[SUSE-SU-2023:2843-1] Security update for bouncycastle

Severity Important
Affected Packages 23
CVEs 1

Security update for bouncycastle

This update for bouncycastle fixes the following issues:

  • CVE-2023-33201: Fixed an issue with the X509LDAPCertStoreSpi where a specially crafted certificate subject could be used to try and extract extra information out of an LDAP server (bsc#1212508).
Package Affected Version
pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=3 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=2 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle?arch=noarch&distro=opensuse-leap-15.5 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle?arch=noarch&distro=opensuse-leap-15.4 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=3 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=2 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=opensuse-leap-15.5 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=opensuse-leap-15.4 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-tls?arch=noarch&distro=opensuse-leap-15.5 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-tls?arch=noarch&distro=opensuse-leap-15.4 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=3 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=2 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=opensuse-leap-15.5 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=opensuse-leap-15.4 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=3 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=2 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=opensuse-leap-15.5 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=opensuse-leap-15.4 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-mail?arch=noarch&distro=opensuse-leap-15.5 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-mail?arch=noarch&distro=opensuse-leap-15.4 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-jmail?arch=noarch&distro=opensuse-leap-15.5 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-javadoc?arch=noarch&distro=opensuse-leap-15.5 < 1.74-150200.3.21.1
pkg:rpm/suse/bouncycastle-javadoc?arch=noarch&distro=opensuse-leap-15.4 < 1.74-150200.3.21.1
ID
SUSE-SU-2023:2843-1
Severity
important
URL
https://www.suse.com/support/update/announcement/2023/suse-su-20232843-1/
Published
2023-07-17T04:21:18
(14 months ago)
Modified
2023-07-17T04:21:18
(14 months ago)
Rights
Copyright 2024 SUSE LLC. All rights reserved.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=3 suse bouncycastle < 1.74-150200.3.21.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle?arch=noarch&distro=sles-15&sp=2 suse bouncycastle < 1.74-150200.3.21.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle < 1.74-150200.3.21.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle?arch=noarch&distro=opensuse-leap-15.4 suse bouncycastle < 1.74-150200.3.21.1 opensuse-leap-15.4 noarch
Affected pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=3 suse bouncycastle-util < 1.74-150200.3.21.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=sles-15&sp=2 suse bouncycastle-util < 1.74-150200.3.21.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-util < 1.74-150200.3.21.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-util?arch=noarch&distro=opensuse-leap-15.4 suse bouncycastle-util < 1.74-150200.3.21.1 opensuse-leap-15.4 noarch
Affected pkg:rpm/suse/bouncycastle-tls?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-tls < 1.74-150200.3.21.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-tls?arch=noarch&distro=opensuse-leap-15.4 suse bouncycastle-tls < 1.74-150200.3.21.1 opensuse-leap-15.4 noarch
Affected pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=3 suse bouncycastle-pkix < 1.74-150200.3.21.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=sles-15&sp=2 suse bouncycastle-pkix < 1.74-150200.3.21.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-pkix < 1.74-150200.3.21.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-pkix?arch=noarch&distro=opensuse-leap-15.4 suse bouncycastle-pkix < 1.74-150200.3.21.1 opensuse-leap-15.4 noarch
Affected pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=3 suse bouncycastle-pg < 1.74-150200.3.21.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=sles-15&sp=2 suse bouncycastle-pg < 1.74-150200.3.21.1 sles-15 noarch
Affected pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-pg < 1.74-150200.3.21.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-pg?arch=noarch&distro=opensuse-leap-15.4 suse bouncycastle-pg < 1.74-150200.3.21.1 opensuse-leap-15.4 noarch
Affected pkg:rpm/suse/bouncycastle-mail?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-mail < 1.74-150200.3.21.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-mail?arch=noarch&distro=opensuse-leap-15.4 suse bouncycastle-mail < 1.74-150200.3.21.1 opensuse-leap-15.4 noarch
Affected pkg:rpm/suse/bouncycastle-jmail?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-jmail < 1.74-150200.3.21.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-javadoc?arch=noarch&distro=opensuse-leap-15.5 suse bouncycastle-javadoc < 1.74-150200.3.21.1 opensuse-leap-15.5 noarch
Affected pkg:rpm/suse/bouncycastle-javadoc?arch=noarch&distro=opensuse-leap-15.4 suse bouncycastle-javadoc < 1.74-150200.3.21.1 opensuse-leap-15.4 noarch
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...