shield Recommended update for libgcrypt
SUSE-SLE-SERVER-12-SP3-2017-1453


This update for libgcrypt fixes the following issues: - libgcrypt stored an open file descriptor to the random device in a static variable between invocations. gnome-keyring-daemon on initialization reopened descriptors 0-2 with /dev/null which caused an infinite loop when libgcrypt attempted to read from the random device (bsc#1043333) - Avoid seeding the DRBG during FIPS power-up selftests (bsc#1046659) * don't call gcry_drbg_instantiate() in healthcheck sanity test to save entropy * turn off blinding for RSA decryption in selftests_rsa to avoid allocation of a random integer - fix a bug in gcry_drbg_healthcheck_sanity() which caused skipping some of the tests (bsc#1046659) - dlsym returns PLT address on s390x, dlopen libgcrypt20.so before calling dlsym (bsc#1047008)

  • Release Date
    Sep 4 2017
  • References
    Bugzilla: 1046659, 1043333, 1047008
  • Type
    recommended
  • Severity
    moderate

cloud_download Downloads

SUSE Linux Enterprise Server 12.3 aarch64
  • Packages
    libgcrypt
    The GNU Crypto Library
    1.6.1-16.45.1 lock src
    libgcrypt20
    The GNU Crypto Library
    1.6.1-16.45.1 lock rpm
    libgcrypt20-hmac
    HMAC checksums for the GNU Crypto Library
    1.6.1-16.45.1 lock rpm
SUSE Linux Enterprise Server 12.3 x86_64
SUSE Linux Enterprise Server for SAP Applications 12.3 ppc64le
  • Packages
    libgcrypt
    The GNU Crypto Library
    1.6.1-16.45.1 lock src
    libgcrypt20
    The GNU Crypto Library
    1.6.1-16.45.1 lock rpm
    libgcrypt20-hmac
    HMAC checksums for the GNU Crypto Library
    1.6.1-16.45.1 lock rpm
SUSE Linux Enterprise Server 12.3 s390x