关键信息 公告编号: RHSA-2024:1411 安全影响: 中等 发布日期: 2024-03-19 更新日期: 2024-03-19 漏洞详情 CVE编号: CVE-2024-0914 描述: opencryptoki在处理RSA PKCS#1 v1.5填充密文时存在的定时侧信道漏洞 严重程度: 中等 受影响的产品 Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.8 x86_64 Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64 Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.8 s390x Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.8 ppc64le Red Hat Enterprise Linux Server - TUS 8.8 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.8 aarch64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64 Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 8.8 x86_64 Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 8.8 ppc64le Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 8.8 s390x Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 8.8 aarch64 解决方案 参考: https://access.redhat.com/articles/11258