[ALSA-2022:0368] Moderate: rpm security update
Type:
security
Severity:
moderate
Release date:
2022-02-02
Description:
The RPM Package Manager (RPM) is a command-line driven package management system capable of installing, uninstalling, verifying, querying, and updating software packages. Security Fix(es): * rpm: RPM does not require subkeys to have a valid binding signature (CVE-2021-3521) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
References:
Updated packages:
  • rpm-build-4.14.3-19.el8_5.2.x86_64.rpm
  • rpm-plugin-fapolicyd-4.14.3-19.el8_5.2.x86_64.rpm
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.