RHSA-2024:0143
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: idm:DL1 security update
CVSS Metrics
- v3.1•HIGH•Score: 7.2CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•bind-dyndb-ldap
< 0:11.6-4.module+el8.9.0+18911+94941f82
- redhat•bind-dyndb-ldap-debuginfo
< 0:11.6-4.module+el8.9.0+18911+94941f82
- redhat•bind-dyndb-ldap-debugsource
< 0:11.6-4.module+el8.9.0+18911+94941f82
- redhat•custodia
< 0:0.6.0-3.module+el8.9.0+18911+94941f82
- redhat•ipa
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-client
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-client-common
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-client-debuginfo
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-client-epn
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-client-samba
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-common
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-debuginfo
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-debugsource
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-healthcheck
< 0:0.12-3.module+el8.9.0+19634+c162f948
- redhat•ipa-healthcheck-core
< 0:0.12-3.module+el8.9.0+19634+c162f948
- redhat•ipa-python-compat
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-selinux
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-server
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-server-common
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-server-debuginfo
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-server-dns
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-server-trust-ad
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•ipa-server-trust-ad-debuginfo
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•opendnssec
< 0:2.1.7-1.module+el8.9.0+18911+94941f82
- redhat•opendnssec-debuginfo
< 0:2.1.7-1.module+el8.9.0+18911+94941f82
- redhat•opendnssec-debugsource
< 0:2.1.7-1.module+el8.9.0+18911+94941f82
- redhat•python-jwcrypto
< 0:0.5.0-1.1.module+el8.9.0+18911+94941f82
- redhat•python-kdcproxy
< 0:0.4-5.module+el8.9.0+18911+94941f82
- redhat•python-qrcode
< 0:5.1-12.module+el8.9.0+18911+94941f82
- redhat•python-yubico
< 0:1.3.2-9.1.module+el8.9.0+18911+94941f82
- redhat•python3-custodia
< 0:0.6.0-3.module+el8.9.0+18911+94941f82
- redhat•python3-ipaclient
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•python3-ipalib
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•python3-ipaserver
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•python3-ipatests
< 0:4.9.12-11.module+el8.9.0+20824+f2605038
- redhat•python3-jwcrypto
< 0:0.5.0-1.1.module+el8.9.0+18911+94941f82
- redhat•python3-kdcproxy
< 0:0.4-5.module+el8.9.0+18911+94941f82
- redhat•python3-pyusb
< 0:1.0.0-9.1.module+el8.9.0+18911+94941f82
- redhat•python3-qrcode
< 0:5.1-12.module+el8.9.0+18911+94941f82
- redhat•python3-qrcode-core
< 0:5.1-12.module+el8.9.0+18911+94941f82
- redhat•python3-yubico
< 0:1.3.2-9.1.module+el8.9.0+18911+94941f82
- redhat•pyusb
< 0:1.0.0-9.1.module+el8.9.0+18911+94941f82
- redhat•slapi-nis
< 0:0.60.0-4.module+el8.9.0+20420+fef9eb45
- redhat•slapi-nis-debuginfo
< 0:0.60.0-4.module+el8.9.0+20420+fef9eb45
- redhat•slapi-nis-debugsource
< 0:0.60.0-4.module+el8.9.0+20420+fef9eb45
- redhat•softhsm
< 0:2.6.0-5.module+el8.9.0+18911+94941f82
- redhat•softhsm-debuginfo
< 0:2.6.0-5.module+el8.9.0+18911+94941f82
- redhat•softhsm-debugsource
< 0:2.6.0-5.module+el8.9.0+18911+94941f82
- redhat•softhsm-devel
< 0:2.6.0-5.module+el8.9.0+18911+94941f82
References (16)
- https://access.redhat.com/errata/RHSA-2024:0143
- https://access.redhat.com/security/updates/classification/#moderate
- https://bugzilla.redhat.com/show_bug.cgi?id=2025721
- https://bugzilla.redhat.com/show_bug.cgi?id=2242828
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_0143.json
- https://access.redhat.com/security/cve/CVE-2020-17049
- https://www.cve.org/CVERecord?id=CVE-2020-17049
- https://nvd.nist.gov/vuln/detail/CVE-2020-17049
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2020-17049
- https://access.redhat.com/security/cve/CVE-2023-5455
- https://www.cve.org/CVERecord?id=CVE-2023-5455
- https://nvd.nist.gov/vuln/detail/CVE-2023-5455
- https://www.freeipa.org/release-notes/4-10-3.html
- https://www.freeipa.org/release-notes/4-11-1.html
- https://www.freeipa.org/release-notes/4-6-10.html
- https://www.freeipa.org/release-notes/4-9-14.html