For details on how to apply this update, which includes the changes
described in this advisory, refer to:
https://access.redhat.com/articles/11258
The convert2rhel package provides the Convert2RHEL utility, which performs
operating system conversion. During the conversion process, Convert2RHEL
replaces all RPM packages from the original Linux distribution with their
Red Hat Enteprise Linux versions.
Security Fix(es):
* convert2rhel: Activation key passed via command line by code
(CVE-2022-0851)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.
https://access.redhat.com/security/cve/CVE-2022-0851 https://access.redhat.com/security/updates/classification/#moderate
Convert2RHEL for RHEL-6:
Source:
convert2rhel-1.0-1.el6.src.rpm
noarch:
convert2rhel-1.0-1.el6.noarch.rpm
These packages are GPG signed by Red Hat for security. Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/
An update for convert2rhel is now available for Convert2RHEL for RHEL-6.Red Hat Product Security has rated this update as having a security impactof Moderate. A Common Vulnerability Scoring System (CVSS) base score, whichgives a detailed severity rating, is available for each vulnerability fromthe CVE link(s) in the References section.
Convert2RHEL for RHEL-6 - noarch
2060217 - CVE-2022-0851 convert2rhel: Activation key passed via command line by code
Get the latest Linux and open source security news straight to your inbox.