Oracle Linux 6265 Published by

A pki-core:10.6 security update has been released for Oracle Linux 8.



El-errata: ELSA-2021-2235 Important: Oracle Linux 8 pki-core:10.6 security update


Oracle Linux Security Advisory ELSA-2021-2235

  http://linux.oracle.com/errata/ELSA-2021-2235.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
jss-4.8.1-2.module+el8.4.0+20154+9830f79e.x86_64.rpm
jss-javadoc-4.8.1-2.module+el8.4.0+20154+9830f79e.x86_64.rpm
ldapjdk-4.22.0-1.module+el8.3.0+7857+983338ee.noarch.rpm
ldapjdk-javadoc-4.22.0-1.module+el8.3.0+7857+983338ee.noarch.rpm
pki-acme-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-base-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-base-java-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-ca-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-kra-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-server-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-symkey-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.x86_64.rpm
pki-tools-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.x86_64.rpm
python3-pki-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
tomcatjss-7.6.1-1.module+el8.4.0+20053+7cddd5b6.noarch.rpm

aarch64:
jss-4.8.1-2.module+el8.4.0+20154+9830f79e.aarch64.rpm
jss-javadoc-4.8.1-2.module+el8.4.0+20154+9830f79e.aarch64.rpm
ldapjdk-4.22.0-1.module+el8.3.0+7857+983338ee.noarch.rpm
ldapjdk-javadoc-4.22.0-1.module+el8.3.0+7857+983338ee.noarch.rpm
pki-acme-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-base-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-base-java-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-ca-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-kra-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-server-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
pki-symkey-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.aarch64.rpm
pki-tools-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.aarch64.rpm
python3-pki-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpm
tomcatjss-7.6.1-1.module+el8.4.0+20053+7cddd5b6.noarch.rpm

SRPMS:
  http://oss.oracle.com/ol8/SRPMS-updates/jss-4.8.1-2.module+el8.4.0+20154+9830f79e.src.rpm
  http://oss.oracle.com/ol8/SRPMS-updates/ldapjdk-4.22.0-1.module+el8.3.0+7857+983338ee.src.rpm
  http://oss.oracle.com/ol8/SRPMS-updates/pki-core-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.src.rpm
  http://oss.oracle.com/ol8/SRPMS-updates/tomcatjss-7.6.1-1.module+el8.4.0+20053+7cddd5b6.src.rpm

Related CVEs:

CVE-2021-3551



Description of changes:

pki-core
[10.10.5-3.0.1]
- Remove upstream reference.

[10.10.5-3]
- Bug 1960146 - CVE-2021-3551 Dogtag installer "pkispawn" logs admin credentials into a world-readable log file