[ALSA-2023:7166] Low: tpm2-tss security and enhancement update
Type:
security
Severity:
low
Release date:
2023-11-23
Description:
The tpm2-tss packages provide the Intel implementation of the Trusted Platform Module (TPM) 2.0 System API library. This library enables programs to interact with TPM 2.0 devices Security Fix(es): * tpm2-tss: Buffer Overlow in TSS2_RC_Decode (CVE-2023-22745) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 tpm2-tss-2.3.2-5.el8.aarch64.rpm ba51840bb8eb43c3e6c21a2b6fd641e5dd544d624357e485f3eea019c6e07a39
aarch64 tpm2-tss-devel-2.3.2-5.el8.aarch64.rpm dc974fd9a0dd2edfabe29492208836012b5f6a691f6cf718bfb46df6c273dbc1
i686 tpm2-tss-devel-2.3.2-5.el8.i686.rpm d2636f5158dc2b7d047488c6bb3709cf3c40258d963e2a9fd0b57e1a755e1103
i686 tpm2-tss-2.3.2-5.el8.i686.rpm e3f8d5daa16705046f84202be03cc1ed8b46102183a21dc29c539f4c377dc295
ppc64le tpm2-tss-devel-2.3.2-5.el8.ppc64le.rpm 26f27226b68701b20272fe089637294a7a12df0c92db7bc032031e676d99c069
ppc64le tpm2-tss-2.3.2-5.el8.ppc64le.rpm d5781947e3a2b1534fda30db363a6dbd677bb2a3e3a2f4fcec24857619d15a0f
s390x tpm2-tss-devel-2.3.2-5.el8.s390x.rpm 471c9e6f953b03518a664b7498180ecb54cbd647f90ba0f288fbcf427b4801af
s390x tpm2-tss-2.3.2-5.el8.s390x.rpm dbaba395933c4d1064b4dad271a6d8d4ef72c6dd081cfee25018f3cb9b745843
x86_64 tpm2-tss-2.3.2-5.el8.x86_64.rpm 2cda151eea647af2b9a6018ce87f751f2d244bca52381b526153377ce3c89ecf
x86_64 tpm2-tss-devel-2.3.2-5.el8.x86_64.rpm 4e6c52a2552312015e0881976105eb53cd0620535c92d69decec296a3f9d0f85
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.