RHSA-2019:2720
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: pki-deps:10.6 security update
CVSS Metrics
- v3.0•HIGH•Score: 8.1CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•apache-commons-collections
< 0:3.2.2-10.module+el8.0.0+3892+c903d3f0
- redhat•apache-commons-lang
< 0:2.6-21.module+el8.0.0+3892+c903d3f0
- redhat•bea-stax
< 0:1.2.0-16.module+el8.0.0+3892+c903d3f0
- redhat•bea-stax-api
< 0:1.2.0-16.module+el8.0.0+3892+c903d3f0
- redhat•glassfish-fastinfoset
< 0:1.2.13-9.module+el8.0.0+3892+c903d3f0
- redhat•glassfish-jaxb
< 0:2.2.11-11.module+el8.0.0+3892+c903d3f0
- redhat•glassfish-jaxb-api
< 0:2.2.12-8.module+el8.0.0+3892+c903d3f0
- redhat•glassfish-jaxb-core
< 0:2.2.11-11.module+el8.0.0+3892+c903d3f0
- redhat•glassfish-jaxb-runtime
< 0:2.2.11-11.module+el8.0.0+3892+c903d3f0
- redhat•glassfish-jaxb-txw2
< 0:2.2.11-11.module+el8.0.0+3892+c903d3f0
- redhat•jackson-annotations
< 0:2.9.9-1.module+el8.0.0+3892+c903d3f0
- redhat•jackson-core
< 0:2.9.9-1.module+el8.0.0+3892+c903d3f0
- redhat•jackson-databind
< 0:2.9.9.2-1.module+el8.0.0+3892+c903d3f0
- redhat•jackson-jaxrs-json-provider
< 0:2.9.9-1.module+el8.0.0+3892+c903d3f0
- redhat•jackson-jaxrs-providers
< 0:2.9.9-1.module+el8.0.0+3892+c903d3f0
- redhat•jackson-module-jaxb-annotations
< 0:2.7.6-4.module+el8.0.0+3892+c903d3f0
- redhat•jakarta-commons-httpclient
< 1:3.1-28.module+el8.0.0+3892+c903d3f0
- redhat•javassist
< 0:3.18.1-8.module+el8.0.0+3892+c903d3f0
- redhat•javassist-javadoc
< 0:3.18.1-8.module+el8.0.0+3892+c903d3f0
- redhat•pki-servlet-4.0-api
< 1:9.0.7-14.module+el8.0.0+3892+c903d3f0
- redhat•pki-servlet-container
< 1:9.0.7-14.module+el8.0.0+3892+c903d3f0
- redhat•python-nss
< 0:1.0.1-10.module+el8.0.0+3892+c903d3f0
- redhat•python-nss-debugsource
< 0:1.0.1-10.module+el8.0.0+3892+c903d3f0
- redhat•python-nss-doc
< 0:1.0.1-10.module+el8.0.0+3892+c903d3f0
- redhat•python3-nss
< 0:1.0.1-10.module+el8.0.0+3892+c903d3f0
- redhat•python3-nss-debuginfo
< 0:1.0.1-10.module+el8.0.0+3892+c903d3f0
- redhat•relaxngDatatype
< 0:2011.1-7.module+el8.0.0+3892+c903d3f0
- redhat•resteasy
< 0:3.0.26-3.module+el8.0.0+3892+c903d3f0
- redhat•slf4j
< 0:1.7.25-4.module+el8.0.0+3892+c903d3f0
- redhat•slf4j-jdk14
< 0:1.7.25-4.module+el8.0.0+3892+c903d3f0
- redhat•stax-ex
< 0:1.7.7-8.module+el8.0.0+3892+c903d3f0
- redhat•velocity
< 0:1.7-24.module+el8.0.0+3892+c903d3f0
- redhat•xalan-j2
< 0:2.7.1-38.module+el8.0.0+3892+c903d3f0
- redhat•xerces-j2
< 0:2.11.0-34.module+el8.0.0+3892+c903d3f0
- redhat•xml-commons-apis
< 0:1.4.01-25.module+el8.0.0+3892+c903d3f0
- redhat•xml-commons-resolver
< 0:1.2-26.module+el8.0.0+3892+c903d3f0
- redhat•xmlstreambuffer
< 0:1.5.4-8.module+el8.0.0+3892+c903d3f0
- redhat•xsom
< 0:0-19.20110809svn.module+el8.0.0+3892+c903d3f0
References (7)
- https://access.redhat.com/errata/RHSA-2019:2720
- https://access.redhat.com/security/updates/classification/#important
- https://bugzilla.redhat.com/show_bug.cgi?id=1725807
- https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_2720.json
- https://access.redhat.com/security/cve/CVE-2019-12384
- https://www.cve.org/CVERecord?id=CVE-2019-12384
- https://nvd.nist.gov/vuln/detail/CVE-2019-12384