPM にはパッケージファイルを読み込む際の署名検証の機能に問題があり、攻撃者は署
名ヘッダーを変更した一見検証可能なパッケージをインストールさせることで、RPM デー
タベースの破損を発生させたり、コードが実行される脆弱性があります。(CVE-2021-20271)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2021-20271
A flaw was found in RPM's signature check functionality when reading a package file. This flaw allows an attacker who can convince a victim to install a seemingly verifiable package, whose signature header was modified, to cause RPM database corruption and execute code. The highest threat from this vulnerability is to data integrity, confidentiality, and system availability.
A flaw was found in RPM's signature check functionality when reading a package file. This flaw allows an attacker who can convince a victim to install a seemingly verifiable package, whose signature header was modified, to cause RPM database corruption and execute code. The highest threat from this vulnerability is to data integrity, confidentiality, and system availability.
追加情報:
N/A
ダウンロード:
SRPMS
- rpm-4.14.3-14.el8.src.rpm
MD5: 1e4779f770c3ab0f0a086b7cf623560b
SHA-256: 90e993e8efcc0cff9f35c745f814580ad54ad3833fc9622506fdf3636c6d0b52
Size: 4.97 MB
Asianux Server 8 for x86_64
- python3-rpm-4.14.3-14.el8.x86_64.rpm
MD5: afb58e08f8aeb23015ec53199559e271
SHA-256: ba1d409f76d872244063ae99ab66c3ed763a569c792a611fffc197799b61bdbf
Size: 156.71 kB - rpm-4.14.3-14.el8.x86_64.rpm
MD5: 72d02597c895e8f942a80f5099cea55b
SHA-256: 377b28f0d8358b8906bef3a2c07057ab9018adb13df96662642dc59225268c1e
Size: 540.80 kB - rpm-apidocs-4.14.3-14.el8.noarch.rpm
MD5: 16ff7b25b03226019a9c4995f7ddf3f7
SHA-256: 64bfedda9f1049538020fc6f9f33a4ee0a95f049ff13837ee8ecb54dd9ac5365
Size: 1.76 MB - rpm-build-4.14.3-14.el8.x86_64.rpm
MD5: f41c86a11eaa44062f6ad4554b996790
SHA-256: 6b32ed74338d7cede6e31bb91852601e32223b000dc8b69df9c5fb3a56bd2339
Size: 171.65 kB - rpm-build-libs-4.14.3-14.el8.x86_64.rpm
MD5: 3b67628e63d092726bc31bbce0d59114
SHA-256: 5b7eb31f0c4f304dc41f6d348f513d69ea5e20e3ca3de3de93d615366808d212
Size: 154.37 kB - rpm-cron-4.14.3-14.el8.noarch.rpm
MD5: d324bcce25582ff0617c163f82bf40b2
SHA-256: e0266144b092593ab6c1f8b60f4189f7c0ff52da5ab749f5d5da382fcbd2bb9d
Size: 70.62 kB - rpm-devel-4.14.3-14.el8.x86_64.rpm
MD5: bea2d2a4e5349e6a804b6a039c0f8bf4
SHA-256: f849d028b16b3aab5c46e391d411ebf558a7609c7770c8e40aa1c1ed843e9885
Size: 141.05 kB - rpm-libs-4.14.3-14.el8.x86_64.rpm
MD5: 8d99abd256e9803fd21486fbd070b3f7
SHA-256: f4d295714a7506e4d3858176076bb50e27f79ee76caf00597ee0e630645863d5
Size: 338.34 kB - rpm-plugin-fapolicyd-4.14.3-14.el8.x86_64.rpm
MD5: 8662bd729e2341d9927f503d506ea454
SHA-256: c67b9aaf39e3f5c4f3615084094f3014dc4a860c5a9c99efb6eed8454c95d1f5
Size: 76.20 kB - rpm-plugin-ima-4.14.3-14.el8.x86_64.rpm
MD5: 2f7cb0e7ad7dc571d1ce40cc468d3305
SHA-256: 2cc123aac283b32a30dc6f2ba02fc3e0393ee555801fd45fdf7617360f4fb26d
Size: 74.25 kB - rpm-plugin-prioreset-4.14.3-14.el8.x86_64.rpm
MD5: 2a42212ded51075a75de8fa351552e25
SHA-256: 33d4327aef6da59dc4baa0aec891b4e47b3ee2a9709ebfb89f9d5f91e28e0833
Size: 74.25 kB - rpm-plugin-selinux-4.14.3-14.el8.x86_64.rpm
MD5: 643892b15ecf32a78ba884d60c38df5b
SHA-256: 935973398b542201e38f7d0a09a20851118ae3a4b2a05fa5c4566f144428d569
Size: 75.16 kB - rpm-plugin-syslog-4.14.3-14.el8.x86_64.rpm
MD5: 1c1743c82ee8b67c6a77c1754ab16810
SHA-256: 31c296834839fdf6694b0c99f68222b571469f951dfcce773036bb72d5ef16b0
Size: 74.77 kB - rpm-plugin-systemd-inhibit-4.14.3-14.el8.x86_64.rpm
MD5: 1c0f97ce31364aef4d5249f4d46037a2
SHA-256: 41fe2d38ecf87f228a9503166d61edd806d3ce27c4ce8e507b0b4d60bc553ebc
Size: 76.35 kB - rpm-sign-4.14.3-14.el8.x86_64.rpm
MD5: 491abc6df2392cae86aa361f34b8603f
SHA-256: e8edd4886bc5e6fbb0ee1a3feb0db4b918dab6710d310e58b51720d81330ba2b
Size: 78.86 kB - rpm-build-libs-4.14.3-14.el8.i686.rpm
MD5: f80b519fd0c46f448d9118170bbfa6c9
SHA-256: dac4ef78098f0b5b78fb537b9de9edcef5ec0377f52ba277c6261e1586599180
Size: 164.20 kB - rpm-devel-4.14.3-14.el8.i686.rpm
MD5: cad474d95010b392a84552481a87bde0
SHA-256: c2861f148f5b1466b7142ddd9d99c71f5aa2633fd9003ea757b3281bad6a4dae
Size: 140.90 kB - rpm-libs-4.14.3-14.el8.i686.rpm
MD5: c6063e4bf9403620fa6ac028856de8ea
SHA-256: 5f34ae79666c2e5154974e437991b39dd86b9522df7d61a13ecf5cc7039b0ad4
Size: 368.36 kB