Oval Definition:
oval:org.mitre.oval:def:7340
Revision Date
:
2014-06-23
Version
:
18
Title
:
DSA-1946 belpic -- cryptographic weakness
Description
:
It was discovered that belpic, the belgian eID PKCS11 library, does not properly check the result of an OpenSSL function for verifying cryptographic signatures, which could be used to bypass the certificate validation.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2009-0049
DSA-1946
Platform(s)
:
Debian GNU/Linux 4.0
Product(s)
:
belpic
Definition Synopsis
Debian GNU/Linux 4.0 is installed.
AND
Supported architectures section
Installed architecture is amd64
OR
Installed architecture is sparc
OR
Installed architecture is i386
OR
Installed architecture is mips
OR
Installed architecture is ia64
OR
Installed architecture is alpha
OR
Installed architecture is mipsel
OR
Installed architecture is hppa
AND
Packages section
libbeid2 is earlier than 2.5.9-7.etch.1
OR
beid-tools is earlier than 2.5.9-7.etch.1
OR
libbeidlibopensc2-dev is earlier than 2.5.9-7.etch.1
OR
libbeidlibopensc2 is earlier than 2.5.9-7.etch.1
OR
beidgui is earlier than 2.5.9-7.etch.1
OR
libbeid2-dev is earlier than 2.5.9-7.etch.1
BACK