Bug Fix Advisory rhpki-common bug fix update

Advisory: RHBA-2008:0035-2
Type: Bug Fix Advisory
Severity: N/A
Issued on: 2008-01-09
Last updated on: 2008-01-09
Affected Products: Certificate Server 7.2
OVAL: N/A

Details

An updated rhpki-common package that fixes a bug is now available.

Red Hat Certificate System (RHCS) is an enterprise software system designed
to manage enterprise Public Key Infrastructure (PKI) deployments.

rhpki-common -- the Red Hat PKI Common Framework -- is required by the
following four RHCS subsystems: the Red Hat Certificate Authority; the Red
Hat Data Recovery Manager; the Red Hat Online Certificate Status Protocol
Manager; and the Red Hat Token Key Service.

If an agent automatically approved a certificate signing request (CSR),
using AgentCertAuth, the resultant certificate contained blank Subject Alt
Name extension fields. A manual enrollment by the same agent produced a
certificate with the correct number of Subject Alt Names and no blank
entries.

With this update, automated enrollments via AgentCertAuth do not have blank
fields in issued certificates.

All Red Hat Certificate System users should upgrade to this updated
package, which resolves this issue.


Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

To update all RPMs for your particular architecture, run:

rpm -Fvh [filenames]

where [filenames] is a list of the RPMs you wish to upgrade. Only those
RPMs which are currently installed will be updated. Those RPMs which are
not installed but included in the list will not be updated. Note that you
can also use wildcards (*.rpm) if your current directory *only* contains the
desired RPMs.

Please note that this update is also available via Red Hat Network. Many
people find this an easier way to apply updates. To use Red Hat Network,
launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.


Updated packages

Certificate Server 7.2

IA-32:
rhpki-common-7.2.0-10.noarch.rpm
File outdated by:  RHSA-2008:0577
    a6ecb8bd11a04ae8de7b2286cdb7859d
rhpki-common-7.2.0-10.noarch.rpm
File outdated by:  RHSA-2008:0577
    a6ecb8bd11a04ae8de7b2286cdb7859d
 
x86_64:
rhpki-common-7.2.0-10.noarch.rpm
File outdated by:  RHSA-2008:0577
    a6ecb8bd11a04ae8de7b2286cdb7859d
rhpki-common-7.2.0-10.noarch.rpm
File outdated by:  RHSA-2008:0577
    a6ecb8bd11a04ae8de7b2286cdb7859d
 
(The unlinked packages above are only available from the Red Hat Network)


These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/