RHSA-2019:3172
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: Red Hat Satellite 6 security, bug fix, and enhancement update
CVSS Metrics
- v3.0•CRITICAL•Score: 9CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Affected Systems
- redhat•ansible-runner
< 0:1.3.4-2.el7ar
- redhat•ansiblerole-foreman_scap_client
< 0:0.0.3-1.el7sat
- redhat•ansiblerole-insights-client
< 0:1.6-2.el7sat
- redhat•candlepin
< 0:2.6.9-1.el7sat
- redhat•candlepin-selinux
< 0:2.6.9-1.el7sat
- redhat•createrepo_c
< 0:0.7.4-1.el7sat
- redhat•createrepo_c-debuginfo
< 0:0.7.4-1.el7sat
- redhat•createrepo_c-libs
< 0:0.7.4-1.el7sat
- redhat•foreman
< 0:1.22.0.32-1.el7sat
- redhat•foreman-bootloaders-redhat
< 0:201901011200-1.el7sat
- redhat•foreman-bootloaders-redhat-tftpboot
< 0:201901011200-1.el7sat
- redhat•foreman-cli
< 0:1.22.0.32-1.el7sat
- redhat•foreman-debug
< 0:1.22.0.32-1.el7sat
- redhat•foreman-discovery-image
< 1:3.5.4-6.el7sat
- redhat•foreman-ec2
< 0:1.22.0.32-1.el7sat
- redhat•foreman-gce
< 0:1.22.0.32-1.el7sat
- redhat•foreman-installer
< 1:1.22.0.16-1.el7sat
- redhat•foreman-installer-katello
< 1:1.22.0.16-1.el7sat
- redhat•foreman-journald
< 0:1.22.0.32-1.el7sat
- redhat•foreman-libvirt
< 0:1.22.0.32-1.el7sat
- redhat•foreman-openstack
< 0:1.22.0.32-1.el7sat
- redhat•foreman-ovirt
< 0:1.22.0.32-1.el7sat
- redhat•foreman-postgresql
< 0:1.22.0.32-1.el7sat
- redhat•foreman-proxy
< 0:1.22.0.2-1.el7sat
- redhat•foreman-proxy-content
< 0:3.12.0-2.el7sat
- redhat•foreman-proxy-journald
< 0:1.22.0.2-1.el7sat
- redhat•foreman-rackspace
< 0:1.22.0.32-1.el7sat
- redhat•foreman-selinux
< 0:1.22.0-1.el7sat
- redhat•foreman-telemetry
< 0:1.22.0.32-1.el7sat
- redhat•foreman-vmware
< 0:1.22.0.32-1.el7sat
- redhat•future
< 0:0.16.0-11.el7sat
- redhat•gofer
< 0:2.12.5-5.el7sat
- redhat•hfsplus-tools
< 0:332.14-12.el7
- redhat•hfsplus-tools-debuginfo
< 0:332.14-12.el7
- redhat•katello
< 0:3.12.0-2.el7sat
- redhat•katello-certs-tools
< 0:2.6.0-1.el7sat
- redhat•katello-client-bootstrap
< 0:1.7.3-1.el7sat
- redhat•katello-common
< 0:3.12.0-2.el7sat
- redhat•katello-debug
< 0:3.12.0-2.el7sat
- redhat•katello-selinux
< 0:3.1.1-2.el7sat
- redhat•katello-service
< 0:3.12.0-2.el7sat
- redhat•kobo
< 0:0.5.1-1.el7sat
- redhat•libmodulemd
< 0:1.7.0-1.pulp.el7sat
- redhat•libmodulemd-debuginfo
< 0:1.7.0-1.pulp.el7sat
- redhat•libsolv
< 0:0.7.4-3.pulp.el7sat
- redhat•libsolv-debuginfo
< 0:0.7.4-3.pulp.el7sat
- redhat•libwebsockets
< 0:2.4.2-2.el7
- redhat•libwebsockets-debuginfo
< 0:2.4.2-2.el7
- redhat•livecd-tools
< 1:20.4-1.6.el7sat
- redhat•mod_passenger
< 0:4.0.18-24.el7sat
Showing first 50 affected entries in server-rendered view.
References (155)
- https://access.redhat.com/errata/RHSA-2019:3172
- https://access.redhat.com/security/updates/classification/#moderate
- https://bugzilla.redhat.com/show_bug.cgi?id=1111223
- https://bugzilla.redhat.com/show_bug.cgi?id=1152515
- https://bugzilla.redhat.com/show_bug.cgi?id=1163020
- https://bugzilla.redhat.com/show_bug.cgi?id=1194093
- https://bugzilla.redhat.com/show_bug.cgi?id=1336439
- https://bugzilla.redhat.com/show_bug.cgi?id=1378579
- https://bugzilla.redhat.com/show_bug.cgi?id=1402136
- https://bugzilla.redhat.com/show_bug.cgi?id=1465521
- https://bugzilla.redhat.com/show_bug.cgi?id=1490850
- https://bugzilla.redhat.com/show_bug.cgi?id=1503426
- https://bugzilla.redhat.com/show_bug.cgi?id=1505932
- https://bugzilla.redhat.com/show_bug.cgi?id=1559006
- https://bugzilla.redhat.com/show_bug.cgi?id=1561876
- https://bugzilla.redhat.com/show_bug.cgi?id=1591629
- https://bugzilla.redhat.com/show_bug.cgi?id=1593480
- https://bugzilla.redhat.com/show_bug.cgi?id=1596411
- https://bugzilla.redhat.com/show_bug.cgi?id=1601602
- https://bugzilla.redhat.com/show_bug.cgi?id=1608712
- https://bugzilla.redhat.com/show_bug.cgi?id=1609371
- https://bugzilla.redhat.com/show_bug.cgi?id=1612800
- https://bugzilla.redhat.com/show_bug.cgi?id=1620529
- https://bugzilla.redhat.com/show_bug.cgi?id=1630548
- https://bugzilla.redhat.com/show_bug.cgi?id=1634755
- https://bugzilla.redhat.com/show_bug.cgi?id=1643649
- https://bugzilla.redhat.com/show_bug.cgi?id=1644201
- https://bugzilla.redhat.com/show_bug.cgi?id=1646814
- https://bugzilla.redhat.com/show_bug.cgi?id=1649944
- https://bugzilla.redhat.com/show_bug.cgi?id=1650641
- https://bugzilla.redhat.com/show_bug.cgi?id=1651389
- https://bugzilla.redhat.com/show_bug.cgi?id=1653293
- https://bugzilla.redhat.com/show_bug.cgi?id=1658265
- https://bugzilla.redhat.com/show_bug.cgi?id=1658284
- https://bugzilla.redhat.com/show_bug.cgi?id=1658318
- https://bugzilla.redhat.com/show_bug.cgi?id=1658553
- https://bugzilla.redhat.com/show_bug.cgi?id=1659979
- https://bugzilla.redhat.com/show_bug.cgi?id=1671274
- https://bugzilla.redhat.com/show_bug.cgi?id=1671318
- https://bugzilla.redhat.com/show_bug.cgi?id=1672706
- https://bugzilla.redhat.com/show_bug.cgi?id=1673447
- https://bugzilla.redhat.com/show_bug.cgi?id=1679225
- https://bugzilla.redhat.com/show_bug.cgi?id=1679300
- https://bugzilla.redhat.com/show_bug.cgi?id=1684573
- https://bugzilla.redhat.com/show_bug.cgi?id=1686514
- https://bugzilla.redhat.com/show_bug.cgi?id=1687543
- https://bugzilla.redhat.com/show_bug.cgi?id=1687801
- https://bugzilla.redhat.com/show_bug.cgi?id=1690070
- https://bugzilla.redhat.com/show_bug.cgi?id=1690204
- https://bugzilla.redhat.com/show_bug.cgi?id=1691074
- https://bugzilla.redhat.com/show_bug.cgi?id=1691443
- https://bugzilla.redhat.com/show_bug.cgi?id=1698148
- https://bugzilla.redhat.com/show_bug.cgi?id=1698178
- https://bugzilla.redhat.com/show_bug.cgi?id=1698182
- https://bugzilla.redhat.com/show_bug.cgi?id=1703476
- https://bugzilla.redhat.com/show_bug.cgi?id=1705099
- https://bugzilla.redhat.com/show_bug.cgi?id=1706265
- https://bugzilla.redhat.com/show_bug.cgi?id=1706267
- https://bugzilla.redhat.com/show_bug.cgi?id=1706274
- https://bugzilla.redhat.com/show_bug.cgi?id=1706277
- https://bugzilla.redhat.com/show_bug.cgi?id=1706296
- https://bugzilla.redhat.com/show_bug.cgi?id=1706721
- https://bugzilla.redhat.com/show_bug.cgi?id=1706743
- https://bugzilla.redhat.com/show_bug.cgi?id=1707157
- https://bugzilla.redhat.com/show_bug.cgi?id=1709761
- https://bugzilla.redhat.com/show_bug.cgi?id=1712554
- https://bugzilla.redhat.com/show_bug.cgi?id=1712889
- https://bugzilla.redhat.com/show_bug.cgi?id=1712985
- https://bugzilla.redhat.com/show_bug.cgi?id=1713103
- https://bugzilla.redhat.com/show_bug.cgi?id=1713248
- https://bugzilla.redhat.com/show_bug.cgi?id=1713274
- https://bugzilla.redhat.com/show_bug.cgi?id=1713802
- https://bugzilla.redhat.com/show_bug.cgi?id=1714234
- https://bugzilla.redhat.com/show_bug.cgi?id=1714604
- https://bugzilla.redhat.com/show_bug.cgi?id=1715898
- https://bugzilla.redhat.com/show_bug.cgi?id=1716877
- https://bugzilla.redhat.com/show_bug.cgi?id=1716900
- https://bugzilla.redhat.com/show_bug.cgi?id=1717069
- https://bugzilla.redhat.com/show_bug.cgi?id=1717248
- https://bugzilla.redhat.com/show_bug.cgi?id=1717883
- https://bugzilla.redhat.com/show_bug.cgi?id=1718009
- https://bugzilla.redhat.com/show_bug.cgi?id=1718889
- https://bugzilla.redhat.com/show_bug.cgi?id=1720200
- https://bugzilla.redhat.com/show_bug.cgi?id=1721055
- https://bugzilla.redhat.com/show_bug.cgi?id=1722475
- https://bugzilla.redhat.com/show_bug.cgi?id=1722713
- https://bugzilla.redhat.com/show_bug.cgi?id=1723733
- https://bugzilla.redhat.com/show_bug.cgi?id=1724064
- https://bugzilla.redhat.com/show_bug.cgi?id=1724739
- https://bugzilla.redhat.com/show_bug.cgi?id=1725250
- https://bugzilla.redhat.com/show_bug.cgi?id=1725289
- https://bugzilla.redhat.com/show_bug.cgi?id=1727320
- https://bugzilla.redhat.com/show_bug.cgi?id=1727927
- https://bugzilla.redhat.com/show_bug.cgi?id=1728289
- https://bugzilla.redhat.com/show_bug.cgi?id=1728306
- https://bugzilla.redhat.com/show_bug.cgi?id=1729049
- https://bugzilla.redhat.com/show_bug.cgi?id=1729130
- https://bugzilla.redhat.com/show_bug.cgi?id=1729149
- https://bugzilla.redhat.com/show_bug.cgi?id=1729153
- https://bugzilla.redhat.com/show_bug.cgi?id=1730397
- https://bugzilla.redhat.com/show_bug.cgi?id=1730668
- https://bugzilla.redhat.com/show_bug.cgi?id=1731112
- https://bugzilla.redhat.com/show_bug.cgi?id=1731639
- https://bugzilla.redhat.com/show_bug.cgi?id=1732066
- https://bugzilla.redhat.com/show_bug.cgi?id=1732601
- https://bugzilla.redhat.com/show_bug.cgi?id=1737488
- https://bugzilla.redhat.com/show_bug.cgi?id=1739367
- https://bugzilla.redhat.com/show_bug.cgi?id=1739485
- https://bugzilla.redhat.com/show_bug.cgi?id=1739712
- https://bugzilla.redhat.com/show_bug.cgi?id=1744515
- https://bugzilla.redhat.com/show_bug.cgi?id=1746166
- https://bugzilla.redhat.com/show_bug.cgi?id=1746175
- https://bugzilla.redhat.com/show_bug.cgi?id=1746581
- https://bugzilla.redhat.com/show_bug.cgi?id=1747177
- https://bugzilla.redhat.com/show_bug.cgi?id=1747654
- https://bugzilla.redhat.com/show_bug.cgi?id=1750846
- https://bugzilla.redhat.com/show_bug.cgi?id=1751384
- https://bugzilla.redhat.com/show_bug.cgi?id=1752256
- https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_3172.json
- https://access.redhat.com/security/cve/CVE-2016-10516
- https://bugzilla.redhat.com/show_bug.cgi?id=1512102
- https://www.cve.org/CVERecord?id=CVE-2016-10516
- https://nvd.nist.gov/vuln/detail/CVE-2016-10516
- https://access.redhat.com/security/cve/CVE-2016-10745
- https://bugzilla.redhat.com/show_bug.cgi?id=1698345
- https://www.cve.org/CVERecord?id=CVE-2016-10745
- https://nvd.nist.gov/vuln/detail/CVE-2016-10745
- https://palletsprojects.com/blog/jinja-281-released/
- https://access.redhat.com/security/cve/CVE-2018-16470
- https://www.cve.org/CVERecord?id=CVE-2018-16470
- https://nvd.nist.gov/vuln/detail/CVE-2018-16470
- https://groups.google.com/forum/#!msg/rubyonrails-security/U_x-YkfuVTg/xhvYAmp6AAAJ
- https://access.redhat.com/security/cve/CVE-2018-1000632
- https://www.cve.org/CVERecord?id=CVE-2018-1000632
- https://nvd.nist.gov/vuln/detail/CVE-2018-1000632
- https://access.redhat.com/security/cve/CVE-2019-3893
- https://bugzilla.redhat.com/show_bug.cgi?id=1696400
- https://www.cve.org/CVERecord?id=CVE-2019-3893
- https://nvd.nist.gov/vuln/detail/CVE-2019-3893
- https://access.redhat.com/security/cve/CVE-2019-10198
- https://www.cve.org/CVERecord?id=CVE-2019-10198
- https://nvd.nist.gov/vuln/detail/CVE-2019-10198
- https://projects.theforeman.org/issues/27275
- https://access.redhat.com/security/cve/CVE-2019-10906
- https://bugzilla.redhat.com/show_bug.cgi?id=1698839
- https://www.cve.org/CVERecord?id=CVE-2019-10906
- https://nvd.nist.gov/vuln/detail/CVE-2019-10906
- https://palletsprojects.com/blog/jinja-2-10-1-released/
- https://access.redhat.com/security/cve/CVE-2019-12387
- https://bugzilla.redhat.com/show_bug.cgi?id=1719501
- https://www.cve.org/CVERecord?id=CVE-2019-12387
- https://nvd.nist.gov/vuln/detail/CVE-2019-12387
- https://access.redhat.com/security/cve/CVE-2019-14825
- https://www.cve.org/CVERecord?id=CVE-2019-14825
- https://nvd.nist.gov/vuln/detail/CVE-2019-14825