RHSA-2024:4223: Important: Red Hat Certificate System security and bug fix update

Published Jul 2, 2024
·
Updated

Important: Red Hat Certificate System security and bug fix update

Other sources

Red Hat Certificate System is a complete implementation of an enterprise<br>software system designed to manage enterprise public key infrastructure<br>(PKI) deployments.<br>Bug fix(es):<br><li> Coolkey Hardcoded RSA Max Key Size (BZ#2047831)</li> <li> Add Secure Channel Support for AES-256 Keys (BZ#2121463)</li> <li> TPS missing Host header field in HTTP/1.1 request</li> message (BZ#2177785)<br><li> Add AES support for TMS server-side keygen on latest</li> HSM / FIPS environment (BZ#2180920)<br><li> Make key wrapping algorithm configurable</li> between AES-KWP and AES-CBC (BZ#2233158)<br><li> pkidestroy log keeps HSM token password (BZ#2253682)</li> <li> Add Support for Symmetric Key Rollover (BZ#2265180)</li> Users of Red Hat Certificate System are advised to install these updated packages.

Red Hat

Affected Software

9 affected componentsFixes available
redhat/pki-core<10.5.18-32.el7
10.5.18-32.el7
redhat/redhat-pki-theme<10.5.18-20.el7
10.5.18-20.el7
redhat/pki-core-debuginfo<10.5.18-32.el7
10.5.18-32.el7
redhat/pki-ocsp<10.5.18-32.el7
10.5.18-32.el7
redhat/pki-tks<10.5.18-32.el7
10.5.18-32.el7
redhat/pki-tps<10.5.18-32.el7
10.5.18-32.el7
redhat/redhat-pki-console-theme<10.5.18-20.el7
10.5.18-20.el7
redhat/redhat-pki-server-theme<10.5.18-20.el7
10.5.18-20.el7
Red Hat Red Hat Certificate System

Remediation

Event History

Jul 2, 2024
Advisory Published
via Red Hat·12:54 PM
Jul 12, 2024
Advisory Published
via Red Hat·06:22 PM
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of RHSA-2024:4223?

The severity of RHSA-2024:4223 is classified as important.

2

How do I fix RHSA-2024:4223?

To fix RHSA-2024:4223, you need to update the affected packages to the specified versions: 10.5.18-32.el7 for pki-core and related packages, and 10.5.18-20.el7 for redhat-pki-theme and console theme.

3

Which software is affected by RHSA-2024:4223?

RHSA-2024:4223 affects Red Hat Certificate System and its associated packages including pki-core, pki-ocsp, and pki-tks.

4

What types of issues does RHSA-2024:4223 address?

RHSA-2024:4223 addresses security vulnerabilities and bug fixes in the Red Hat Certificate System.

5

Is there a recommended action for users affected by RHSA-2024:4223?

It is recommended that users immediately update their systems to mitigate the vulnerabilities outlined in RHSA-2024:4223.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203