RHSA-2024:4223: Important: Red Hat Certificate System security and bug fix update
Important: Red Hat Certificate System security and bug fix update
Other sources
Red Hat Certificate System is a complete implementation of an enterprise<br>software system designed to manage enterprise public key infrastructure<br>(PKI) deployments.<br>Bug fix(es):<br><li> Coolkey Hardcoded RSA Max Key Size (BZ#2047831)</li> <li> Add Secure Channel Support for AES-256 Keys (BZ#2121463)</li> <li> TPS missing Host header field in HTTP/1.1 request</li> message (BZ#2177785)<br><li> Add AES support for TMS server-side keygen on latest</li> HSM / FIPS environment (BZ#2180920)<br><li> Make key wrapping algorithm configurable</li> between AES-KWP and AES-CBC (BZ#2233158)<br><li> pkidestroy log keeps HSM token password (BZ#2253682)</li> <li> Add Support for Symmetric Key Rollover (BZ#2265180)</li> Users of Red Hat Certificate System are advised to install these updated packages.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:4223?
The severity of RHSA-2024:4223 is classified as important.
How do I fix RHSA-2024:4223?
To fix RHSA-2024:4223, you need to update the affected packages to the specified versions: 10.5.18-32.el7 for pki-core and related packages, and 10.5.18-20.el7 for redhat-pki-theme and console theme.
Which software is affected by RHSA-2024:4223?
RHSA-2024:4223 affects Red Hat Certificate System and its associated packages including pki-core, pki-ocsp, and pki-tks.
What types of issues does RHSA-2024:4223 address?
RHSA-2024:4223 addresses security vulnerabilities and bug fixes in the Red Hat Certificate System.
Is there a recommended action for users affected by RHSA-2024:4223?
It is recommended that users immediately update their systems to mitigate the vulnerabilities outlined in RHSA-2024:4223.