Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 35: Keylime 2022-5770dad5f8 Critical: Multiple Threat Fixes

fedora
Calendar Grey February 3, 2022
Dist Fedora Esm H88
The Keylime v6.3.0 release tackles several vulnerabilities found in Fedora 35. Make certain your system's safety is up to date.
Update to keylime v6.3.0 Fixes the following security advisories: - https://github.com/keylime/keylime/security/advisories/GHSA-2m39-75g9-ff5r - https://github.com/keylime/keylim...

Summary

Keylime is a TPM based highly scalable remote boot attestation

and runtime integrity measurement solution.

Update to keylime v6.3.0 Fixes the following security advisories: -https://github.com/keylime/keylime/security/advisories/GHSA-2m39-75g9-ff5r -https://github.com/keylime/keylime/security/advisories/GHSA-wj36-qcfg-5j52 -https://github.com/keylime/keylime/security/advisories/GHSA-87gh-qc28-j9mm -https://github.com/keylime/keylime/security/advisories/GHSA-9r9r-f8xc-m875 -https://github.com/keylime/keylime/security/advisories/GHSA-6xx7-m45w-76m2

* Thu Jan 27 2022 Sergio Correia - 6.3.0-2

- Fix permissions of config file

* Thu Jan 27 2022 Sergio Correia - 6.3.0-1

- Updating for Keylime release v6.3.0

[ 1 ] Bug #2048630 - CVE-2021-43310 CVE-2022-23948 CVE-2022-23949 CVE-2022-23950 CVE-2022-23951 CVE-2022-23952 keylime: Multiple security vulnerabilities fixed in keylime 6.3.x [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=2048630

su -c 'dnf upgrade --advisory FEDORA-2022-5770dad5f8' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 35
Version: 6.3.0
Release: 2.fc35
Summary: Open source TPM software for Bootstrapping and Maintaining Trust

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here