CLSA-2022-1644869807

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLSA-2022-1644869807
Upstream
Published
2022-02-14T20:16:47Z
Modified
2026-05-27T11:33:44.653997940Z
Summary
Fix of CVE: CVE-2021-3521, CVE-2021-20266
Details
  • CVE-2021-20266: missing length checks in hdrblobInit()
  • CVE-2021-3521: RPM does not require subkeys to have a valid binding signature
  • Address important covscan issues (#1996665, #2022537)
References

Affected packages

TuxCare:CentOS:8.4
python3-rpm

Package

Name
python3-rpm
Purl
pkg:rpm/tuxcare/python3-rpm?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm

Package

Name
rpm
Purl
pkg:rpm/tuxcare/rpm?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-apidocs

Package

Name
rpm-apidocs
Purl
pkg:rpm/tuxcare/rpm-apidocs?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-build

Package

Name
rpm-build
Purl
pkg:rpm/tuxcare/rpm-build?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-build-libs

Package

Name
rpm-build-libs
Purl
pkg:rpm/tuxcare/rpm-build-libs?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-cron

Package

Name
rpm-cron
Purl
pkg:rpm/tuxcare/rpm-cron?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-devel

Package

Name
rpm-devel
Purl
pkg:rpm/tuxcare/rpm-devel?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-libs

Package

Name
rpm-libs
Purl
pkg:rpm/tuxcare/rpm-libs?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-plugin-fapolicyd

Package

Name
rpm-plugin-fapolicyd
Purl
pkg:rpm/tuxcare/rpm-plugin-fapolicyd?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-plugin-ima

Package

Name
rpm-plugin-ima
Purl
pkg:rpm/tuxcare/rpm-plugin-ima?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-plugin-prioreset

Package

Name
rpm-plugin-prioreset
Purl
pkg:rpm/tuxcare/rpm-plugin-prioreset?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-plugin-selinux

Package

Name
rpm-plugin-selinux
Purl
pkg:rpm/tuxcare/rpm-plugin-selinux?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-plugin-syslog

Package

Name
rpm-plugin-syslog
Purl
pkg:rpm/tuxcare/rpm-plugin-syslog?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-plugin-systemd-inhibit

Package

Name
rpm-plugin-systemd-inhibit
Purl
pkg:rpm/tuxcare/rpm-plugin-systemd-inhibit?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"
rpm-sign

Package

Name
rpm-sign
Purl
pkg:rpm/tuxcare/rpm-sign?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.3-14.el8.4.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2022-1644869807.json"