[ALSA-2024:1608] Moderate: opencryptoki security update
Type:
security
Severity:
moderate
Release date:
2024-04-03
Description:
The opencryptoki packages contain version 2.11 of the PKCS#11 API, implemented for IBM Cryptocards, such as IBM 4764 and 4765 crypto cards. These packages includes support for the IBM 4758 Cryptographic CoProcessor (with the PKCS#11 firmware loaded), the IBM eServer Cryptographic Accelerator (FC 4960 on IBM eServer System p), the IBM Crypto Express2 (FC 0863 or FC 0870 on IBM System z), and the IBM CP Assist for Cryptographic Function (FC 3863 on IBM System z). The opencryptoki packages also bring a software token implementation that can be used without any cryptographic hardware. These packages contain the Slot Daemon (pkcsslotd) and general utilities. Security Fix(es): * opencryptoki: timing side-channel in handling of RSA PKCS#1 v1.5 padded ciphertexts (Marvin) (CVE-2024-0914) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 opencryptoki-swtok-3.21.0-10.el8_9.alma.1.aarch64.rpm 30f3dad21d41b50ce883ea2b578d86ed57baeb5562cb72f1b0d76c8532b4a31e
aarch64 opencryptoki-devel-3.21.0-10.el8_9.alma.1.aarch64.rpm 377ff0f220a0699949cb58363749d86ac2a709ca0f39dfec18ab13e3f8b3d87c
aarch64 opencryptoki-3.21.0-10.el8_9.alma.1.aarch64.rpm 624054fa9fee210f9c61a3972f0a7a48314b4fc6431c9b69cc76cdd35f750eef
aarch64 opencryptoki-icsftok-3.21.0-10.el8_9.alma.1.aarch64.rpm 939df047cdfd3e92965252fbeaf7b429c8b978cc4aaea141cf51367710bed576
aarch64 opencryptoki-tpmtok-3.21.0-10.el8_9.alma.1.aarch64.rpm a63faf2752a298054a3c39c9e869c18f3afcbeb283df776e581df7b55b7fa146
aarch64 opencryptoki-libs-3.21.0-10.el8_9.alma.1.aarch64.rpm e49570a0c0e6dbe9b67b3dbae424f718845f9ccc93ce300a82131a70396498a3
i686 opencryptoki-devel-3.21.0-10.el8_9.alma.1.i686.rpm b26a5016ac8d1297041e9a309bf602322326248de2bf0dc01ba4c29f1c53d738
i686 opencryptoki-libs-3.21.0-10.el8_9.alma.1.i686.rpm f9619fd0aa8164f6f38f418a417fd3f04d04816eba25c42fc291c45a59c9b86c
ppc64le opencryptoki-3.21.0-10.el8_9.alma.1.ppc64le.rpm 16b1f0fc514948fa7b54e33c773883ad016f005fc72f6627279490cf69da463c
ppc64le opencryptoki-libs-3.21.0-10.el8_9.alma.1.ppc64le.rpm 529c5f392da0baee940f304680b0d1bcf3d9649d16c627658c6c8d087251a70b
ppc64le opencryptoki-tpmtok-3.21.0-10.el8_9.alma.1.ppc64le.rpm 892c00697f2cd4c55cfb5b506a581173057893447a43b24584bbce0c59829b7a
ppc64le opencryptoki-icsftok-3.21.0-10.el8_9.alma.1.ppc64le.rpm a9f86f014393d0257e1e79d962cb6f61bf2789aef8f0f7fb8864905cb36ca95c
ppc64le opencryptoki-swtok-3.21.0-10.el8_9.alma.1.ppc64le.rpm aaecb3793bda9e05549d3b778d76878f729e113a3697a35a4edf93d6226ea25f
ppc64le opencryptoki-devel-3.21.0-10.el8_9.alma.1.ppc64le.rpm e2871dc310a96c53ab236336039ddac7377c5a8586346ccbd15c732f3610cc33
s390x opencryptoki-libs-3.21.0-10.el8_9.alma.1.s390x.rpm 2e7453fcc8eb82845b95af8428ec6e527fa4d2cb5c4091128d7f6fc315f1a26a
s390x opencryptoki-devel-3.21.0-10.el8_9.alma.1.s390x.rpm 30a993a7820a5ba32c7d3601cee4419eaf669174b9f15f4414e481de16fb4224
s390x opencryptoki-tpmtok-3.21.0-10.el8_9.alma.1.s390x.rpm 42b84b0fdae7c9c3e4c96f5df80e649181954e069f9fedde5cca5da03c2e73ac
s390x opencryptoki-icatok-3.21.0-10.el8_9.alma.1.s390x.rpm 4e94f65c6ea395bc2fb72bbc11b9705e6c952e8615f6a923930bf5d2d2cbcaac
s390x opencryptoki-icsftok-3.21.0-10.el8_9.alma.1.s390x.rpm ad49ba627f977b97e47cc60238ea41506f33f104ac29d01a99c15484d33a6346
s390x opencryptoki-3.21.0-10.el8_9.alma.1.s390x.rpm bacbb4efed90451eae5079b87db9bc37cb4f7c9ed3df719eb2b42d888ffa5ff6
s390x opencryptoki-ccatok-3.21.0-10.el8_9.alma.1.s390x.rpm cd82c822e36285584e9997189f513e2571f95eb318f0cd268de41d588d978303
s390x opencryptoki-swtok-3.21.0-10.el8_9.alma.1.s390x.rpm ec393084a6ba72b8d0dd27fecddf0276d4832544e1b361a4a60ad9d972d06493
s390x opencryptoki-ep11tok-3.21.0-10.el8_9.alma.1.s390x.rpm ff4582a828c8eea5635e8002e38fca3c0dc69de83c1b9b82a00d62d0f800281f
x86_64 opencryptoki-devel-3.21.0-10.el8_9.alma.1.x86_64.rpm 110dfea21a4dfb150c4e0c14f90c4bb913e28780f423eca0b89e2e1aee33a083
x86_64 opencryptoki-icsftok-3.21.0-10.el8_9.alma.1.x86_64.rpm 1230320e0ba2b645e99c6b3a35414d15ff9e87c194f3877213e1c610acd1c77d
x86_64 opencryptoki-libs-3.21.0-10.el8_9.alma.1.x86_64.rpm 3f897569f4f42daa07b95462f3b1c90c8f3d9a8bfee1c15421642efb4c210095
x86_64 opencryptoki-swtok-3.21.0-10.el8_9.alma.1.x86_64.rpm 58107c3e8d3829878a341dd1f57c235ae462540fda9ad92806485e608fd38ba8
x86_64 opencryptoki-tpmtok-3.21.0-10.el8_9.alma.1.x86_64.rpm 8b2b79d4d1119335d760a65e18102f8ba57a813a85c24e437b850d674a4e72a5
x86_64 opencryptoki-3.21.0-10.el8_9.alma.1.x86_64.rpm dd8cbbc2f669f63afa4772dcc75ef25e925ec7a5acdb021af88045b4b3af2b20
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.