[ALSA-2024:1239] Moderate: opencryptoki security update
Type:
security
Severity:
moderate
Release date:
2024-03-11
Description:
The opencryptoki packages contain version 2.11 of the PKCS#11 API, implemented for IBM Cryptocards, such as IBM 4764 and 4765 crypto cards. These packages includes support for the IBM 4758 Cryptographic CoProcessor (with the PKCS#11 firmware loaded), the IBM eServer Cryptographic Accelerator (FC 4960 on IBM eServer System p), the IBM Crypto Express2 (FC 0863 or FC 0870 on IBM System z), and the IBM CP Assist for Cryptographic Function (FC 3863 on IBM System z). The opencryptoki packages also bring a software token implementation that can be used without any cryptographic hardware. These packages contain the Slot Daemon (pkcsslotd) and general utilities. Security Fix(es): * opencryptoki: timing side-channel in handling of RSA PKCS#1 v1.5 padded ciphertexts (Marvin) (CVE-2024-0914) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 opencryptoki-libs-3.21.0-9.el9_3.alma.1.aarch64.rpm 4c637adae7257496a6becaa74e9dd83529db385885c49aa7fd888a10be122897
aarch64 opencryptoki-icsftok-3.21.0-9.el9_3.alma.1.aarch64.rpm 61eba6d72c9a67e2bec57b1e3de921d7b6c18414db1cf84b668d4ee49251aa90
aarch64 opencryptoki-swtok-3.21.0-9.el9_3.alma.1.aarch64.rpm 736e16d21d3d456019c8348a1246171beb4b29d357e73307caa25fc4fb54492f
aarch64 opencryptoki-3.21.0-9.el9_3.alma.1.aarch64.rpm 8e04402db83d277029d6e4d98dda012931d8b849bd099fcedbaf44769870f43d
aarch64 opencryptoki-devel-3.21.0-9.el9_3.alma.1.aarch64.rpm e71e10315b487cf3e65456e0df60801f618d8f48fbfd9e9328fe3ee92ca62326
i686 opencryptoki-libs-3.21.0-9.el9_3.alma.1.i686.rpm 0aac50c7725512b0c6286dddfa80c008282e6ff34f98a3d22d6c420ee9b7f26f
i686 opencryptoki-devel-3.21.0-9.el9_3.alma.1.i686.rpm 4bc34cc2831dad343513b25f14bd537d91f1bc209d842c1a3355c8b909a24b15
ppc64le opencryptoki-libs-3.21.0-9.el9_3.alma.1.ppc64le.rpm 160c2ec76d98885f8f4ae8574fac860adc03315ff26742e0a41ae4b1d2f07ae1
ppc64le opencryptoki-swtok-3.21.0-9.el9_3.alma.1.ppc64le.rpm 74fc9dcc99992f1b22faa1d85de487c496d7d773b1b2325a390299e93f0e87d1
ppc64le opencryptoki-3.21.0-9.el9_3.alma.1.ppc64le.rpm b94af1c918b2bbc445b801ac4d4caa2f1da76d0ed2461a09a6844a5865daaae7
ppc64le opencryptoki-icsftok-3.21.0-9.el9_3.alma.1.ppc64le.rpm c793f594bd60488bfd4ae896e064efe876c3b82c4575ae64efcc62c869342a19
ppc64le opencryptoki-devel-3.21.0-9.el9_3.alma.1.ppc64le.rpm fe68a07c51d6133f63c754b4538f7ced5951ecc0a33da6ed1bc58306f2fa2024
s390x opencryptoki-ccatok-3.21.0-9.el9_3.alma.1.s390x.rpm 334d003ce7fc8e0d6fc76d6c4481642befe7c6c7ca7053272e72568856aae118
s390x opencryptoki-icatok-3.21.0-9.el9_3.alma.1.s390x.rpm 6c42250584346156dd5dcbd1693f26f3dbbe8925793a9593b5c14eeaa91b54de
s390x opencryptoki-swtok-3.21.0-9.el9_3.alma.1.s390x.rpm 9e9134bd2fe3f92c9b310203e459e3a6e0b02865d709ec31a3e7e732a16e6462
s390x opencryptoki-libs-3.21.0-9.el9_3.alma.1.s390x.rpm cdf5f458ffa3fcc9878e2cc74079ad0ce73d9fa0cfe4bcdf77ea8e7ee225e73d
s390x opencryptoki-icsftok-3.21.0-9.el9_3.alma.1.s390x.rpm da89c02e277a99fbfa4f641b55f1244d9c60b2f1feb4c02d2eda8dc7dca80411
s390x opencryptoki-3.21.0-9.el9_3.alma.1.s390x.rpm dd7093591393ce604a3ea7118532ed95b1bea33a0a31b2ae3dd4d2d4725d03bc
s390x opencryptoki-ep11tok-3.21.0-9.el9_3.alma.1.s390x.rpm ddaf6849cb40b04c3ba437d25b0205fb53c49f90ef15b46a74c106d62721afec
s390x opencryptoki-devel-3.21.0-9.el9_3.alma.1.s390x.rpm e683e9a6eb8853165d5a44907a4336ad6974ebcb3d560f8fdb3cfeecbadeab82
x86_64 opencryptoki-devel-3.21.0-9.el9_3.alma.1.x86_64.rpm 1ac96cda28f1a0a0208346aa42350392dab45cc5efd88216eca65d2436ff4a64
x86_64 opencryptoki-libs-3.21.0-9.el9_3.alma.1.x86_64.rpm 341d5efbacd7b914d143db0de3ef13cdf6e23e323c93454f3b4ad0bc74f358ff
x86_64 opencryptoki-swtok-3.21.0-9.el9_3.alma.1.x86_64.rpm 548d4a614ee43de7b1da74d1f6559ddd0bfa0e950da5a9f9e52be6350338a69d
x86_64 opencryptoki-icsftok-3.21.0-9.el9_3.alma.1.x86_64.rpm 5d3cad932ff41c26b238287a894c34657ea6d61ad5951a8c8ff513bdaacf4e53
x86_64 opencryptoki-3.21.0-9.el9_3.alma.1.x86_64.rpm 759956418bcbbb603730a418c9cb8a0ea91ef4b04c3b2634c0bd990220399d85
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.