RHSA-2024:3267
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: idm:DL1 and idm:client security update
CVSS Metrics
- v3.1•MEDIUM•Score: 6.8CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
Affected Systems
- redhat•bind-dyndb-ldap
< 0:11.6-5.module+el8.10.0+21691+df63127d
- redhat•bind-dyndb-ldap-debuginfo
< 0:11.6-5.module+el8.10.0+21691+df63127d
- redhat•bind-dyndb-ldap-debugsource
< 0:11.6-5.module+el8.10.0+21691+df63127d
- redhat•custodia
< 0:0.6.0-3.module+el8.9.0+18911+94941f82
- redhat•ipa
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-client
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-client-common
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-client-debuginfo
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-client-epn
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-client-samba
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-common
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-debuginfo
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-debugsource
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-healthcheck
< 0:0.12-3.module+el8.9.0+19692+fac39a03
- redhat•ipa-healthcheck-core
< 0:0.12-3.module+el8.9.0+19692+fac39a03
- redhat•ipa-python-compat
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-selinux
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•ipa-server
< 0:4.9.13-9.module+el8.10.0+21691+df63127d
- redhat•ipa-server-common
< 0:4.9.13-9.module+el8.10.0+21691+df63127d
- redhat•ipa-server-debuginfo
< 0:4.9.13-9.module+el8.10.0+21691+df63127d
- redhat•ipa-server-dns
< 0:4.9.13-9.module+el8.10.0+21691+df63127d
- redhat•ipa-server-trust-ad
< 0:4.9.13-9.module+el8.10.0+21691+df63127d
- redhat•ipa-server-trust-ad-debuginfo
< 0:4.9.13-9.module+el8.10.0+21691+df63127d
- redhat•opendnssec
< 0:2.1.7-1.module+el8.9.0+18911+94941f82
- redhat•opendnssec-debuginfo
< 0:2.1.7-1.module+el8.9.0+18911+94941f82
- redhat•opendnssec-debugsource
< 0:2.1.7-1.module+el8.9.0+18911+94941f82
- redhat•python-jwcrypto
< 0:0.5.0-2.module+el8.10.0+21692+c9b201bc
- redhat•python-kdcproxy
< 0:0.4-5.module+el8.9.0+18911+94941f82
- redhat•python-qrcode
< 0:5.1-12.module+el8.9.0+18920+2223d05e
- redhat•python-yubico
< 0:1.3.2-9.1.module+el8.9.0+18920+2223d05e
- redhat•python3-custodia
< 0:0.6.0-3.module+el8.9.0+18911+94941f82
- redhat•python3-ipaclient
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•python3-ipalib
< 0:4.9.13-9.module+el8.10.0+21692+c9b201bc
- redhat•python3-ipaserver
< 0:4.9.13-9.module+el8.10.0+21691+df63127d
- redhat•python3-ipatests
< 0:4.9.13-9.module+el8.10.0+21691+df63127d
- redhat•python3-jwcrypto
< 0:0.5.0-2.module+el8.10.0+21692+c9b201bc
- redhat•python3-kdcproxy
< 0:0.4-5.module+el8.9.0+18911+94941f82
- redhat•python3-pyusb
< 0:1.0.0-9.1.module+el8.9.0+18920+2223d05e
- redhat•python3-qrcode
< 0:5.1-12.module+el8.9.0+18920+2223d05e
- redhat•python3-qrcode-core
< 0:5.1-12.module+el8.9.0+18920+2223d05e
- redhat•python3-yubico
< 0:1.3.2-9.1.module+el8.9.0+18920+2223d05e
- redhat•pyusb
< 0:1.0.0-9.1.module+el8.9.0+18920+2223d05e
- redhat•slapi-nis
< 0:0.60.0-4.module+el8.10.0+20723+03062ebd
- redhat•slapi-nis-debuginfo
< 0:0.60.0-4.module+el8.10.0+20723+03062ebd
- redhat•slapi-nis-debugsource
< 0:0.60.0-4.module+el8.10.0+20723+03062ebd
- redhat•softhsm
< 0:2.6.0-5.module+el8.9.0+18911+94941f82
- redhat•softhsm-debuginfo
< 0:2.6.0-5.module+el8.9.0+18911+94941f82
- redhat•softhsm-debugsource
< 0:2.6.0-5.module+el8.9.0+18911+94941f82
- redhat•softhsm-devel
< 0:2.6.0-5.module+el8.9.0+18911+94941f82
References (15)
- https://access.redhat.com/errata/RHSA-2024:3267
- https://access.redhat.com/security/updates/classification/#moderate
- https://bugzilla.redhat.com/show_bug.cgi?id=2260843
- https://bugzilla.redhat.com/show_bug.cgi?id=2268758
- https://issues.redhat.com/browse/RHEL-28842
- https://issues.redhat.com/browse/RHEL-29908
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_3267.json
- https://access.redhat.com/security/cve/CVE-2023-6681
- https://www.cve.org/CVERecord?id=CVE-2023-6681
- https://nvd.nist.gov/vuln/detail/CVE-2023-6681
- https://access.redhat.com/security/cve/CVE-2024-28102
- https://www.cve.org/CVERecord?id=CVE-2024-28102
- https://nvd.nist.gov/vuln/detail/CVE-2024-28102
- https://github.com/latchset/jwcrypto/commit/90477a3b6e73da69740e00b8161f53fea19b831f
- https://github.com/latchset/jwcrypto/security/advisories/GHSA-j857-7rvv-vj97