Advisories ยป MGASA-2021-0329

Updated botan2 packages fix security vulnerability

Publication date: 10 Jul 2021
Modification date: 10 Jul 2021
Type: security
Affected Mageia releases : 7
CVE: CVE-2021-24115

Description

Updated botan2 packages fix security vulnerability:

In Botan before 2.17.3, constant-time computations are not used for
certain decoding and encoding operations (base32, base58, base64, and
hex) (CVE-2021-24115).
                

References

SRPMS

7/core