RHSA-2018:2927
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: Satellite 6.4 security, bug fix, and enhancement update
CVSS Metrics
- v3.0•HIGH•Score: 8.1CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•ansiblerole-insights-client
< 0:1.5-1.el7sat
- redhat•candlepin
< 0:2.4.8-1.el7
- redhat•candlepin-selinux
< 0:2.4.8-1.el7
- redhat•createrepo_c
< 0:0.7.4-1.el7sat
- redhat•createrepo_c-debuginfo
< 0:0.7.4-1.el7sat
- redhat•createrepo_c-libs
< 0:0.7.4-1.el7sat
- redhat•foreman
< 0:1.18.0.37-1.el7sat
- redhat•foreman-bootloaders-redhat
< 0:201801241201-3.el7sat
- redhat•foreman-bootloaders-redhat-tftpboot
< 0:201801241201-3.el7sat
- redhat•foreman-cli
< 0:1.18.0.37-1.el7sat
- redhat•foreman-compute
< 0:1.18.0.37-1.el7sat
- redhat•foreman-debug
< 0:1.18.0.37-1.el7sat
- redhat•foreman-ec2
< 0:1.18.0.37-1.el7sat
- redhat•foreman-gce
< 0:1.18.0.37-1.el7sat
- redhat•foreman-installer
< 1:1.18.0.2-1.el7sat
- redhat•foreman-installer-katello
< 0:3.7.0.10-1.el7sat
- redhat•foreman-journald
< 0:1.18.0.37-1.el7sat
- redhat•foreman-libvirt
< 0:1.18.0.37-1.el7sat
- redhat•foreman-openstack
< 0:1.18.0.37-1.el7sat
- redhat•foreman-ovirt
< 0:1.18.0.37-1.el7sat
- redhat•foreman-postgresql
< 0:1.18.0.37-1.el7sat
- redhat•foreman-proxy
< 0:1.18.0.1-1.el7sat
- redhat•foreman-proxy-content
< 0:3.7.0-8.el7sat
- redhat•foreman-rackspace
< 0:1.18.0.37-1.el7sat
- redhat•foreman-selinux
< 0:1.18.0.1-1.el7sat
- redhat•foreman-telemetry
< 0:1.18.0.37-1.el7sat
- redhat•foreman-vmware
< 0:1.18.0.37-1.el7sat
- redhat•gofer
< 0:2.12.1-1.el7sat
- redhat•hfsplus-tools
< 0:332.14-12.el7
- redhat•hfsplus-tools-debuginfo
< 0:332.14-12.el7
- redhat•katello
< 0:3.7.0-8.el7sat
- redhat•katello-certs-tools
< 0:2.4.0-2.el7sat
- redhat•katello-client-bootstrap
< 0:1.6.0-1.el7sat
- redhat•katello-common
< 0:3.7.0-8.el7sat
- redhat•katello-debug
< 0:3.7.0-8.el7sat
- redhat•katello-installer-base
< 0:3.7.0.10-1.el7sat
- redhat•katello-selinux
< 0:3.0.3-2.el7sat
- redhat•katello-service
< 0:3.7.0-8.el7sat
- redhat•kobo
< 0:0.5.1-1.el7sat
- redhat•libstemmer
< 0:0-2.585svn.el7sat
- redhat•libstemmer-debuginfo
< 0:0-2.585svn.el7sat
- redhat•libwebsockets
< 0:2.1.0-3.el7
- redhat•libwebsockets-debuginfo
< 0:2.1.0-3.el7
- redhat•liquibase
< 0:3.1.0-1.el7
- redhat•livecd-tools
< 1:20.4-1.6.el7sat
- redhat•mod_passenger
< 0:4.0.18-24.el7sat
- redhat•mod_xsendfile
< 0:0.12-10.el7sat
- redhat•mod_xsendfile-debuginfo
< 0:0.12-10.el7sat
- redhat•mongodb
< 0:2.6.11-2.el7sat
- redhat•mongodb-debuginfo
< 0:2.6.11-2.el7sat
Showing first 50 affected entries in server-rendered view.
References (211)
- https://access.redhat.com/errata/RHSA-2018:2927
- https://access.redhat.com/security/updates/classification/#important
- https://access.redhat.com/documentation/en-us/red_hat_satellite/6.4/html/release_notes/
- https://bugzilla.redhat.com/show_bug.cgi?id=1052713
- https://bugzilla.redhat.com/show_bug.cgi?id=1060745
- https://bugzilla.redhat.com/show_bug.cgi?id=1155817
- https://bugzilla.redhat.com/show_bug.cgi?id=1177766
- https://bugzilla.redhat.com/show_bug.cgi?id=1197650
- https://bugzilla.redhat.com/show_bug.cgi?id=1225252
- https://bugzilla.redhat.com/show_bug.cgi?id=1260733
- https://bugzilla.redhat.com/show_bug.cgi?id=1265533
- https://bugzilla.redhat.com/show_bug.cgi?id=1291730
- https://bugzilla.redhat.com/show_bug.cgi?id=1295741
- https://bugzilla.redhat.com/show_bug.cgi?id=1312098
- https://bugzilla.redhat.com/show_bug.cgi?id=1328707
- https://bugzilla.redhat.com/show_bug.cgi?id=1349150
- https://bugzilla.redhat.com/show_bug.cgi?id=1356517
- https://bugzilla.redhat.com/show_bug.cgi?id=1357256
- https://bugzilla.redhat.com/show_bug.cgi?id=1372468
- https://bugzilla.redhat.com/show_bug.cgi?id=1372731
- https://bugzilla.redhat.com/show_bug.cgi?id=1379291
- https://bugzilla.redhat.com/show_bug.cgi?id=1382069
- https://bugzilla.redhat.com/show_bug.cgi?id=1386283
- https://bugzilla.redhat.com/show_bug.cgi?id=1386908
- https://bugzilla.redhat.com/show_bug.cgi?id=1389820
- https://bugzilla.redhat.com/show_bug.cgi?id=1400058
- https://bugzilla.redhat.com/show_bug.cgi?id=1409485
- https://bugzilla.redhat.com/show_bug.cgi?id=1410264
- https://bugzilla.redhat.com/show_bug.cgi?id=1410746
- https://bugzilla.redhat.com/show_bug.cgi?id=1412596
- https://bugzilla.redhat.com/show_bug.cgi?id=1416106
- https://bugzilla.redhat.com/show_bug.cgi?id=1417015
- https://bugzilla.redhat.com/show_bug.cgi?id=1417130
- https://bugzilla.redhat.com/show_bug.cgi?id=1419060
- https://bugzilla.redhat.com/show_bug.cgi?id=1425609
- https://bugzilla.redhat.com/show_bug.cgi?id=1426739
- https://bugzilla.redhat.com/show_bug.cgi?id=1428541
- https://bugzilla.redhat.com/show_bug.cgi?id=1430022
- https://bugzilla.redhat.com/show_bug.cgi?id=1430742
- https://bugzilla.redhat.com/show_bug.cgi?id=1432858
- https://bugzilla.redhat.com/show_bug.cgi?id=1435973
- https://bugzilla.redhat.com/show_bug.cgi?id=1437234
- https://bugzilla.redhat.com/show_bug.cgi?id=1439353
- https://bugzilla.redhat.com/show_bug.cgi?id=1443505
- https://bugzilla.redhat.com/show_bug.cgi?id=1443804
- https://bugzilla.redhat.com/show_bug.cgi?id=1444015
- https://bugzilla.redhat.com/show_bug.cgi?id=1449011
- https://bugzilla.redhat.com/show_bug.cgi?id=1452772
- https://bugzilla.redhat.com/show_bug.cgi?id=1455006
- https://bugzilla.redhat.com/show_bug.cgi?id=1455132
- https://bugzilla.redhat.com/show_bug.cgi?id=1458383
- https://bugzilla.redhat.com/show_bug.cgi?id=1458573
- https://bugzilla.redhat.com/show_bug.cgi?id=1458754
- https://bugzilla.redhat.com/show_bug.cgi?id=1464219
- https://bugzilla.redhat.com/show_bug.cgi?id=1464512
- https://bugzilla.redhat.com/show_bug.cgi?id=1465573
- https://bugzilla.redhat.com/show_bug.cgi?id=1468354
- https://bugzilla.redhat.com/show_bug.cgi?id=1468359
- https://bugzilla.redhat.com/show_bug.cgi?id=1470014
- https://bugzilla.redhat.com/show_bug.cgi?id=1470761
- https://bugzilla.redhat.com/show_bug.cgi?id=1474348
- https://bugzilla.redhat.com/show_bug.cgi?id=1475121
- https://bugzilla.redhat.com/show_bug.cgi?id=1478849
- https://bugzilla.redhat.com/show_bug.cgi?id=1482540
- https://bugzilla.redhat.com/show_bug.cgi?id=1483033
- https://bugzilla.redhat.com/show_bug.cgi?id=1485805
- https://bugzilla.redhat.com/show_bug.cgi?id=1486297
- https://bugzilla.redhat.com/show_bug.cgi?id=1486782
- https://bugzilla.redhat.com/show_bug.cgi?id=1487710
- https://bugzilla.redhat.com/show_bug.cgi?id=1488291
- https://bugzilla.redhat.com/show_bug.cgi?id=1489377
- https://bugzilla.redhat.com/show_bug.cgi?id=1498588
- https://bugzilla.redhat.com/show_bug.cgi?id=1498976
- https://bugzilla.redhat.com/show_bug.cgi?id=1500593
- https://bugzilla.redhat.com/show_bug.cgi?id=1506612
- https://bugzilla.redhat.com/show_bug.cgi?id=1508551
- https://bugzilla.redhat.com/show_bug.cgi?id=1515888
- https://bugzilla.redhat.com/show_bug.cgi?id=1516623
- https://bugzilla.redhat.com/show_bug.cgi?id=1527896
- https://bugzilla.redhat.com/show_bug.cgi?id=1536487
- https://bugzilla.redhat.com/show_bug.cgi?id=1538448
- https://bugzilla.redhat.com/show_bug.cgi?id=1538479
- https://bugzilla.redhat.com/show_bug.cgi?id=1539076
- https://bugzilla.redhat.com/show_bug.cgi?id=1542850
- https://bugzilla.redhat.com/show_bug.cgi?id=1545314
- https://bugzilla.redhat.com/show_bug.cgi?id=1549777
- https://bugzilla.redhat.com/show_bug.cgi?id=1549779
- https://bugzilla.redhat.com/show_bug.cgi?id=1552632
- https://bugzilla.redhat.com/show_bug.cgi?id=1553869
- https://bugzilla.redhat.com/show_bug.cgi?id=1553994
- https://bugzilla.redhat.com/show_bug.cgi?id=1555310
- https://bugzilla.redhat.com/show_bug.cgi?id=1557067
- https://bugzilla.redhat.com/show_bug.cgi?id=1560035
- https://bugzilla.redhat.com/show_bug.cgi?id=1561061
- https://bugzilla.redhat.com/show_bug.cgi?id=1561723
- https://bugzilla.redhat.com/show_bug.cgi?id=1563749
- https://bugzilla.redhat.com/show_bug.cgi?id=1564577
- https://bugzilla.redhat.com/show_bug.cgi?id=1566764
- https://bugzilla.redhat.com/show_bug.cgi?id=1570808
- https://bugzilla.redhat.com/show_bug.cgi?id=1572290
- https://bugzilla.redhat.com/show_bug.cgi?id=1572297
- https://bugzilla.redhat.com/show_bug.cgi?id=1572305
- https://bugzilla.redhat.com/show_bug.cgi?id=1573391
- https://bugzilla.redhat.com/show_bug.cgi?id=1579384
- https://bugzilla.redhat.com/show_bug.cgi?id=1588313
- https://bugzilla.redhat.com/show_bug.cgi?id=1588314
- https://bugzilla.redhat.com/show_bug.cgi?id=1588323
- https://bugzilla.redhat.com/show_bug.cgi?id=1588327
- https://bugzilla.redhat.com/show_bug.cgi?id=1588330
- https://bugzilla.redhat.com/show_bug.cgi?id=1588688
- https://bugzilla.redhat.com/show_bug.cgi?id=1588695
- https://bugzilla.redhat.com/show_bug.cgi?id=1588708
- https://bugzilla.redhat.com/show_bug.cgi?id=1588715
- https://bugzilla.redhat.com/show_bug.cgi?id=1588721
- https://bugzilla.redhat.com/show_bug.cgi?id=1595777
- https://bugzilla.redhat.com/show_bug.cgi?id=1608447
- https://security.access.redhat.com/data/csaf/v2/advisories/2018/rhsa-2018_2927.json
- https://access.redhat.com/security/cve/CVE-2015-3208
- https://www.cve.org/CVERecord?id=CVE-2015-3208
- https://nvd.nist.gov/vuln/detail/CVE-2015-3208
- https://access.redhat.com/security/cve/CVE-2015-6644
- https://www.cve.org/CVERecord?id=CVE-2015-6644
- https://nvd.nist.gov/vuln/detail/CVE-2015-6644
- https://access.redhat.com/security/cve/CVE-2016-1000338
- https://www.cve.org/CVERecord?id=CVE-2016-1000338
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000338
- https://access.redhat.com/security/cve/CVE-2016-1000339
- https://www.cve.org/CVERecord?id=CVE-2016-1000339
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000339
- https://access.redhat.com/security/cve/CVE-2016-1000340
- https://www.cve.org/CVERecord?id=CVE-2016-1000340
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000340
- https://access.redhat.com/security/cve/CVE-2016-1000341
- https://www.cve.org/CVERecord?id=CVE-2016-1000341
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000341
- https://access.redhat.com/security/cve/CVE-2016-1000342
- https://www.cve.org/CVERecord?id=CVE-2016-1000342
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000342
- https://access.redhat.com/security/cve/CVE-2016-1000343
- https://www.cve.org/CVERecord?id=CVE-2016-1000343
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000343
- https://access.redhat.com/security/cve/CVE-2016-1000344
- https://www.cve.org/CVERecord?id=CVE-2016-1000344
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000344
- https://access.redhat.com/security/cve/CVE-2016-1000345
- https://www.cve.org/CVERecord?id=CVE-2016-1000345
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000345
- https://access.redhat.com/security/cve/CVE-2016-1000346
- https://www.cve.org/CVERecord?id=CVE-2016-1000346
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000346
- https://access.redhat.com/security/cve/CVE-2016-1000352
- https://www.cve.org/CVERecord?id=CVE-2016-1000352
- https://nvd.nist.gov/vuln/detail/CVE-2016-1000352
- https://access.redhat.com/security/cve/CVE-2017-5929
- https://www.cve.org/CVERecord?id=CVE-2017-5929
- https://nvd.nist.gov/vuln/detail/CVE-2017-5929
- https://access.redhat.com/security/cve/CVE-2017-7233
- https://www.cve.org/CVERecord?id=CVE-2017-7233
- https://nvd.nist.gov/vuln/detail/CVE-2017-7233
- https://access.redhat.com/security/cve/CVE-2017-7536
- https://www.cve.org/CVERecord?id=CVE-2017-7536
- https://nvd.nist.gov/vuln/detail/CVE-2017-7536
- https://access.redhat.com/security/cve/CVE-2017-10689
- https://www.cve.org/CVERecord?id=CVE-2017-10689
- https://nvd.nist.gov/vuln/detail/CVE-2017-10689
- https://access.redhat.com/security/cve/CVE-2017-10690
- https://www.cve.org/CVERecord?id=CVE-2017-10690
- https://nvd.nist.gov/vuln/detail/CVE-2017-10690
- https://puppet.com/security/cve/CVE-2017-10690
- https://access.redhat.com/security/cve/CVE-2017-12175
- https://www.cve.org/CVERecord?id=CVE-2017-12175
- https://nvd.nist.gov/vuln/detail/CVE-2017-12175
- https://access.redhat.com/security/cve/CVE-2017-15095
- https://www.cve.org/CVERecord?id=CVE-2017-15095
- https://nvd.nist.gov/vuln/detail/CVE-2017-15095
- https://access.redhat.com/solutions/3442891
- https://access.redhat.com/security/cve/CVE-2017-15100
- https://www.cve.org/CVERecord?id=CVE-2017-15100
- https://nvd.nist.gov/vuln/detail/CVE-2017-15100
- https://access.redhat.com/security/cve/CVE-2018-1090
- https://www.cve.org/CVERecord?id=CVE-2018-1090
- https://nvd.nist.gov/vuln/detail/CVE-2018-1090
- https://pulp.plan.io/issues/3521
- https://access.redhat.com/security/cve/CVE-2018-1096
- https://www.cve.org/CVERecord?id=CVE-2018-1096
- https://nvd.nist.gov/vuln/detail/CVE-2018-1096
- https://access.redhat.com/security/cve/CVE-2018-1097
- https://www.cve.org/CVERecord?id=CVE-2018-1097
- https://nvd.nist.gov/vuln/detail/CVE-2018-1097
- https://access.redhat.com/security/cve/CVE-2018-5382
- https://www.cve.org/CVERecord?id=CVE-2018-5382
- https://nvd.nist.gov/vuln/detail/CVE-2018-5382
- https://insights.sei.cmu.edu/blog/the-curious-case-of-the-bouncy-castle-bks-passwords/
- https://www.kb.cert.org/vuls/id/306792
- https://access.redhat.com/security/cve/CVE-2018-6188
- https://bugzilla.redhat.com/show_bug.cgi?id=1538793
- https://www.cve.org/CVERecord?id=CVE-2018-6188
- https://nvd.nist.gov/vuln/detail/CVE-2018-6188
- https://www.djangoproject.com/weblog/2018/feb/01/security-releases/
- https://access.redhat.com/security/cve/CVE-2018-7536
- https://www.cve.org/CVERecord?id=CVE-2018-7536
- https://nvd.nist.gov/vuln/detail/CVE-2018-7536
- https://www.djangoproject.com/weblog/2018/mar/06/security-releases/
- https://access.redhat.com/security/cve/CVE-2018-7537
- https://www.cve.org/CVERecord?id=CVE-2018-7537
- https://nvd.nist.gov/vuln/detail/CVE-2018-7537
- https://access.redhat.com/security/cve/CVE-2018-10237
- https://www.cve.org/CVERecord?id=CVE-2018-10237
- https://nvd.nist.gov/vuln/detail/CVE-2018-10237
- https://github.com/google/guava/wiki/CVE-2018-10237
- https://groups.google.com/forum/#!topic/guava-announce/xqWALw4W1vs/discussion