shield
Security update for opensc
SUSE-SLE-Micro-6.1-248
This update for opensc fixes the following issues: - CVE-2023-5992: Side-channel leaks while stripping encryption PKCS#1 padding (bsc#1219386). - CVE-2024-8443: Heap buffer overflow in OpenPGP driver when generating key (bsc#1230364). - CVE-2024-45620: Incorrect handling of the length of buffers or files in pkcs15init (bsc#1230076). - CVE-2024-45619: Incorrect handling length of buffers or files in libopensc (bsc#1230075). - CVE-2024-45618: Uninitialized values after incorrect or missing checking return values of functions in pkcs15init (bsc#1230074). - CVE-2024-45617: Uninitialized values after incorrect or missing checking return values of functions in libopensc (bsc#1230073). - CVE-2024-45616: Uninitialized values after incorrect check or usage of APDU response values in libopensc (bsc#1230072). - CVE-2024-45615: Usage of uninitialized values in libopensc and pkcs15init (bsc#1230071).
-
Release DateSep 5 2025
-
ReferencesBugzilla: 1219386, 1230071, 1230072, 1230073, 1230074, 1230075, 1230076, 1230364
CVEs: CVE-2023-5992, CVE-2024-8443, CVE-2024-45615, CVE-2024-45616, CVE-2024-45617, CVE-2024-45618, CVE-2024-45619, CVE-2024-45620 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
SUSE Linux Micro 6.1 s390x
-
Packages
SUSE Linux Micro 6.1 ppc64le
-
Packages
SUSE Linux Micro 6.1 aarch64
-
Packages
SUSE Linux Micro 6.1 x86_64
-
Packages