RHSA-2024:4070: Important: Red Hat Certificate System 10.4 for RHEL 8 security and bug fix update

Published Jun 24, 2024
·
Updated

Important: Red Hat Certificate System 10.4 for RHEL 8 security and bug fix update

Other sources

Red Hat Certificate System (RHCS) is a complete implementation of an enterprise software system designed to manage enterprise Public Key Infrastructure (PKI) deployments.Security fixes: Token authentication bypass vulnerability (BZ2232221 - CVE-2023-4727) Renaming the option ops-flag and ops-flag-mask (BZ2275455) Rebase to TomcatJSS 7.7.4 Rename enableOCSP to enableRevocationCheck (BZ2275095) Rebase to JSS 4.9.9 Enable revocation verification using CRL-DP (BZ2274531) Users of RHCS 10 are advised to upgrade to these updated packages.

Red Hat

Affected Software

32 affected componentsFixes available
redhat/idm-console-framework<1.3.0-1.module+el8
1.3.0-1.module+el8
redhat/jss<4.9.10-1.module+el8
4.9.10-1.module+el8
redhat/ldapjdk<4.23.0-1.module+el8
4.23.0-1.module+el8
redhat/redhat-pki<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/tomcatjss<7.7.4-1.module+el8
7.7.4-1.module+el8
redhat/jss-debuginfo<4.9.10-1.module+el8
4.9.10-1.module+el8
redhat/jss-debugsource<4.9.10-1.module+el8
4.9.10-1.module+el8
redhat/jss-javadoc<4.9.10-1.module+el8
4.9.10-1.module+el8
redhat/ldapjdk-javadoc<4.23.0-1.module+el8
4.23.0-1.module+el8
redhat/python3-redhat-pki<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-acme<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-base<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-base-java<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-ca<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-console<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-console-theme<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-debuginfo<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-debugsource<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-est<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-javadoc<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-kra<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-ocsp<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-server<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-server-theme<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-symkey<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-symkey-debuginfo<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-tks<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-tools<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-tools-debuginfo<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-tps<10.13.11-1.module+el8
10.13.11-1.module+el8
redhat/redhat-pki-tps-debuginfo<10.13.11-1.module+el8
10.13.11-1.module+el8
Red Hat Red Hat Certificate System - Extended Update Support

Remediation

Event History

Jun 24, 2024
Advisory Published
via Red Hat·03:46 PM
Jul 2, 2024
Advisory Published
via Red Hat·04:18 PM
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of RHSA-2024:4070?

The severity of RHSA-2024:4070 is classified as important.

2

How do I fix RHSA-2024:4070?

To fix RHSA-2024:4070, update the affected packages to the specified versions as outlined in the advisory.

3

Which software is affected by RHSA-2024:4070?

RHSA-2024:4070 affects various packages within the Red Hat Certificate System including idm-console-framework, jss, ldapjdk, and others.

4

What type of vulnerabilities does RHSA-2024:4070 address?

RHSA-2024:4070 addresses security fixes and bug fixes related to the Red Hat Certificate System.

5

Is there any impact on performance due to RHSA-2024:4070 updates?

While the updates in RHSA-2024:4070 primarily focus on security and bug fixes, there may be minimal performance impacts depending on the specific changes made.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203