UbuntuUpdates.org

Package "tang-common"

Name: tang-common

Description:

network-based cryptographic binding server - common files

Latest version: 11-2ubuntu0.1
Release: lunar (23.04)
Level: security
Repository: universe
Head package: tang
Homepage: https://github.com/latchset/tang

Links


Download "tang-common"


Other versions of "tang-common" in Lunar

Repository Area Version
base universe 11-2
updates universe 11-2ubuntu0.1

Changelog

Version: 11-2ubuntu0.1 2023-11-20 17:07:02 UTC

  tang (11-2ubuntu0.1) lunar-security; urgency=medium

  * SECURITY UPDATE: race condition when creating and rotating keys
    - debian/patches/CVE-2023-1672.patch: Assert restrictive permissions
      on tang's key directory
    - CVE-2023-1672

 -- Jorge Sancho Larraz <email address hidden> Mon, 20 Nov 2023 11:16:40 +0100

CVE-2023-1672 A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang pri



About   -   Send Feedback to @ubuntu_updates