Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2021.0590
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2021-0590)
Resumen:The remote host is missing an update for the 'libtpms, swtpm' package(s) announced via the MGASA-2021-0590 advisory.
Descripción:Summary:
The remote host is missing an update for the 'libtpms, swtpm' package(s) announced via the MGASA-2021-0590 advisory.

Vulnerability Insight:
CryptSym: fix AES output IV (CVE-2021-3505).
Fixed a context save and suspend/resume problem when public keys are
loaded.
Reset too large size indicators in TPM2B to avoid access beyond buffer
(CVE-2021-3623)
Restore original value in buffer if unmarshalled one was illegal
Fixed out-of-bounds access via specially crafted TPM 2 command packets
(CVE-2021-3746)
Marshal event sequence objects' hash state

Affected Software/OS:
'libtpms, swtpm' package(s) on Mageia 8.

Solution:
Please install the updated package(s).

CVSS Score:
7.1

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:N/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2021-3446
https://bugzilla.redhat.com/show_bug.cgi?id=1939664
Common Vulnerability Exposure (CVE) ID: CVE-2021-3505
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NUCZX4S53TUNTSGTCRDNOQZV2V2RI4RJ/
https://bugzilla.redhat.com/show_bug.cgi?id=1950046
https://github.com/stefanberger/libtpms/issues/183
Common Vulnerability Exposure (CVE) ID: CVE-2021-3623
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Z7KZSYMTE7Z4BBEZUWO2DIMQDWMGEP46/
https://bugzilla.redhat.com/show_bug.cgi?id=1976806
https://github.com/stefanberger/libtpms/commit/2e6173c
https://github.com/stefanberger/libtpms/commit/2f30d62
https://github.com/stefanberger/libtpms/commit/7981d9a
https://github.com/stefanberger/libtpms/pull/223
Common Vulnerability Exposure (CVE) ID: CVE-2021-3746
https://bugzilla.redhat.com/show_bug.cgi?id=1998588
CopyrightCopyright (C) 2022 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.