Pull request for security update for rnp #239
18
patchinfo.20251126142654688873.93181000773252/_patchinfo
Normal file
18
patchinfo.20251126142654688873.93181000773252/_patchinfo
Normal file
@@ -0,0 +1,18 @@
|
||||
<patchinfo>
|
||||
<issue tracker="bnc" id="1253957">VUL-0: CVE-2025-13470,CVE-2025-13402: rnp: rnp PKESK session keys generated as all‑zero</issue>
|
||||
<issue tracker="cve" id="2025-13470">cve#2025-13470 not resolved: 404 Client Error: Not Found for url: https://bugzilla.suse.com/api2/issues/?references__name=CVE-2025-13470</issue>
|
||||
<issue tracker="cve" id="2025-13402">cve#2025-13402 not resolved: 404 Client Error: Not Found for url: https://bugzilla.suse.com/api2/issues/?references__name=CVE-2025-13402</issue>
|
||||
<packager>AndreasStieger</packager>
|
||||
<rating>moderate</rating>
|
||||
<category>security</category>
|
||||
<summary>Security update for rnp</summary>
|
||||
<description>This update for rnp fixes the following issues:
|
||||
|
||||
- update to 0.18.1:
|
||||
* CVE-2025-13470: PKESK (public-key encrypted) session keys were
|
||||
generated as all-zero, allowing trivial decryption of messages
|
||||
encrypted with public keys only (boo#1253957, CVE-2025-13402)
|
||||
</description>
|
||||
<package>rnp</package>
|
||||
<seperate_build_arch/>
|
||||
</patchinfo>
|
||||
2
rnp
2
rnp
Submodule rnp updated: 653d18b13f...b790fd4c71
Reference in New Issue
Block a user