ALSA-2024:4367

Source
https://errata.almalinux.org/8/ALSA-2024-4367.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2024:4367.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2024:4367
Related
Published
2024-07-08T00:00:00Z
Modified
2024-07-08T19:24:19Z
Summary
Important: pki-core security update
Details

The Public Key Infrastructure (PKI) Core contains fundamental packages required by AlmaLinux Certificate System.

Security Fix(es):

  • dogtag ca: token authentication bypass vulnerability (CVE-2023-4727)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

Affected packages

AlmaLinux:8 / idm-jss

Package

Name
idm-jss

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.11.0-1.module_el8.10.0+3801+17b19a60

AlmaLinux:8 / idm-jss-javadoc

Package

Name
idm-jss-javadoc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.11.0-1.module_el8.10.0+3801+17b19a60

AlmaLinux:8 / idm-ldapjdk

Package

Name
idm-ldapjdk

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.24.0-1.module_el8.10.0+3801+17b19a60

AlmaLinux:8 / idm-ldapjdk-javadoc

Package

Name
idm-ldapjdk-javadoc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.24.0-1.module_el8.10.0+3801+17b19a60

AlmaLinux:8 / idm-pki-acme

Package

Name
idm-pki-acme

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.15.1-1.module_el8.10.0+3868+cdab0fd8

AlmaLinux:8 / idm-pki-base

Package

Name
idm-pki-base

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.15.1-1.module_el8.10.0+3868+cdab0fd8

AlmaLinux:8 / idm-pki-base-java

Package

Name
idm-pki-base-java

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.15.1-1.module_el8.10.0+3868+cdab0fd8

AlmaLinux:8 / idm-pki-ca

Package

Name
idm-pki-ca

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.15.1-1.module_el8.10.0+3868+cdab0fd8

AlmaLinux:8 / idm-pki-kra

Package

Name
idm-pki-kra

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.15.1-1.module_el8.10.0+3868+cdab0fd8

AlmaLinux:8 / idm-pki-server

Package

Name
idm-pki-server

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.15.1-1.module_el8.10.0+3868+cdab0fd8

AlmaLinux:8 / idm-pki-symkey

Package

Name
idm-pki-symkey

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.15.1-1.module_el8.10.0+3868+cdab0fd8

AlmaLinux:8 / idm-pki-tools

Package

Name
idm-pki-tools

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.15.1-1.module_el8.10.0+3868+cdab0fd8

AlmaLinux:8 / idm-tomcatjss

Package

Name
idm-tomcatjss

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
7.8.0-1.module_el8.10.0+3801+17b19a60

AlmaLinux:8 / python3-idm-pki

Package

Name
python3-idm-pki

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.15.1-1.module_el8.10.0+3868+cdab0fd8

AlmaLinux:8 / resteasy

Package

Name
resteasy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.0.26-7.module_el8.10.0+3808+9d4ab1fb

AlmaLinux:8 / resteasy-javadoc

Package

Name
resteasy-javadoc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.0.26-7.module_el8.10.0+3808+9d4ab1fb