Oval Definition:oval:com.redhat.rhba:def:20213054
Revision Date:2021-08-10Version:635
Title:RHBA-2021:3054: opencryptoki bug fix and enhancement update (Moderate)
Description:The opencryptoki packages contain version 2.11 of the PKCS#11 API, implemented for IBM Cryptocards, such as IBM 4764 and 4765 crypto cards. These packages includes support for the IBM 4758 Cryptographic CoProcessor (with the PKCS#11 firmware loaded), the IBM eServer Cryptographic Accelerator (FC 4960 on IBM eServer System p), the IBM Crypto Express2 (FC 0863 or FC 0870 on IBM System z), and the IBM CP Assist for Cryptographic Function (FC 3863 on IBM System z). The opencryptoki packages also bring a software token implementation that can be used without any cryptographic hardware. These packages contain the Slot Daemon (pkcsslotd) and general utilities.

Bug Fix(es) and Enhancement(s):

  • RHEL8.5 - openCryptoki: Soft token does not check if an EC key is valid (BZ#1979173)
  • Family:unixClass:patch
    Status:Reference(s):CVE-2021-3798
    RHBA-2021:3054
    Platform(s):Red Hat Enterprise Linux 8
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 8 is installed
  • OR Red Hat CoreOS 4 is installed
  • AND
  • opencryptoki is earlier than 0:3.15.1-6.el8_4
  • AND opencryptoki is signed with Red Hat redhatrelease2 key
  • opencryptoki-ccatok is earlier than 0:3.15.1-6.el8_4
  • AND opencryptoki-ccatok is signed with Red Hat redhatrelease2 key
  • opencryptoki-devel is earlier than 0:3.15.1-6.el8_4
  • AND opencryptoki-devel is signed with Red Hat redhatrelease2 key
  • opencryptoki-ep11tok is earlier than 0:3.15.1-6.el8_4
  • AND opencryptoki-ep11tok is signed with Red Hat redhatrelease2 key
  • opencryptoki-icatok is earlier than 0:3.15.1-6.el8_4
  • AND opencryptoki-icatok is signed with Red Hat redhatrelease2 key
  • opencryptoki-icsftok is earlier than 0:3.15.1-6.el8_4
  • AND opencryptoki-icsftok is signed with Red Hat redhatrelease2 key
  • opencryptoki-libs is earlier than 0:3.15.1-6.el8_4
  • AND opencryptoki-libs is signed with Red Hat redhatrelease2 key
  • opencryptoki-swtok is earlier than 0:3.15.1-6.el8_4
  • AND opencryptoki-swtok is signed with Red Hat redhatrelease2 key
  • opencryptoki-tpmtok is earlier than 0:3.15.1-6.el8_4
  • AND opencryptoki-tpmtok is signed with Red Hat redhatrelease2 key
  • BACK