Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 27 articles for you...
98

Red Hat Enterprise Linux 8 RHSA-2023:5455 Important: glibc Buffer Overflow

An update for glibc is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ===================================================================== Red Hat Security Advisory Synopsis: Important: glibc security update Advisory ID: RHSA-2023:5455-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:5455 Issue date: 2023-10-05 CVE Names: CVE-2023-4527 CVE-2023-4806 CVE-2023-4813 CVE-2023-4911 ===================================================================== 1. Summary: An update for glibc is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux BaseOS (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 Red Hat Enterprise Linux CRB (v. 8) - aarch64, ppc64le, s390x, x86_64 3. Description: The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. Security Fix(es): * glibc: buffer overflow in ld.so leading to privilege escalation (CVE-2023-4911) * glibc: Stack read overflow in getaddrinfo in no-aaaa mode (CVE-2023-4527) * glibc: potential use-after-free in getaddrinfo() (CVE-2023-4806) * glibc: potentialuse-after-free in gaih_inet() (CVE-2023-4813) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 For the update to take effect, all services linked to the glibc library must be restarted, or the system rebooted. 5. Bugs fixed (https://bugzilla.redhat.com/): 2234712 - CVE-2023-4527 glibc: Stack read overflow in getaddrinfo in no-aaaa mode 2237782 - CVE-2023-4806 glibc: potential use-after-free in getaddrinfo() 2237798 - CVE-2023-4813 glibc: potential use-after-free in gaih_inet() 2238352 - CVE-2023-4911 glibc: buffer overflow in ld.so leading to privilege escalation 6. Package List: Red Hat Enterprise Linux AppStream (v.8): aarch64: compat-libpthread-nonshared-2.28-225.el8_8.6.aarch64.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-common-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-debugsource-2.28-225.el8_8.6.aarch64.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-utils-2.28-225.el8_8.6.aarch64.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.aarch64.rpm libnsl-debuginfo-2.28-225.el8_8.6.aarch64.rpm nscd-debuginfo-2.28-225.el8_8.6.aarch64.rpm nss_db-debuginfo-2.28-225.el8_8.6.aarch64.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.aarch64.rpm ppc64le: compat-libpthread-nonshared-2.28-225.el8_8.6.ppc64le.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-common-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-debugsource-2.28-225.el8_8.6.ppc64le.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-utils-2.28-225.el8_8.6.ppc64le.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.ppc64le.rpm libnsl-debuginfo-2.28-225.el8_8.6.ppc64le.rpm nscd-debuginfo-2.28-225.el8_8.6.ppc64le.rpm nss_db-debuginfo-2.28-225.el8_8.6.ppc64le.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.ppc64le.rpm s390x: compat-libpthread-nonshared-2.28-225.el8_8.6.s390x.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-common-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-debugsource-2.28-225.el8_8.6.s390x.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-utils-2.28-225.el8_8.6.s390x.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.s390x.rpm libnsl-debuginfo-2.28-225.el8_8.6.s390x.rpm nscd-debuginfo-2.28-225.el8_8.6.s390x.rpm nss_db-debuginfo-2.28-225.el8_8.6.s390x.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.s390x.rpm x86_64: compat-libpthread-nonshared-2.28-225.el8_8.6.x86_64.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-common-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-debugsource-2.28-225.el8_8.6.x86_64.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-utils-2.28-225.el8_8.6.x86_64.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.x86_64.rpm libnsl-debuginfo-2.28-225.el8_8.6.x86_64.rpm nscd-debuginfo-2.28-225.el8_8.6.x86_64.rpm nss_db-debuginfo-2.28-225.el8_8.6.x86_64.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.x86_64.rpm Red Hat Enterprise Linux BaseOS (v.8): Source: glibc-2.28-225.el8_8.6.src.rpm aarch64: glibc-2.28-225.el8_8.6.aarch64.rpm glibc-all-langpacks-2.28-225.el8_8.6.aarch64.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-common-2.28-225.el8_8.6.aarch64.rpm glibc-common-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-debugsource-2.28-225.el8_8.6.aarch64.rpm glibc-devel-2.28-225.el8_8.6.aarch64.rpm glibc-gconv-extra-2.28-225.el8_8.6.aarch64.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-headers-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-aa-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-af-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-agr-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ak-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-am-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-an-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-anp-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ar-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-as-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ast-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ayc-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-az-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-be-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-bem-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ber-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-bg-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-bhb-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-bho-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-bi-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-bn-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-bo-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-br-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-brx-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-bs-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-byn-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ca-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ce-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-chr-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-cmn-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-crh-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-cs-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-csb-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-cv-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-cy-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-da-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-de-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-doi-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-dsb-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-dv-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-dz-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-el-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-en-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-eo-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-es-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-et-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-eu-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-fa-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ff-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-fi-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-fil-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-fo-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-fr-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-fur-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-fy-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ga-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-gd-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-gez-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-gl-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-gu-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-gv-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ha-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-hak-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-he-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-hi-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-hif-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-hne-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-hr-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-hsb-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ht-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-hu-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-hy-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ia-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-id-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ig-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ik-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-is-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-it-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-iu-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ja-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ka-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-kab-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-kk-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-kl-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-km-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-kn-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ko-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-kok-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ks-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ku-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-kw-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ky-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-lb-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-lg-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-li-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-lij-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ln-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-lo-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-lt-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-lv-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-lzh-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mag-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mai-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mfe-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mg-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mhr-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mi-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-miq-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mjw-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mk-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ml-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mn-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mni-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mr-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ms-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-mt-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-my-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-nan-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-nb-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-nds-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ne-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-nhn-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-niu-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-nl-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-nn-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-nr-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-nso-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-oc-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-om-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-or-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-os-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-pa-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-pap-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-pl-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ps-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-pt-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-quz-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-raj-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ro-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ru-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-rw-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sa-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sah-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sat-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sc-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sd-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-se-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sgs-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-shn-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-shs-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-si-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sid-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sk-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sl-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sm-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-so-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sq-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sr-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ss-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-st-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sv-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-sw-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-szl-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ta-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-tcy-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-te-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-tg-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-th-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-the-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ti-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-tig-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-tk-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-tl-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-tn-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-to-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-tpi-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-tr-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ts-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-tt-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ug-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-uk-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-unm-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ur-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-uz-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-ve-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-vi-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-wa-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-wae-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-wal-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-wo-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-xh-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-yi-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-yo-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-yue-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-yuw-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-zh-2.28-225.el8_8.6.aarch64.rpm glibc-langpack-zu-2.28-225.el8_8.6.aarch64.rpm glibc-locale-source-2.28-225.el8_8.6.aarch64.rpm glibc-minimal-langpack-2.28-225.el8_8.6.aarch64.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.aarch64.rpm libnsl-2.28-225.el8_8.6.aarch64.rpm libnsl-debuginfo-2.28-225.el8_8.6.aarch64.rpm nscd-2.28-225.el8_8.6.aarch64.rpm nscd-debuginfo-2.28-225.el8_8.6.aarch64.rpm nss_db-2.28-225.el8_8.6.aarch64.rpm nss_db-debuginfo-2.28-225.el8_8.6.aarch64.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.aarch64.rpm noarch: glibc-doc-2.28-225.el8_8.6.noarch.rpm ppc64le: glibc-2.28-225.el8_8.6.ppc64le.rpm glibc-all-langpacks-2.28-225.el8_8.6.ppc64le.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-common-2.28-225.el8_8.6.ppc64le.rpm glibc-common-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-debugsource-2.28-225.el8_8.6.ppc64le.rpm glibc-devel-2.28-225.el8_8.6.ppc64le.rpm glibc-gconv-extra-2.28-225.el8_8.6.ppc64le.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-headers-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-aa-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-af-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-agr-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ak-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-am-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-an-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-anp-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ar-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-as-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ast-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ayc-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-az-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-be-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-bem-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ber-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-bg-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-bhb-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-bho-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-bi-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-bn-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-bo-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-br-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-brx-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-bs-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-byn-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ca-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ce-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-chr-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-cmn-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-crh-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-cs-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-csb-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-cv-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-cy-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-da-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-de-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-doi-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-dsb-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-dv-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-dz-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-el-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-en-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-eo-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-es-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-et-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-eu-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-fa-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ff-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-fi-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-fil-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-fo-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-fr-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-fur-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-fy-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ga-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-gd-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-gez-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-gl-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-gu-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-gv-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ha-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-hak-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-he-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-hi-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-hif-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-hne-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-hr-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-hsb-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ht-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-hu-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-hy-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ia-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-id-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ig-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ik-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-is-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-it-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-iu-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ja-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ka-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-kab-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-kk-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-kl-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-km-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-kn-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ko-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-kok-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ks-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ku-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-kw-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ky-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-lb-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-lg-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-li-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-lij-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ln-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-lo-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-lt-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-lv-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-lzh-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mag-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mai-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mfe-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mg-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mhr-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mi-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-miq-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mjw-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mk-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ml-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mn-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mni-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mr-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ms-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-mt-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-my-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-nan-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-nb-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-nds-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ne-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-nhn-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-niu-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-nl-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-nn-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-nr-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-nso-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-oc-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-om-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-or-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-os-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-pa-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-pap-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-pl-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ps-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-pt-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-quz-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-raj-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ro-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ru-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-rw-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sa-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sah-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sat-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sc-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sd-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-se-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sgs-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-shn-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-shs-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-si-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sid-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sk-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sl-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sm-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-so-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sq-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sr-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ss-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-st-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sv-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-sw-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-szl-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ta-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-tcy-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-te-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-tg-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-th-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-the-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ti-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-tig-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-tk-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-tl-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-tn-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-to-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-tpi-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-tr-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ts-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-tt-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ug-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-uk-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-unm-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ur-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-uz-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-ve-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-vi-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-wa-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-wae-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-wal-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-wo-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-xh-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-yi-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-yo-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-yue-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-yuw-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-zh-2.28-225.el8_8.6.ppc64le.rpm glibc-langpack-zu-2.28-225.el8_8.6.ppc64le.rpm glibc-locale-source-2.28-225.el8_8.6.ppc64le.rpm glibc-minimal-langpack-2.28-225.el8_8.6.ppc64le.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.ppc64le.rpm libnsl-2.28-225.el8_8.6.ppc64le.rpm libnsl-debuginfo-2.28-225.el8_8.6.ppc64le.rpm nscd-2.28-225.el8_8.6.ppc64le.rpm nscd-debuginfo-2.28-225.el8_8.6.ppc64le.rpm nss_db-2.28-225.el8_8.6.ppc64le.rpm nss_db-debuginfo-2.28-225.el8_8.6.ppc64le.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.ppc64le.rpm s390x: glibc-2.28-225.el8_8.6.s390x.rpm glibc-all-langpacks-2.28-225.el8_8.6.s390x.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-common-2.28-225.el8_8.6.s390x.rpm glibc-common-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-debugsource-2.28-225.el8_8.6.s390x.rpm glibc-devel-2.28-225.el8_8.6.s390x.rpm glibc-gconv-extra-2.28-225.el8_8.6.s390x.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-headers-2.28-225.el8_8.6.s390x.rpm glibc-langpack-aa-2.28-225.el8_8.6.s390x.rpm glibc-langpack-af-2.28-225.el8_8.6.s390x.rpm glibc-langpack-agr-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ak-2.28-225.el8_8.6.s390x.rpm glibc-langpack-am-2.28-225.el8_8.6.s390x.rpm glibc-langpack-an-2.28-225.el8_8.6.s390x.rpm glibc-langpack-anp-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ar-2.28-225.el8_8.6.s390x.rpm glibc-langpack-as-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ast-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ayc-2.28-225.el8_8.6.s390x.rpm glibc-langpack-az-2.28-225.el8_8.6.s390x.rpm glibc-langpack-be-2.28-225.el8_8.6.s390x.rpm glibc-langpack-bem-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ber-2.28-225.el8_8.6.s390x.rpm glibc-langpack-bg-2.28-225.el8_8.6.s390x.rpm glibc-langpack-bhb-2.28-225.el8_8.6.s390x.rpm glibc-langpack-bho-2.28-225.el8_8.6.s390x.rpm glibc-langpack-bi-2.28-225.el8_8.6.s390x.rpm glibc-langpack-bn-2.28-225.el8_8.6.s390x.rpm glibc-langpack-bo-2.28-225.el8_8.6.s390x.rpm glibc-langpack-br-2.28-225.el8_8.6.s390x.rpm glibc-langpack-brx-2.28-225.el8_8.6.s390x.rpm glibc-langpack-bs-2.28-225.el8_8.6.s390x.rpm glibc-langpack-byn-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ca-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ce-2.28-225.el8_8.6.s390x.rpm glibc-langpack-chr-2.28-225.el8_8.6.s390x.rpm glibc-langpack-cmn-2.28-225.el8_8.6.s390x.rpm glibc-langpack-crh-2.28-225.el8_8.6.s390x.rpm glibc-langpack-cs-2.28-225.el8_8.6.s390x.rpm glibc-langpack-csb-2.28-225.el8_8.6.s390x.rpm glibc-langpack-cv-2.28-225.el8_8.6.s390x.rpm glibc-langpack-cy-2.28-225.el8_8.6.s390x.rpm glibc-langpack-da-2.28-225.el8_8.6.s390x.rpm glibc-langpack-de-2.28-225.el8_8.6.s390x.rpm glibc-langpack-doi-2.28-225.el8_8.6.s390x.rpm glibc-langpack-dsb-2.28-225.el8_8.6.s390x.rpm glibc-langpack-dv-2.28-225.el8_8.6.s390x.rpm glibc-langpack-dz-2.28-225.el8_8.6.s390x.rpm glibc-langpack-el-2.28-225.el8_8.6.s390x.rpm glibc-langpack-en-2.28-225.el8_8.6.s390x.rpm glibc-langpack-eo-2.28-225.el8_8.6.s390x.rpm glibc-langpack-es-2.28-225.el8_8.6.s390x.rpm glibc-langpack-et-2.28-225.el8_8.6.s390x.rpm glibc-langpack-eu-2.28-225.el8_8.6.s390x.rpm glibc-langpack-fa-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ff-2.28-225.el8_8.6.s390x.rpm glibc-langpack-fi-2.28-225.el8_8.6.s390x.rpm glibc-langpack-fil-2.28-225.el8_8.6.s390x.rpm glibc-langpack-fo-2.28-225.el8_8.6.s390x.rpm glibc-langpack-fr-2.28-225.el8_8.6.s390x.rpm glibc-langpack-fur-2.28-225.el8_8.6.s390x.rpm glibc-langpack-fy-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ga-2.28-225.el8_8.6.s390x.rpm glibc-langpack-gd-2.28-225.el8_8.6.s390x.rpm glibc-langpack-gez-2.28-225.el8_8.6.s390x.rpm glibc-langpack-gl-2.28-225.el8_8.6.s390x.rpm glibc-langpack-gu-2.28-225.el8_8.6.s390x.rpm glibc-langpack-gv-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ha-2.28-225.el8_8.6.s390x.rpm glibc-langpack-hak-2.28-225.el8_8.6.s390x.rpm glibc-langpack-he-2.28-225.el8_8.6.s390x.rpm glibc-langpack-hi-2.28-225.el8_8.6.s390x.rpm glibc-langpack-hif-2.28-225.el8_8.6.s390x.rpm glibc-langpack-hne-2.28-225.el8_8.6.s390x.rpm glibc-langpack-hr-2.28-225.el8_8.6.s390x.rpm glibc-langpack-hsb-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ht-2.28-225.el8_8.6.s390x.rpm glibc-langpack-hu-2.28-225.el8_8.6.s390x.rpm glibc-langpack-hy-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ia-2.28-225.el8_8.6.s390x.rpm glibc-langpack-id-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ig-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ik-2.28-225.el8_8.6.s390x.rpm glibc-langpack-is-2.28-225.el8_8.6.s390x.rpm glibc-langpack-it-2.28-225.el8_8.6.s390x.rpm glibc-langpack-iu-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ja-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ka-2.28-225.el8_8.6.s390x.rpm glibc-langpack-kab-2.28-225.el8_8.6.s390x.rpm glibc-langpack-kk-2.28-225.el8_8.6.s390x.rpm glibc-langpack-kl-2.28-225.el8_8.6.s390x.rpm glibc-langpack-km-2.28-225.el8_8.6.s390x.rpm glibc-langpack-kn-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ko-2.28-225.el8_8.6.s390x.rpm glibc-langpack-kok-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ks-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ku-2.28-225.el8_8.6.s390x.rpm glibc-langpack-kw-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ky-2.28-225.el8_8.6.s390x.rpm glibc-langpack-lb-2.28-225.el8_8.6.s390x.rpm glibc-langpack-lg-2.28-225.el8_8.6.s390x.rpm glibc-langpack-li-2.28-225.el8_8.6.s390x.rpm glibc-langpack-lij-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ln-2.28-225.el8_8.6.s390x.rpm glibc-langpack-lo-2.28-225.el8_8.6.s390x.rpm glibc-langpack-lt-2.28-225.el8_8.6.s390x.rpm glibc-langpack-lv-2.28-225.el8_8.6.s390x.rpm glibc-langpack-lzh-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mag-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mai-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mfe-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mg-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mhr-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mi-2.28-225.el8_8.6.s390x.rpm glibc-langpack-miq-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mjw-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mk-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ml-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mn-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mni-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mr-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ms-2.28-225.el8_8.6.s390x.rpm glibc-langpack-mt-2.28-225.el8_8.6.s390x.rpm glibc-langpack-my-2.28-225.el8_8.6.s390x.rpm glibc-langpack-nan-2.28-225.el8_8.6.s390x.rpm glibc-langpack-nb-2.28-225.el8_8.6.s390x.rpm glibc-langpack-nds-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ne-2.28-225.el8_8.6.s390x.rpm glibc-langpack-nhn-2.28-225.el8_8.6.s390x.rpm glibc-langpack-niu-2.28-225.el8_8.6.s390x.rpm glibc-langpack-nl-2.28-225.el8_8.6.s390x.rpm glibc-langpack-nn-2.28-225.el8_8.6.s390x.rpm glibc-langpack-nr-2.28-225.el8_8.6.s390x.rpm glibc-langpack-nso-2.28-225.el8_8.6.s390x.rpm glibc-langpack-oc-2.28-225.el8_8.6.s390x.rpm glibc-langpack-om-2.28-225.el8_8.6.s390x.rpm glibc-langpack-or-2.28-225.el8_8.6.s390x.rpm glibc-langpack-os-2.28-225.el8_8.6.s390x.rpm glibc-langpack-pa-2.28-225.el8_8.6.s390x.rpm glibc-langpack-pap-2.28-225.el8_8.6.s390x.rpm glibc-langpack-pl-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ps-2.28-225.el8_8.6.s390x.rpm glibc-langpack-pt-2.28-225.el8_8.6.s390x.rpm glibc-langpack-quz-2.28-225.el8_8.6.s390x.rpm glibc-langpack-raj-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ro-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ru-2.28-225.el8_8.6.s390x.rpm glibc-langpack-rw-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sa-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sah-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sat-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sc-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sd-2.28-225.el8_8.6.s390x.rpm glibc-langpack-se-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sgs-2.28-225.el8_8.6.s390x.rpm glibc-langpack-shn-2.28-225.el8_8.6.s390x.rpm glibc-langpack-shs-2.28-225.el8_8.6.s390x.rpm glibc-langpack-si-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sid-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sk-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sl-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sm-2.28-225.el8_8.6.s390x.rpm glibc-langpack-so-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sq-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sr-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ss-2.28-225.el8_8.6.s390x.rpm glibc-langpack-st-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sv-2.28-225.el8_8.6.s390x.rpm glibc-langpack-sw-2.28-225.el8_8.6.s390x.rpm glibc-langpack-szl-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ta-2.28-225.el8_8.6.s390x.rpm glibc-langpack-tcy-2.28-225.el8_8.6.s390x.rpm glibc-langpack-te-2.28-225.el8_8.6.s390x.rpm glibc-langpack-tg-2.28-225.el8_8.6.s390x.rpm glibc-langpack-th-2.28-225.el8_8.6.s390x.rpm glibc-langpack-the-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ti-2.28-225.el8_8.6.s390x.rpm glibc-langpack-tig-2.28-225.el8_8.6.s390x.rpm glibc-langpack-tk-2.28-225.el8_8.6.s390x.rpm glibc-langpack-tl-2.28-225.el8_8.6.s390x.rpm glibc-langpack-tn-2.28-225.el8_8.6.s390x.rpm glibc-langpack-to-2.28-225.el8_8.6.s390x.rpm glibc-langpack-tpi-2.28-225.el8_8.6.s390x.rpm glibc-langpack-tr-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ts-2.28-225.el8_8.6.s390x.rpm glibc-langpack-tt-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ug-2.28-225.el8_8.6.s390x.rpm glibc-langpack-uk-2.28-225.el8_8.6.s390x.rpm glibc-langpack-unm-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ur-2.28-225.el8_8.6.s390x.rpm glibc-langpack-uz-2.28-225.el8_8.6.s390x.rpm glibc-langpack-ve-2.28-225.el8_8.6.s390x.rpm glibc-langpack-vi-2.28-225.el8_8.6.s390x.rpm glibc-langpack-wa-2.28-225.el8_8.6.s390x.rpm glibc-langpack-wae-2.28-225.el8_8.6.s390x.rpm glibc-langpack-wal-2.28-225.el8_8.6.s390x.rpm glibc-langpack-wo-2.28-225.el8_8.6.s390x.rpm glibc-langpack-xh-2.28-225.el8_8.6.s390x.rpm glibc-langpack-yi-2.28-225.el8_8.6.s390x.rpm glibc-langpack-yo-2.28-225.el8_8.6.s390x.rpm glibc-langpack-yue-2.28-225.el8_8.6.s390x.rpm glibc-langpack-yuw-2.28-225.el8_8.6.s390x.rpm glibc-langpack-zh-2.28-225.el8_8.6.s390x.rpm glibc-langpack-zu-2.28-225.el8_8.6.s390x.rpm glibc-locale-source-2.28-225.el8_8.6.s390x.rpm glibc-minimal-langpack-2.28-225.el8_8.6.s390x.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.s390x.rpm libnsl-2.28-225.el8_8.6.s390x.rpm libnsl-debuginfo-2.28-225.el8_8.6.s390x.rpm nscd-2.28-225.el8_8.6.s390x.rpm nscd-debuginfo-2.28-225.el8_8.6.s390x.rpm nss_db-2.28-225.el8_8.6.s390x.rpm nss_db-debuginfo-2.28-225.el8_8.6.s390x.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.s390x.rpm x86_64: glibc-2.28-225.el8_8.6.i686.rpm glibc-2.28-225.el8_8.6.x86_64.rpm glibc-all-langpacks-2.28-225.el8_8.6.x86_64.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-common-2.28-225.el8_8.6.x86_64.rpm glibc-common-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-common-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-debugsource-2.28-225.el8_8.6.i686.rpm glibc-debugsource-2.28-225.el8_8.6.x86_64.rpm glibc-devel-2.28-225.el8_8.6.i686.rpm glibc-devel-2.28-225.el8_8.6.x86_64.rpm glibc-gconv-extra-2.28-225.el8_8.6.i686.rpm glibc-gconv-extra-2.28-225.el8_8.6.x86_64.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-headers-2.28-225.el8_8.6.i686.rpm glibc-headers-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-aa-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-af-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-agr-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ak-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-am-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-an-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-anp-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ar-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-as-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ast-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ayc-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-az-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-be-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-bem-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ber-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-bg-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-bhb-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-bho-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-bi-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-bn-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-bo-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-br-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-brx-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-bs-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-byn-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ca-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ce-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-chr-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-cmn-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-crh-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-cs-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-csb-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-cv-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-cy-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-da-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-de-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-doi-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-dsb-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-dv-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-dz-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-el-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-en-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-eo-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-es-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-et-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-eu-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-fa-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ff-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-fi-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-fil-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-fo-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-fr-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-fur-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-fy-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ga-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-gd-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-gez-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-gl-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-gu-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-gv-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ha-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-hak-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-he-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-hi-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-hif-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-hne-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-hr-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-hsb-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ht-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-hu-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-hy-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ia-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-id-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ig-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ik-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-is-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-it-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-iu-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ja-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ka-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-kab-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-kk-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-kl-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-km-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-kn-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ko-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-kok-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ks-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ku-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-kw-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ky-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-lb-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-lg-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-li-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-lij-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ln-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-lo-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-lt-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-lv-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-lzh-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mag-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mai-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mfe-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mg-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mhr-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mi-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-miq-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mjw-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mk-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ml-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mn-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mni-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mr-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ms-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-mt-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-my-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-nan-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-nb-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-nds-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ne-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-nhn-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-niu-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-nl-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-nn-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-nr-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-nso-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-oc-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-om-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-or-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-os-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-pa-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-pap-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-pl-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ps-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-pt-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-quz-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-raj-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ro-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ru-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-rw-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sa-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sah-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sat-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sc-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sd-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-se-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sgs-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-shn-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-shs-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-si-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sid-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sk-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sl-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sm-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-so-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sq-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sr-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ss-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-st-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sv-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-sw-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-szl-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ta-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-tcy-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-te-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-tg-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-th-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-the-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ti-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-tig-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-tk-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-tl-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-tn-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-to-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-tpi-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-tr-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ts-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-tt-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ug-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-uk-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-unm-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ur-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-uz-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-ve-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-vi-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-wa-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-wae-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-wal-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-wo-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-xh-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-yi-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-yo-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-yue-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-yuw-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-zh-2.28-225.el8_8.6.x86_64.rpm glibc-langpack-zu-2.28-225.el8_8.6.x86_64.rpm glibc-locale-source-2.28-225.el8_8.6.x86_64.rpm glibc-minimal-langpack-2.28-225.el8_8.6.x86_64.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.x86_64.rpm libnsl-2.28-225.el8_8.6.i686.rpm libnsl-2.28-225.el8_8.6.x86_64.rpm libnsl-debuginfo-2.28-225.el8_8.6.i686.rpm libnsl-debuginfo-2.28-225.el8_8.6.x86_64.rpm nscd-2.28-225.el8_8.6.x86_64.rpm nscd-debuginfo-2.28-225.el8_8.6.i686.rpm nscd-debuginfo-2.28-225.el8_8.6.x86_64.rpm nss_db-2.28-225.el8_8.6.i686.rpm nss_db-2.28-225.el8_8.6.x86_64.rpm nss_db-debuginfo-2.28-225.el8_8.6.i686.rpm nss_db-debuginfo-2.28-225.el8_8.6.x86_64.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.i686.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.x86_64.rpm Red Hat Enterprise Linux CRB (v.8): aarch64: glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-benchtests-2.28-225.el8_8.6.aarch64.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-common-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-debugsource-2.28-225.el8_8.6.aarch64.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.aarch64.rpm glibc-nss-devel-2.28-225.el8_8.6.aarch64.rpm glibc-static-2.28-225.el8_8.6.aarch64.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.aarch64.rpm libnsl-debuginfo-2.28-225.el8_8.6.aarch64.rpm nscd-debuginfo-2.28-225.el8_8.6.aarch64.rpm nss_db-debuginfo-2.28-225.el8_8.6.aarch64.rpm nss_hesiod-2.28-225.el8_8.6.aarch64.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.aarch64.rpm ppc64le: glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-benchtests-2.28-225.el8_8.6.ppc64le.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-common-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-debugsource-2.28-225.el8_8.6.ppc64le.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.ppc64le.rpm glibc-nss-devel-2.28-225.el8_8.6.ppc64le.rpm glibc-static-2.28-225.el8_8.6.ppc64le.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.ppc64le.rpm libnsl-debuginfo-2.28-225.el8_8.6.ppc64le.rpm nscd-debuginfo-2.28-225.el8_8.6.ppc64le.rpm nss_db-debuginfo-2.28-225.el8_8.6.ppc64le.rpm nss_hesiod-2.28-225.el8_8.6.ppc64le.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.ppc64le.rpm s390x: glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-benchtests-2.28-225.el8_8.6.s390x.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-common-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-debugsource-2.28-225.el8_8.6.s390x.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.s390x.rpm glibc-nss-devel-2.28-225.el8_8.6.s390x.rpm glibc-static-2.28-225.el8_8.6.s390x.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.s390x.rpm libnsl-debuginfo-2.28-225.el8_8.6.s390x.rpm nscd-debuginfo-2.28-225.el8_8.6.s390x.rpm nss_db-debuginfo-2.28-225.el8_8.6.s390x.rpm nss_hesiod-2.28-225.el8_8.6.s390x.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.s390x.rpm x86_64: glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-all-langpacks-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-benchtests-2.28-225.el8_8.6.x86_64.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-benchtests-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-common-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-common-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-debugsource-2.28-225.el8_8.6.i686.rpm glibc-debugsource-2.28-225.el8_8.6.x86_64.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-gconv-extra-debuginfo-2.28-225.el8_8.6.x86_64.rpm glibc-nss-devel-2.28-225.el8_8.6.i686.rpm glibc-nss-devel-2.28-225.el8_8.6.x86_64.rpm glibc-static-2.28-225.el8_8.6.i686.rpm glibc-static-2.28-225.el8_8.6.x86_64.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.i686.rpm glibc-utils-debuginfo-2.28-225.el8_8.6.x86_64.rpm libnsl-debuginfo-2.28-225.el8_8.6.i686.rpm libnsl-debuginfo-2.28-225.el8_8.6.x86_64.rpm nscd-debuginfo-2.28-225.el8_8.6.i686.rpm nscd-debuginfo-2.28-225.el8_8.6.x86_64.rpm nss_db-debuginfo-2.28-225.el8_8.6.i686.rpm nss_db-debuginfo-2.28-225.el8_8.6.x86_64.rpm nss_hesiod-2.28-225.el8_8.6.i686.rpm nss_hesiod-2.28-225.el8_8.6.x86_64.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.i686.rpm nss_hesiod-debuginfo-2.28-225.el8_8.6.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2023-4527 https://access.redhat.com/security/cve/CVE-2023-4806 https://access.redhat.com/security/cve/CVE-2023-4813 https://access.redhat.com/security/cve/CVE-2023-4911 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details athttps://access.redhat.com/security/team/contact Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJlHtXiAAoJENzjgjWX9erEn68QAJ5tff0L0C68tKudttNWyHUc 0hs6UhB6iacSStHvlVh7jlsWEorXBz2wHD9BqzlNO/7noKdQuKjLSMhCrQFCerAv znr/pgcey7pzovNbozc5s18dG5t0f4e2VyQHC9qq42t7BtMWiiMqOUedh7T+cK3z r02VVInm9AEhb4dc6OvfpJA+wRe2HVqje1KPePD+JVvWJxoyW0R9xKMfKug4kQLb XBFFi7Gz+0SHHSDicrGbYQnS8dcxif+TOpjv47D+g3JMJyQq77fcGYBBp1b5vaOK h7Ubi3RD0YEe5UcBIvVeGr9rvvpgvXFYnUp7CLK32JbVcCUXqOfsGAbELt2y1APW QKET+JRy260mHFWXmqtgCXlk8LV1mlikIMkBFwD6SALT88w5XOvsxL8PuRMdqfiL GCxD+0fHt297WMEgxJwTyKXkIloPTbY8cTLP86mjBfmBG9sDEMqG/i5c9sIARRFN ksEVAIaC6i+hK3h3MBa7o+XyRom84sBWtcbczDTxoLFc7jTKkp7GqK5A0SMGF5Ja Eqt90qX6e5TFyZKJIKNxP8ZuPoEFNOxdalwaGTG6bTCmF9IL1HGIxh9mGksRQbT8 WU84eVSGXPmw4x8SqXU7HJHC9UpnskSs8pzLZHCEVLgQkL3Xybd/GlOcL/Rgyvob rdSut0FjfOi0JP/G4mz8 =Uj/Y -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Crucial glibc security patch released for Red Hat Enterprise Linux 8, tackling severe vulnerabilities and their consequences.. glibc Security Update, Red Hat Advisory, Buffer Overflow, Privilege Escalation. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Oct 05, 2023 Important Red Hat
98

Red Hat Enterprise Linux 7 RHSA-2023-0296 Critical: Firefox Security Update

An update for firefox is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: firefox security update Advisory ID: RHSA-2023:0296-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2023:0296 Issue date: 2023-01-23 CVE Names: CVE-2022-46871 CVE-2022-46877 CVE-2023-23598 CVE-2023-23599 CVE-2023-23601 CVE-2023-23602 CVE-2023-23603 CVE-2023-23605 ==================================================================== 1. Summary: An update for firefox is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Client (v. 7) - x86_64 Red Hat Enterprise Linux Client Optional (v. 7) - x86_64 Red Hat Enterprise Linux Server (v. 7) - ppc64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux Server Optional (v. 7) - x86_64 Red Hat Enterprise Linux Workstation (v. 7) - x86_64 Red Hat Enterprise Linux Workstation Optional (v. 7) - x86_64 3. Description: Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 102.7.0 ESR. Security Fix(es): * Mozilla: libusrsctp library out of date (CVE-2022-46871) * Mozilla: Arbitrary file read from GTK drag and drop on Linux (CVE-2023-23598) * Mozilla: Memorysafety bugs fixed in Firefox 109 and Firefox ESR 102.7 (CVE-2023-23605) * Mozilla: Malicious command could be hidden in devtools output (CVE-2023-23599) * Mozilla: URL being dragged from cross-origin iframe into same tab triggers navigation (CVE-2023-23601) * Mozilla: Content Security Policy wasn't being correctly applied to WebSockets in WebWorkers (CVE-2023-23602) * Mozilla: Fullscreen notification bypass (CVE-2022-46877) * Mozilla: Calls to console.log allowed bypasing Content Security Policy via format directive (CVE-2023-23603) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 After installing the update, Firefox must be restarted for the changes to take effect. 5. Bugs fixed (https://bugzilla.redhat.com/): 2162336 - CVE-2022-46871 Mozilla: libusrsctp library out of date 2162338 - CVE-2023-23598 Mozilla: Arbitrary file read from GTK drag and drop on Linux 2162339 - CVE-2023-23599 Mozilla: Malicious command could be hidden in devtools output 2162340 - CVE-2023-23601 Mozilla: URL being dragged from cross-origin iframe into same tab triggers navigation 2162341 - CVE-2023-23602 Mozilla: Content Security Policy wasn't being correctly applied to WebSockets in WebWorkers2162342 - CVE-2022-46877 Mozilla: Fullscreen notification bypass 2162343 - CVE-2023-23603 Mozilla: Calls to console.log allowed bypasing Content Security Policy via format directive 2162344 - CVE-2023-23605 Mozilla: Memory safety bugs fixed in Firefox 109 and Firefox ESR 102.7 6. Package List: Red Hat Enterprise Linux Client (v. 7): Source: firefox-102.7.0-1.el7_9.src.rpm x86_64: firefox-102.7.0-1.el7_9.x86_64.rpm firefox-debuginfo-102.7.0-1.el7_9.x86_64.rpm Red Hat Enterprise Linux Client Optional (v.7): x86_64: firefox-102.7.0-1.el7_9.i686.rpm firefox-debuginfo-102.7.0-1.el7_9.i686.rpm Red Hat Enterprise Linux Server (v. 7): Source: firefox-102.7.0-1.el7_9.src.rpm ppc64: firefox-102.7.0-1.el7_9.ppc64.rpm firefox-debuginfo-102.7.0-1.el7_9.ppc64.rpm ppc64le: firefox-102.7.0-1.el7_9.ppc64le.rpm firefox-debuginfo-102.7.0-1.el7_9.ppc64le.rpm s390x: firefox-102.7.0-1.el7_9.s390x.rpm firefox-debuginfo-102.7.0-1.el7_9.s390x.rpm x86_64: firefox-102.7.0-1.el7_9.x86_64.rpm firefox-debuginfo-102.7.0-1.el7_9.x86_64.rpm Red Hat Enterprise Linux Server Optional (v. 7): x86_64: firefox-102.7.0-1.el7_9.i686.rpm firefox-debuginfo-102.7.0-1.el7_9.i686.rpm Red Hat Enterprise Linux Workstation (v. 7): Source: firefox-102.7.0-1.el7_9.src.rpm x86_64: firefox-102.7.0-1.el7_9.x86_64.rpm firefox-debuginfo-102.7.0-1.el7_9.x86_64.rpm Red Hat Enterprise Linux Workstation Optional (v. 7): x86_64: firefox-102.7.0-1.el7_9.i686.rpm firefox-debuginfo-102.7.0-1.el7_9.i686.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2022-46871 https://access.redhat.com/security/cve/CVE-2022-46877 https://access.redhat.com/security/cve/CVE-2023-23598 https://access.redhat.com/security/cve/CVE-2023-23599 https://access.redhat.com/security/cve/CVE-2023-23601 https://access.redhat.com/security/cve/CVE-2023-23602 https://access.redhat.com/security/cve/CVE-2023-23603 https://access.redhat.com/security/cve/CVE-2023-23605 https://access.redhat.com/security/updates/classification/#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2023 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBY85isdzjgjWX9erEAQiGoA/9H6xcQ6n4dhpAsWGrC7kyk+/A9RBBrvi5 YYdGkZFw5GiHnGVUzlzFZ5Q7hTAqutxNNoNg3jTrdoHxjDkCvSJDN4wyjjW7od6R Y1CDIqKrv2htMrEPCeBClJwPaj6VZOe11JEsKQk6FoBxZojvhEmhQYUz7H3Mjxpa IgccC1+H8v/8oq+Msc0yORXLatjfguVLj14pQPwTHikUPhrZ6OJEP0bEQpwwgd4q XIlQHzZ70USNLbVwSCr7xljQmoGd2wiKacZD4AoYdphyq6ndKxA47shBzXPbemUz fAljjRHV2dDqyIiMKOfy1dtaCGhWXKm22ivWs4qt+N8qABX8fB95uDdxzNxpkW8M ze4XS20/Ug20wDNTSmzBasln9fQX4hba7dGoHmr0D5905nVYUu6qBZ0s2y/qa02S FswLqqK+/YmaIEYSSqWGvPm88rOeBOHBNzoxHG85efsN07xEW61/PE6TSenVXBS7 7Ri+v2z1gzS5jd1Zcp206zAxGEuOfIBMc4rd5WipY45BmpiBdWb3IU2ESgyMT2Mp FXLxJR1SLgx4bJl0dRe8zxmNTAQclJAHVguHE3kPmcgrfovsoNGw5r66Ys5+cUJT 6FFLiMY9rIiLx9/QgVnF4SfYVGh89ctUXqIdckK2ssXFD2StziA6AYThMQ3386G8 aqsz/wDQ86E=JpOB -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Firefox rolls out an essential security patch for Red Hat Enterprise Linux 7, addressing vital vulnerabilities and enhancing protection.. Red Hat Linux Update, Firefox Security Fix, Important Firefox Update, Linux Security Patch. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jan 23, 2023 Important Red Hat
98

Red Hat Enterprise Linux 7 RHSA-2021-2314 Important: kernel Security Fix

An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: kernel security and bug fix update Advisory ID: RHSA-2021:2314-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2021:2314 Issue date: 2021-06-08 CVE Names: CVE-2020-8648 CVE-2020-12362 CVE-2020-12363 CVE-2020-12364 CVE-2020-27170 CVE-2021-3347 ==================================================================== 1. Summary: An update for kernel is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Client (v. 7) - noarch, x86_64 Red Hat Enterprise Linux Client Optional (v. 7) - x86_64 Red Hat Enterprise Linux ComputeNode (v. 7) - noarch, x86_64 Red Hat Enterprise Linux ComputeNode Optional (v. 7) - x86_64 Red Hat Enterprise Linux Server (v. 7) - noarch, ppc64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux Server Optional (v. 7) - ppc64, ppc64le, x86_64 Red Hat Enterprise Linux Workstation (v. 7) - noarch, x86_64 Red Hat Enterprise Linux Workstation Optional (v. 7) - x86_64 3. Description: The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: Integer overflow in Intel(R) Graphics Drivers (CVE-2020-12362) * kernel: Use after free via PI futex state(CVE-2021-3347) * kernel: use-after-free in n_tty_receive_buf_common function in drivers/tty/n_tty.c (CVE-2020-8648) * kernel: Improper input validation in some Intel(R) Graphics Drivers(CVE-2020-12363) * kernel: Null pointer dereference in some Intel(R) Graphics Drivers(CVE-2020-12364) * kernel: Speculation on pointer arithmetic against bpf_context pointer (CVE-2020-27170) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): * kernel crash when call the timer function (sctp_generate_proto_unreach_event) of sctp module (BZ#1707184) * SCSI error handling process on HP P440ar controller gets stuck indefinitely in device reset operation (BZ#1830268) * netfilter: reproducible deadlock on nft_log module autoload (BZ#1858329) * netfilter: NULL pointer dereference in nf_tables_set_lookup() (BZ#1873171) * [DELL EMC 7.9 Bug]: No acpi_pad threads on top command for "power cap policy equal to 0 watts" (BZ#1883174) * A race between i40e_ndo_set_vf_mac() and i40e_vsi_clear() in the i40e driver causes a use after free condition of the kmalloc-4096 slab cache. (BZ#1886003) * netxen driver performs poorly with RT kernel (BZ#1894274) * gendisk-> disk_part_tbl-> last_lookup retains pointer after partition deletion (BZ#1898596) * Kernel experiences panic in update_group_power() due to division error even with Bug 1701115 fix (BZ#1910763) * RHEL7.9 - zfcp: fix handling of FCP_RESID_OVER bit in fcp ingress path (BZ#1917839) * RHEL7.9 - mm/THP: do not access vma-> vm_mm after calling handle_userfault (BZ#1917840) * raid: wrong raid io account (BZ#1927106) * qla2x00_status_cont_entry() missing upstream patch that prevents unnecessary ABRT/warnings (BZ#1933784) * RHEL 7.9.z - System hang caused by workqueue stall in qla2xxx driver (BZ#1937945) * selinux: setsebool can trigger a deadlock (BZ#1939091) * [Hyper-V][RHEL-7] Cannot boot kernel 3.10.0-1160.21.1.el7.x86_64on Hyper-V (BZ#1941841) 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. 5. Bugs fixed (https://bugzilla.redhat.com/): 1802559 - CVE-2020-8648 kernel: use-after-free in n_tty_receive_buf_common function in drivers/tty/n_tty.c 1922249 - CVE-2021-3347 kernel: Use after free via PI futex state 1930246 - CVE-2020-12362 kernel: Integer overflow in Intel(R) Graphics Drivers1930249 - CVE-2020-12363 kernel: Improper input validation in some Intel(R) Graphics Drivers1930251 - CVE-2020-12364 kernel: Null pointer dereference in some Intel(R) Graphics Drivers1940627 - CVE-2020-27170 kernel: Speculation on pointer arithmetic against bpf_context pointer 1941841 - [Hyper-V][RHEL-7] Cannot boot kernel 3.10.0-1160.21.1.el7.x86_64 on Hyper-V 6. Package List: Red Hat Enterprise Linux Client (v. 7): Source: kernel-3.10.0-1160.31.1.el7.src.rpm noarch: kernel-abi-whitelists-3.10.0-1160.31.1.el7.noarch.rpm kernel-doc-3.10.0-1160.31.1.el7.noarch.rpm x86_64: bpftool-3.10.0-1160.31.1.el7.x86_64.rpm bpftool-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-devel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-common-x86_64-3.10.0-1160.31.1.el7.x86_64.rpm kernel-devel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-headers-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-libs-3.10.0-1160.31.1.el7.x86_64.rpm perf-3.10.0-1160.31.1.el7.x86_64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm Red Hat Enterprise Linux Client Optional (v.7): x86_64: bpftool-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-common-x86_64-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-libs-devel-3.10.0-1160.31.1.el7.x86_64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm Red Hat Enterprise Linux ComputeNode (v. 7): Source: kernel-3.10.0-1160.31.1.el7.src.rpm noarch: kernel-abi-whitelists-3.10.0-1160.31.1.el7.noarch.rpm kernel-doc-3.10.0-1160.31.1.el7.noarch.rpm x86_64: bpftool-3.10.0-1160.31.1.el7.x86_64.rpm bpftool-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-devel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-common-x86_64-3.10.0-1160.31.1.el7.x86_64.rpm kernel-devel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-headers-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-libs-3.10.0-1160.31.1.el7.x86_64.rpm perf-3.10.0-1160.31.1.el7.x86_64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm Red Hat Enterprise Linux ComputeNode Optional (v. 7): x86_64: bpftool-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-common-x86_64-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-libs-devel-3.10.0-1160.31.1.el7.x86_64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm Red Hat Enterprise Linux Server (v.7): Source: kernel-3.10.0-1160.31.1.el7.src.rpm noarch: kernel-abi-whitelists-3.10.0-1160.31.1.el7.noarch.rpm kernel-doc-3.10.0-1160.31.1.el7.noarch.rpm ppc64: bpftool-3.10.0-1160.31.1.el7.ppc64.rpm bpftool-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm kernel-3.10.0-1160.31.1.el7.ppc64.rpm kernel-bootwrapper-3.10.0-1160.31.1.el7.ppc64.rpm kernel-debug-3.10.0-1160.31.1.el7.ppc64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm kernel-debug-devel-3.10.0-1160.31.1.el7.ppc64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm kernel-debuginfo-common-ppc64-3.10.0-1160.31.1.el7.ppc64.rpm kernel-devel-3.10.0-1160.31.1.el7.ppc64.rpm kernel-headers-3.10.0-1160.31.1.el7.ppc64.rpm kernel-tools-3.10.0-1160.31.1.el7.ppc64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm kernel-tools-libs-3.10.0-1160.31.1.el7.ppc64.rpm perf-3.10.0-1160.31.1.el7.ppc64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm python-perf-3.10.0-1160.31.1.el7.ppc64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm ppc64le: bpftool-3.10.0-1160.31.1.el7.ppc64le.rpm bpftool-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-bootwrapper-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-debug-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-debuginfo-common-ppc64le-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-devel-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-headers-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-tools-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-tools-libs-3.10.0-1160.31.1.el7.ppc64le.rpm perf-3.10.0-1160.31.1.el7.ppc64le.rpm perf-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm python-perf-3.10.0-1160.31.1.el7.ppc64le.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm s390x: bpftool-3.10.0-1160.31.1.el7.s390x.rpm bpftool-debuginfo-3.10.0-1160.31.1.el7.s390x.rpm kernel-3.10.0-1160.31.1.el7.s390x.rpm kernel-debug-3.10.0-1160.31.1.el7.s390x.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.s390x.rpm kernel-debug-devel-3.10.0-1160.31.1.el7.s390x.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.s390x.rpm kernel-debuginfo-common-s390x-3.10.0-1160.31.1.el7.s390x.rpm kernel-devel-3.10.0-1160.31.1.el7.s390x.rpm kernel-headers-3.10.0-1160.31.1.el7.s390x.rpm kernel-kdump-3.10.0-1160.31.1.el7.s390x.rpm kernel-kdump-debuginfo-3.10.0-1160.31.1.el7.s390x.rpm kernel-kdump-devel-3.10.0-1160.31.1.el7.s390x.rpm perf-3.10.0-1160.31.1.el7.s390x.rpm perf-debuginfo-3.10.0-1160.31.1.el7.s390x.rpm python-perf-3.10.0-1160.31.1.el7.s390x.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.s390x.rpm x86_64: bpftool-3.10.0-1160.31.1.el7.x86_64.rpm bpftool-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-devel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-common-x86_64-3.10.0-1160.31.1.el7.x86_64.rpm kernel-devel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-headers-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-libs-3.10.0-1160.31.1.el7.x86_64.rpm perf-3.10.0-1160.31.1.el7.x86_64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm Red Hat Enterprise Linux Server Optional (v.7): ppc64: bpftool-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm kernel-debuginfo-common-ppc64-3.10.0-1160.31.1.el7.ppc64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm kernel-tools-libs-devel-3.10.0-1160.31.1.el7.ppc64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.ppc64.rpm ppc64le: bpftool-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-debug-devel-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-debuginfo-common-ppc64le-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm kernel-tools-libs-devel-3.10.0-1160.31.1.el7.ppc64le.rpm perf-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.ppc64le.rpm x86_64: bpftool-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-common-x86_64-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-libs-devel-3.10.0-1160.31.1.el7.x86_64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm Red Hat Enterprise Linux Workstation (v.7): Source: kernel-3.10.0-1160.31.1.el7.src.rpm noarch: kernel-abi-whitelists-3.10.0-1160.31.1.el7.noarch.rpm kernel-doc-3.10.0-1160.31.1.el7.noarch.rpm x86_64: bpftool-3.10.0-1160.31.1.el7.x86_64.rpm bpftool-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-devel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-common-x86_64-3.10.0-1160.31.1.el7.x86_64.rpm kernel-devel-3.10.0-1160.31.1.el7.x86_64.rpm kernel-headers-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-libs-3.10.0-1160.31.1.el7.x86_64.rpm perf-3.10.0-1160.31.1.el7.x86_64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm Red Hat Enterprise Linux Workstation Optional (v. 7): x86_64: bpftool-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debug-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-debuginfo-common-x86_64-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm kernel-tools-libs-devel-3.10.0-1160.31.1.el7.x86_64.rpm perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm python-perf-debuginfo-3.10.0-1160.31.1.el7.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7.References: https://access.redhat.com/security/cve/CVE-2020-8648 https://access.redhat.com/security/cve/CVE-2020-12362 https://access.redhat.com/security/cve/CVE-2020-12363 https://access.redhat.com/security/cve/CVE-2020-12364 https://access.redhat.com/security/cve/CVE-2020-27170 https://access.redhat.com/security/cve/CVE-2021-3347 https://access.redhat.com/security/updates/classification/#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYL/x1NzjgjWX9erEAQijGA//bxt7JJkdkIO3eT3vTQ6mYtMErGKBVx8A sI+zjh/mYmaocA6UrE88bV1ixfJ2xknb9HfFBjQywPAiqTiRXHUyiL24IyGe5Lit WkPjLRDHCb/q56rl1EGkyr3noikZCNuNF9HOf8PHukJmLqD6iLWWws8J0knY9QyR /8scePwyCR4wqr2ru5etg5TKx+pkOY+Dfnwhgy6U2thQI58/Flvn7GyOBvSG69M8 6gewtkav1Fnw7WlLT386OjrAajBw6Pd9xee+S7T9qFv/BfC5k0HA26qbnMaAfzle YKXmjoIV7ExiszvspqZgdlsg0835BUALUIikbpnTvh7Kl2MY2BhBIqJvKOWeT3Mp VIpkMs4HVALkHoDqzYDZx8WKEy0hrDAjczT+aWtvXJmHEBmsHEx5Ny8tvYk1w3t/ cNVvfj+EqFaSY1GSNY1MG2ZDzIDYWrx+rGKA7tgqtwSlCdYEbORlXCDu+W8+c7Xg g1vE8kfpkbxyLpvlJ0iOWoLiOCCrZ04fiXXhgSn9O1/zmOwkijFHk5x/aFDEoyBE O/s2rawA1cADPiLTxGWU9/MITpQuS+FuAc235HT8VRSXvsV3ZHB36N1z4JZcPB5P FN8hH+ibnEOlpKC7YOE9K4eQ/jG1etWhVWctf7HcP2nbQSpiiZQoQGPznvt+6OKQ XAOam1B//x4=HTlr -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://listman.redhat.com/mailman/listinfo/rhsa-announce . Oracle has released a significant database patch for its Cloud offerings, addressing several critical vulnerabilities across multiple components.. Red Hat Enterprise Linux, Kernel Fix, Security Update, Important Advisory, Bug Fix. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 08, 2021 Important Red Hat
98

Red Hat 8.1 RHSA-2021:0167 Important PostgreSQL Security Update

An update for the postgresql:9.6 module is now available for Red Hat Enterprise Linux 8.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: postgresql:9.6 security update Advisory ID: RHSA-2021:0167-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2021:0167 Issue date: 2021-01-18 CVE Names: CVE-2019-10130 CVE-2019-10208 CVE-2020-1720 CVE-2020-14350 CVE-2020-25694 CVE-2020-25695 CVE-2020-25696 ==================================================================== 1. Summary: An update for the postgresql:9.6 module is now available for Red Hat Enterprise Linux 8.1 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream EUS (v. 8.1) - aarch64, ppc64le, s390x, x86_64 3. Description: PostgreSQL is an advanced object-relational database management system (DBMS). The following packages have been upgraded to a later upstream version: postgresql (9.6.20). Security Fix(es): * postgresql: Reconnection can downgrade connection security settings (CVE-2020-25694) * postgresql: Multiple features escape "security restricted operation" sandbox (CVE-2020-25695) * postgresql: TYPE in pg_temp executes arbitrary SQL during SECURITY DEFINER execution (CVE-2019-10208) * postgresql: Uncontrolled search path element in CREATE EXTENSION (CVE-2020-14350) * postgresql: psql's gset allows overwritingspecially treated variables (CVE-2020-25696) * postgresql: Selectivity estimators bypass row security policies (CVE-2019-10130) * postgresql: ALTER ... DEPENDS ON EXTENSION is missing authorization checks (CVE-2020-1720) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 If the postgresql service is running, it will be automatically restarted after installing this update. 5. Bugs fixed (https://bugzilla.redhat.com/): 1707109 - CVE-2019-10130 postgresql: Selectivity estimators bypass row security policies 1734416 - CVE-2019-10208 postgresql: TYPE in pg_temp executes arbitrary SQL during SECURITY DEFINER execution 1798852 - CVE-2020-1720 postgresql: ALTER ... DEPENDS ON EXTENSION is missing authorization checks 1865746 - CVE-2020-14350 postgresql: Uncontrolled search path element in CREATE EXTENSION 1894423 - CVE-2020-25694 postgresql: Reconnection can downgrade connection security settings 1894425 - CVE-2020-25695 postgresql: Multiple features escape "security restricted operation" sandbox 1894430 - CVE-2020-25696 postgresql: psql's gset allows overwriting specially treated variables 6. Package List: Red Hat Enterprise Linux AppStream EUS (v.8.1): Source: postgresql-9.6.20-1.module+el8.1.0+9156+8ff1384f.src.rpm aarch64: postgresql-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-contrib-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-contrib-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-debugsource-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-docs-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-docs-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-plperl-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-plperl-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-plpython3-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-plpython3-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-pltcl-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-pltcl-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-server-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-server-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-server-devel-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-server-devel-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-static-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-test-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-test-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm postgresql-test-rpm-macros-9.6.20-1.module+el8.1.0+9156+8ff1384f.aarch64.rpm ppc64le: postgresql-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-contrib-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-contrib-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-debugsource-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-docs-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-docs-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-plperl-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-plperl-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-plpython3-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-plpython3-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-pltcl-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-pltcl-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-server-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-server-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-server-devel-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-server-devel-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-static-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-test-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-test-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm postgresql-test-rpm-macros-9.6.20-1.module+el8.1.0+9156+8ff1384f.ppc64le.rpm s390x: postgresql-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-contrib-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-contrib-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-debugsource-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-docs-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-docs-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-plperl-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-plperl-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-plpython3-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-plpython3-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-pltcl-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-pltcl-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-server-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-server-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-server-devel-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-server-devel-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-static-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-test-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-test-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm postgresql-test-rpm-macros-9.6.20-1.module+el8.1.0+9156+8ff1384f.s390x.rpm x86_64: postgresql-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-contrib-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-contrib-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-debugsource-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-docs-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-docs-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-plperl-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-plperl-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-plpython3-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-plpython3-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-pltcl-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-pltcl-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-server-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-server-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-server-devel-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-server-devel-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-static-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-test-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-test-debuginfo-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm postgresql-test-rpm-macros-9.6.20-1.module+el8.1.0+9156+8ff1384f.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2019-10130 https://access.redhat.com/security/cve/CVE-2019-10208 https://access.redhat.com/security/cve/CVE-2020-1720 https://access.redhat.com/security/cve/CVE-2020-14350 https://access.redhat.com/security/cve/CVE-2020-25694 https://access.redhat.com/security/cve/CVE-2020-25695 https://access.redhat.com/security/cve/CVE-2020-25696 https://access.redhat.com/security/updates/classification/#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYAW1ftzjgjWX9erEAQjUcQ/+Pe+0UrJJ9h8Ffe3sGAGEvZKqR9/L1Za6 Ubdff6L3eIjrEmPOnq2JWNzKDw0RXpv1s4tiyyrxc2T+kv5FwWWuCw6XWBj1Z48F /dLI8qSvHAvSMqR+Vh5S3wtxy5yli4InM4UDe31gt88MNwKe8paEEf+DR7jSPuNW Ffz69IwbJEKXMBsLk4G4rei446vU+m7cocvTjZ9AJd/02SxtGfcrZwXk4i3myBlU G1CLQdU52b7k4qWzuMwNBKtZnRqjgt+isFG9Z2y+Lx+LEfsderAfbA4Q0enD7eWu PdlPBvQzVALdlQKD9zI6Pv+dhCTQpVXGWQVjw0QwPfh1aFIyU7bomvt2BaKTIxt5 oaiUUIY1PE5GmRbDoL2F+hLgN21uLiJoEEZWUqVE6eMqAcG3LAjV4pY4Pd6gUERq xX9g+f6GeaHmVc6h9Tb6kkF7vHXZ47ahUTV8+F/FmJ7VM8NDHTOD/EZyY6XSwFfY Ym69tVc3GbshtjD+LoLZqHsKbkO3uH9t8uziKH4snpdMvnMLJzwr59xNE8nlsqkJ /9cFQ2atjWnRjEuqsEh0u5KsCJLqKWwsmlifwx6oDlnXgVquCRIRzWpLNez1kdEx uWdtYoNcjmt7W1juJRNSo6VaxCm4/+xydlvElg6/wXjRUsz/0iSq3vVh7UtvNmwq Tv0otd8EJcc=kCBq -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ====================================================. update, postgresql, module, enterprise, linux, extended. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jan 18, 2021 Important Red Hat
98

Red Hat 8: RHSA-2020:5567-01 Important: PostgreSQL 10 DoS

An update for the postgresql:10 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: postgresql:10 security update Advisory ID: RHSA-2020:5567-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2020:5567 Issue date: 2020-12-16 CVE Names: CVE-2020-25694 CVE-2020-25695 CVE-2020-25696 ==================================================================== 1. Summary: An update for the postgresql:10 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, ppc64le, s390x, x86_64 3. Description: PostgreSQL is an advanced object-relational database management system (DBMS). The following packages have been upgraded to a later upstream version: postgresql (10.15). Security Fix(es): * postgresql: Reconnection can downgrade connection security settings (CVE-2020-25694) * postgresql: Multiple features escape "security restricted operation" sandbox (CVE-2020-25695) * postgresql: psql's \gset allows overwriting specially treated variables (CVE-2020-25696) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory,refer to: https://access.redhat.com/articles/11258 If the postgresql service is running, it will be automatically restarted after installing this update. 5. Bugs fixed (https://bugzilla.redhat.com/): 1894423 - CVE-2020-25694 postgresql: Reconnection can downgrade connection security settings 1894425 - CVE-2020-25695 postgresql: Multiple features escape "security restricted operation" sandbox 1894430 - CVE-2020-25696 postgresql: psql's \gset allows overwriting specially treated variables 6. Package List: Red Hat Enterprise Linux AppStream (v.8): Source: postgresql-10.15-1.module+el8.3.0+8944+1ca16b1f.src.rpm aarch64: postgresql-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-contrib-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-contrib-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-debugsource-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-docs-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-docs-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-plperl-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-plperl-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-plpython3-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-plpython3-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-pltcl-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-pltcl-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-server-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-server-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-server-devel-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-server-devel-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-static-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-test-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-test-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-test-rpm-macros-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-upgrade-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-upgrade-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-upgrade-devel-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm postgresql-upgrade-devel-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.aarch64.rpm ppc64le: postgresql-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-contrib-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-contrib-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-debugsource-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-docs-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-docs-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-plperl-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-plperl-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-plpython3-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-plpython3-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-pltcl-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-pltcl-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-server-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-server-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-server-devel-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-server-devel-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-static-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-test-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-test-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-test-rpm-macros-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-upgrade-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-upgrade-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-upgrade-devel-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm postgresql-upgrade-devel-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.ppc64le.rpm s390x: postgresql-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-contrib-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-contrib-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-debugsource-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-docs-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-docs-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-plperl-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-plperl-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-plpython3-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-plpython3-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-pltcl-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-pltcl-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-server-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-server-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-server-devel-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-server-devel-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-static-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-test-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-test-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-test-rpm-macros-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-upgrade-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-upgrade-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-upgrade-devel-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm postgresql-upgrade-devel-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.s390x.rpm x86_64: postgresql-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-contrib-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-contrib-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-debugsource-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-docs-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-docs-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-plperl-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-plperl-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-plpython3-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-plpython3-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-pltcl-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-pltcl-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-server-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-server-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-server-devel-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-server-devel-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-static-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-test-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-test-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-test-rpm-macros-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-upgrade-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-upgrade-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-upgrade-devel-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm postgresql-upgrade-devel-debuginfo-10.15-1.module+el8.3.0+8944+1ca16b1f.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2020-25694 https://access.redhat.com/security/cve/CVE-2020-25695 https://access.redhat.com/security/cve/CVE-2020-25696 https://access.redhat.com/security/updates/classification/#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBX9nEqtzjgjWX9erEAQiYPQ/+PLzn2TatIDCie7JOQ4ghB7Ruf65S2tIL WPnAVyd8WBYwCHdL60uwQauJZHS6z9dMqHFDiYWoMShMJUK+HuO+/gV4zKt5m9zR 7ZDfTZJ9TuFtML8KORf/4mKJfCZ2J2eM3luU+eQp/NnwlZ26BXdGvXigHV+eDxty 4H+MpOoZLyX3mcZjHPOAOn9224JS8xPv6VZdMfHVhvs1Q/7V/YcY8aRr3f0IrzLz M7gxqf7qjx+raNU8WCCT/QdBfOOU5vDh8ENM7MWQPi/grUslDvANfGLLZwZVVVJ+ jzKv+OkR1PvFOhnkHFTVoqap/F/md0V6suj+EIF0wP+4kVrdLORiY8QD9pxHT1jT 2vCfYSF5XFHkEHll7SSU0pE2csjBA90boPqcc8XQeKbRQAiu44eaxWNfcsVzsjVG gNcmbMpjIxnaDXZAx1qJS4O2n8aYLGxed0LGx3o3gpx4X3+RuuzS6aYASt0KXhYE cgB3gX/iHXnwbryCivTQ+9s/J3DVq2LvGQwffqgMIBkalXRO5RmmQstPXG/Nt2CV EPnn15VOMxZ6Cskd742QLpLLNr7vfzzIkqS1HupnM/L9Gfegxn3Aytg470wAPnN7 /ctm1K6CXKKmFaz9vAPVIH6hGCTjB2G9BLSgqWGcNisVo3PvNfRwBZeTfwr4r053 98mVZ6CDZvQ=uPHP -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Crucial patch released for PostgreSQL 10 in RHEL 8 tackles significant security flaws. Discover further details.. PostgreSQL Security Fixes, Red Hat Linux Updates, Security Impact Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 16, 2020 Important Red Hat
98

Red Hat Enterprise Linux 6: RHSA-2019-2935-01 Important: JBoss EAP Update

An update is now available for Red Hat JBoss Enterprise Application Platform 7.2 for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: Red Hat JBoss Enterprise Application Platform 7.2.4 on RHEL 6 Security update Advisory ID: RHSA-2019:2935-01 Product: Red Hat JBoss Enterprise Application Platform Advisory URL: https://access.redhat.com/errata/RHSA-2019:2935 Issue date: 2019-09-30 CVE Names: CVE-2019-10184 CVE-2019-10202 CVE-2019-10212 CVE-2019-12086 CVE-2019-12384 CVE-2019-12814 CVE-2019-14379 ==================================================================== 1. Summary: An update is now available for Red Hat JBoss Enterprise Application Platform 7.2 for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat JBoss EAP 7.2 for RHEL 6 Server - noarch 3. Description: This release of Red Hat JBoss Enterprise Application Platform 7.2.4 serves as a replacement for Red Hat JBoss Enterprise Application Platform 7.2.3, and includes bug fixes and enhancements. See the Red Hat JBoss Enterprise Application Platform 7.2.4 Release Notes for information about the most significant bug fixes and enhancements included in this release. Security Fix(es): * jackson-databind: default typing mishandling leading to remote code execution (CVE-2019-14379) * jackson-databind: failure to block the logback-core class from polymorphic deserialization leadingto remote code execution (CVE-2019-12384) * jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message (CVE-2019-12814) * undertow: DEBUG log for io.undertow.request.security if enabled leaks credentials to log files (CVE-2019-10212) * codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities (CVE-2019-10202) * jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server (CVE-2019-12086) * undertow: Information leak in requests for directories without trailing slashes (CVE-2019-10184) 4. Solution: Before applying this update, back up your existing Red Hat JBoss Enterprise Application Platform installation and deployed applications. For details about how to apply this update, which includes the changes described in this advisory, see: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1713068 - CVE-2019-10184 undertow: Information leak in requests for directories without trailing slashes 1713468 - CVE-2019-12086 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server. 1725795 - CVE-2019-12814 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message. 1725807 - CVE-2019-12384 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution 1731271 - CVE-2019-10202 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities 1731984 - CVE-2019-10212 undertow: DEBUG log for io.undertow.request.security if enabled leaks credentials to log files 1737517 - CVE-2019-14379 jackson-databind: default typing mishandling leading to remote code execution 6. JIRA issues fixed (https://redhat.atlassian.net/jira/projects): JBEAP-16455 - [GSS](7.2.z) Upgrade Infinispan from 9.3.6 to 9.3.7 JBEAP-16779 - [GSS](7.2.z) Upgrade Hibernate ORM from5.3.10 to 5.3.11JBEAP-17045 - [GSS](7.2.z) Upgrade JSF based on Mojarra 2.3.5.SP3-redhat-00001 to 2.3.5.SP3-redhat-00002 JBEAP-17062 - [GSS](7.2.z) Upgrade Artemis from 2.7.0.redhat-00057 to 2.9.0.redhat-00005 JBEAP-17073 - [GSS](7.2.z) Upgrade jboss-ejb-client from 4.0.20 to 4.0.23 JBEAP-17109 - (7.2.z) Upgrade XNIO from 3.6.6.Final-redhat-00001 to 3.7.3.Final-redhat-00001 JBEAP-17112 - [GSS](7.2.z) Upgrade JBoss Remoting from 5.0.12 to 5.0.14.SP1 JBEAP-17142 - Tracker bug for the EAP 7.2.4 release for RHEL-6 JBEAP-17162 - [GSS](7.2.z) Upgrade jgroups from 4.0.19 to 4.0.20 JBEAP-17178 - (7.2.z) Upgrade IronJacamar from 1.4.16.Final to 1.4.17.Final JBEAP-17182 - (7.2.z) Upgrade PicketLink from 2.5.5.SP12-redhat-00006 to 2.5.5.SP12-redhat-00007 JBEAP-17183 - (7.2.z) Upgrade PicketLink bindings from 2.5.5.SP12-redhat-00006 to 2.5.5.SP12-redhat-00007 JBEAP-17223 - [GSS](7.2.z) Upgrade WildFly Core from 6.0.15 to 6.0.16 JBEAP-17238 - [GSS](7.2.z) Upgrade HAL from 3.0.13 to 3.0.16 JBEAP-17250 - [GSS](7.2.z) Upgrade JBoss MSC from 1.4.5 to 1.4.8 JBEAP-17271 - [GSS](7.2.z) Upgrade jboss-logmanager from 2.1.7.Final-redhat-00001 to 2.1.14.Final-redhat-00001 JBEAP-17273 - [GSS](7.2.z) Upgrade jboss-logging from 3.3.2.Final-redhat-00001 to 3.3.3.Final-redhat-00001 JBEAP-17274 - [GSS](7.2.z) Upgrade Wildfly Elytron from 1.6.3.Final-redhat-00001 to 1.6.4.Final-redhat-00001 JBEAP-17276 - [GSS](7.2.z) Upgrade wildfly-transaction-client from 1.1.4.Final-redhat-00001 to 1.1.6.Final-redhat-00001 JBEAP-17277 - [GSS](7.2.z) Upgrade Undertow from 2.0.22 to 2.0.25.SP1 JBEAP-17278 - [GSS](7.2.z) Upgrade JBoss Marshalling from 2.0.7 to 2.0.9 JBEAP-17294 - [GSS](7.2.z) Upgrade weld from 3.0.6.Final-redhat-00001 to 3.0.6.Final-redhat-00002 JBEAP-17311 - [GSS](7.2.z) Upgrade jboss-jaxrs-api_2.1_spec from 1.0.1.Final-redhat-00001 to 1.0.3.Final-redhat-00001 JBEAP-17320 - [GSS](7.2.z) Upgrade PicketBox from 5.0.3.Final-redhat-3 to 5.0.3.Final-redhat-00004 JBEAP-17321 - [GSS](7.2.z) Upgrade Narayana from 5.9.3.Final to5.9.6.Final JBEAP-17334 - (7.2.z) Upgrade Elytron-Tool from 1.4.2 to 1.4.3.Final JBEAP-17527 - [GSS](7.2.z) Upgrade Hibernate ORM from 5.3.11 to 5.3.11.SP1 7. Package List: Red Hat JBoss EAP 7.2 for RHEL 6Server: Source: eap7-activemq-artemis-2.9.0-1.redhat_00005.1.el6eap.src.rpm eap7-codehaus-jackson-1.9.13-9.redhat_00006.1.el6eap.src.rpm eap7-glassfish-jsf-2.3.5-4.SP3_redhat_00002.1.el6eap.src.rpm eap7-hal-console-3.0.16-1.Final_redhat_00001.1.el6eap.src.rpm eap7-hibernate-5.3.11-2.SP1_redhat_00001.1.el6eap.src.rpm eap7-infinispan-9.3.7-1.Final_redhat_00001.1.el6eap.src.rpm eap7-ironjacamar-1.4.17-1.Final_redhat_00001.1.el6eap.src.rpm eap7-jackson-annotations-2.9.9-1.redhat_00001.1.el6eap.src.rpm eap7-jackson-core-2.9.9-1.redhat_00001.1.el6eap.src.rpm eap7-jackson-databind-2.9.9.3-1.redhat_00001.1.el6eap.src.rpm eap7-jackson-jaxrs-providers-2.9.9-2.redhat_00001.1.el6eap.src.rpm eap7-jackson-modules-base-2.9.9-1.redhat_00001.1.el6eap.src.rpm eap7-jackson-modules-java8-2.9.9-1.redhat_00001.1.el6eap.src.rpm eap7-jboss-ejb-client-4.0.23-1.Final_redhat_00001.1.el6eap.src.rpm eap7-jboss-jaxrs-api_2.1_spec-1.0.3-1.Final_redhat_00001.1.el6eap.src.rpm eap7-jboss-logging-3.3.3-1.Final_redhat_00001.1.el6eap.src.rpm eap7-jboss-logmanager-2.1.14-1.Final_redhat_00001.1.el6eap.src.rpm eap7-jboss-marshalling-2.0.9-1.Final_redhat_00001.1.el6eap.src.rpm eap7-jboss-msc-1.4.8-1.Final_redhat_00001.1.el6eap.src.rpm eap7-jboss-remoting-5.0.14-1.SP1_redhat_00001.1.el6eap.src.rpm eap7-jboss-server-migration-1.3.1-4.Final_redhat_00004.1.el6eap.src.rpm eap7-jboss-xnio-base-3.7.3-1.Final_redhat_00001.1.el6eap.src.rpm eap7-jgroups-4.0.20-1.Final_redhat_00001.1.el6eap.src.rpm eap7-narayana-5.9.6-1.Final_redhat_00001.1.el6eap.src.rpm eap7-netty-4.1.34-2.Final_redhat_00002.1.el6eap.src.rpm eap7-picketbox-5.0.3-5.Final_redhat_00004.1.el6eap.src.rpm eap7-picketlink-bindings-2.5.5-20.SP12_redhat_00007.1.el6eap.src.rpm eap7-picketlink-federation-2.5.5-20.SP12_redhat_00007.1.el6eap.src.rpm eap7-undertow-2.0.25-1.SP1_redhat_00001.1.el6eap.src.rpm eap7-weld-core-3.0.6-2.Final_redhat_00002.1.el6eap.src.rpm eap7-wildfly-7.2.4-1.GA_redhat_00002.1.el6eap.src.rpm eap7-wildfly-elytron-1.6.4-1.Final_redhat_00001.1.el6eap.src.rpm eap7-wildfly-elytron-tool-1.4.3-1.Final_redhat_00001.1.el6eap.src.rpm eap7-wildfly-transaction-client-1.1.6-2.Final_redhat_00001.1.el6eap.src.rpm noarch: eap7-activemq-artemis-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-cli-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-commons-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-core-client-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-dto-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-hornetq-protocol-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-hqclient-protocol-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-jdbc-store-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-jms-client-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-jms-server-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-journal-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-ra-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-selector-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-server-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-service-extensions-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-activemq-artemis-tools-2.9.0-1.redhat_00005.1.el6eap.noarch.rpm eap7-codehaus-jackson-1.9.13-9.redhat_00006.1.el6eap.noarch.rpm eap7-codehaus-jackson-core-asl-1.9.13-9.redhat_00006.1.el6eap.noarch.rpm eap7-codehaus-jackson-jaxrs-1.9.13-9.redhat_00006.1.el6eap.noarch.rpm eap7-codehaus-jackson-mapper-asl-1.9.13-9.redhat_00006.1.el6eap.noarch.rpm eap7-codehaus-jackson-xc-1.9.13-9.redhat_00006.1.el6eap.noarch.rpm eap7-glassfish-jsf-2.3.5-4.SP3_redhat_00002.1.el6eap.noarch.rpm eap7-hal-console-3.0.16-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-hibernate-5.3.11-2.SP1_redhat_00001.1.el6eap.noarch.rpm eap7-hibernate-core-5.3.11-2.SP1_redhat_00001.1.el6eap.noarch.rpm eap7-hibernate-entitymanager-5.3.11-2.SP1_redhat_00001.1.el6eap.noarch.rpm eap7-hibernate-envers-5.3.11-2.SP1_redhat_00001.1.el6eap.noarch.rpm eap7-hibernate-java8-5.3.11-2.SP1_redhat_00001.1.el6eap.noarch.rpm eap7-infinispan-9.3.7-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-infinispan-cachestore-jdbc-9.3.7-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-infinispan-cachestore-remote-9.3.7-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-infinispan-client-hotrod-9.3.7-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-infinispan-commons-9.3.7-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-infinispan-core-9.3.7-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-infinispan-hibernate-cache-commons-9.3.7-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-infinispan-hibernate-cache-spi-9.3.7-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-infinispan-hibernate-cache-v53-9.3.7-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-ironjacamar-1.4.17-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-ironjacamar-common-api-1.4.17-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-ironjacamar-common-impl-1.4.17-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-ironjacamar-common-spi-1.4.17-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-ironjacamar-core-api-1.4.17-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-ironjacamar-core-impl-1.4.17-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-ironjacamar-deployers-common-1.4.17-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-ironjacamar-jdbc-1.4.17-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-ironjacamar-validator-1.4.17-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-jackson-annotations-2.9.9-1.redhat_00001.1.el6eap.noarch.rpm eap7-jackson-core-2.9.9-1.redhat_00001.1.el6eap.noarch.rpm eap7-jackson-databind-2.9.9.3-1.redhat_00001.1.el6eap.noarch.rpm eap7-jackson-datatype-jdk8-2.9.9-1.redhat_00001.1.el6eap.noarch.rpm eap7-jackson-datatype-jsr310-2.9.9-1.redhat_00001.1.el6eap.noarch.rpm eap7-jackson-jaxrs-base-2.9.9-2.redhat_00001.1.el6eap.noarch.rpm eap7-jackson-jaxrs-json-provider-2.9.9-2.redhat_00001.1.el6eap.noarch.rpm eap7-jackson-module-jaxb-annotations-2.9.9-1.redhat_00001.1.el6eap.noarch.rpm eap7-jackson-modules-base-2.9.9-1.redhat_00001.1.el6eap.noarch.rpm eap7-jackson-modules-java8-2.9.9-1.redhat_00001.1.el6eap.noarch.rpm eap7-jboss-ejb-client-4.0.23-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-jboss-jaxrs-api_2.1_spec-1.0.3-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-jboss-logging-3.3.3-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-jboss-logmanager-2.1.14-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-jboss-marshalling-2.0.9-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-jboss-marshalling-river-2.0.9-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-jboss-msc-1.4.8-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-jboss-remoting-5.0.14-1.SP1_redhat_00001.1.el6eap.noarch.rpm eap7-jboss-server-migration-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-cli-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-core-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-eap6.4-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-eap6.4-to-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-eap7.0-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-eap7.0-to-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-eap7.1-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-eap7.1-to-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly10.0-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly10.0-to-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly10.1-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly10.1-to-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly11.0-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly11.0-to-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly12.0-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly12.0-to-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly13.0-server-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly14.0-server-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly8.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly8.2-to-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly9.0-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-server-migration-wildfly9.0-to-eap7.2-1.3.1-4.Final_redhat_00004.1.el6eap.noarch.rpm eap7-jboss-xnio-base-3.7.3-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-jgroups-4.0.20-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-compensations-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-jbosstxbridge-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-jbossxts-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-jts-idlj-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-jts-integration-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-restat-api-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-restat-bridge-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-restat-integration-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-restat-util-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-narayana-txframework-5.9.6-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-netty-4.1.34-2.Final_redhat_00002.1.el6eap.noarch.rpm eap7-netty-all-4.1.34-2.Final_redhat_00002.1.el6eap.noarch.rpm eap7-picketbox-5.0.3-5.Final_redhat_00004.1.el6eap.noarch.rpm eap7-picketbox-infinispan-5.0.3-5.Final_redhat_00004.1.el6eap.noarch.rpm eap7-picketlink-api-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-picketlink-bindings-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-picketlink-common-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-picketlink-config-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-picketlink-federation-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-picketlink-idm-api-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-picketlink-idm-impl-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-picketlink-idm-simple-schema-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-picketlink-impl-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-picketlink-wildfly8-2.5.5-20.SP12_redhat_00007.1.el6eap.noarch.rpm eap7-undertow-2.0.25-1.SP1_redhat_00001.1.el6eap.noarch.rpm eap7-weld-core-3.0.6-2.Final_redhat_00002.1.el6eap.noarch.rpm eap7-weld-core-impl-3.0.6-2.Final_redhat_00002.1.el6eap.noarch.rpm eap7-weld-core-jsf-3.0.6-2.Final_redhat_00002.1.el6eap.noarch.rpm eap7-weld-ejb-3.0.6-2.Final_redhat_00002.1.el6eap.noarch.rpm eap7-weld-jta-3.0.6-2.Final_redhat_00002.1.el6eap.noarch.rpm eap7-weld-probe-core-3.0.6-2.Final_redhat_00002.1.el6eap.noarch.rpm eap7-weld-web-3.0.6-2.Final_redhat_00002.1.el6eap.noarch.rpm eap7-wildfly-7.2.4-1.GA_redhat_00002.1.el6eap.noarch.rpm eap7-wildfly-elytron-1.6.4-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-wildfly-elytron-tool-1.4.3-1.Final_redhat_00001.1.el6eap.noarch.rpm eap7-wildfly-javadocs-7.2.4-1.GA_redhat_00002.1.el6eap.noarch.rpm eap7-wildfly-modules-7.2.4-1.GA_redhat_00002.1.el6eap.noarch.rpm eap7-wildfly-transaction-client-1.1.6-2.Final_redhat_00001.1.el6eap.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 8.References: https://access.redhat.com/security/cve/CVE-2019-10184 https://access.redhat.com/security/cve/CVE-2019-10202 https://access.redhat.com/security/cve/CVE-2019-10212 https://access.redhat.com/security/cve/CVE-2019-12086 https://access.redhat.com/security/cve/CVE-2019-12384 https://access.redhat.com/security/cve/CVE-2019-12814 https://access.redhat.com/security/cve/CVE-2019-14379 https://access.redhat.com/security/updates/classification#important https://docs.redhat.com/en/documentation/red_hat_jboss_enterprise_application_platform/7.2 https://docs.redhat.com/en/documentation/red_hat_jboss_enterprise_application_platform/7.2/html-single/installation_guide/index 9. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2019 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBXZKIxtzjgjWX9erEAQg2Ag//UseqctL0JhJwZc+NQAf7ACXqhBl/whCO XCPhMV6FWyzWDUwyMHXRo3HwLaC2KrVP//T8HcLS3Mza4CDeodC6jXqrXJI64L/D QMjG4w+fzJH+D8cRt+Mtgr0B+DvCXYPtJAWqEzCeqr2ccwOugX7sqoaK60ZXf7tl JsUi43Ebi/ITR55u6++9xNLSYVGY1GFhupViaf21pN70BGWGDrzCc7WRZMFkXqFh ipWcVqPKFbt66934lx6/k6hxUvXYLsG02uM0saO3TZS/VRRwC97NI3iLvP9Mg/jI Z78265vK16Ep93B1HPnDJ50mMpPOrcWWm69XXfCepzHFE5J2P27kveskbZbvF/Dv K7puK4KHCr/u+tlSXuxP/FrvNCYBGeh0DM3RZNJN0yZaOJY3K7PAC4NDsWHGzybc F5Z4zUDWAujPEoolk1bD7wwVvbytavtexE+bvkFGk2pCMTr08iod3PlDeQFe3cem jN3mWU039g3J4Cm80LfuGmCX2OKpdyKfx9K8O2hnPjjwePoIa07MA7CDnyn5R82p a+9CF5mcyrZwY7L0iJukHU4ms+Nf13hakq63RTd3d8Sw8qwcMVwg+ApKFvjqdjwm 7aPvRNseYL7Spn6YUVvzDQuyHHcqtG1BKHtt4hEgcLwcT8zoBuFTsUYl9m8w4pX5 yFXq60WBpFk=UTdp -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . The recent notice for Red Hat JBoss EAP 7.2.4 includes crucial modifications targeting various vulnerabilities.. Red Hat JBoss, Application Security, EAP Update, Remote Code Issues. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Sep 30, 2019 Important Red Hat
98

RedHat: RHSA-2019-0981-01 Important Security Update for Python27:2.7

An update for the python27:2.7 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: python27:2.7 security update Advisory ID: RHSA-2019:0981-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2019:0981 Issue date: 2019-05-07 CVE Names: CVE-2019-7164 CVE-2019-7548 CVE-2019-9636 ==================================================================== 1. Summary: An update for the python27:2.7 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 3. Description: Python is an interpreted, interactive, object-oriented programming language that supports modules, classes, exceptions, high-level dynamic data types, and dynamic typing. SQLAlchemy is an Object Relational Mapper (ORM) that provides a flexible, high-level interface to SQL databases. Security Fix(es): * python: Information Disclosure due to urlsplit improper NFKC normalization (CVE-2019-9636) * python-sqlalchemy: SQL Injection when the order_by parameter can be controlled (CVE-2019-7164) * python-sqlalchemy: SQL Injection when the group_by parameter can be controlled (CVE-2019-7548) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in theReferences section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1674059 - CVE-2019-7548 python-sqlalchemy: SQL Injection when the group_by parameter can be controlled 1678520 - CVE-2019-7164 python-sqlalchemy: SQL Injection when the order_by parameter can be controlled 1688543 - CVE-2019-9636 python: Information Disclosure due to urlsplit improper NFKC normalization 6. Package List: Red Hat Enterprise Linux AppStream (v.8): Source: Cython-0.28.1-7.module+el8.0.0+2961+596d0223.src.rpm PyYAML-3.12-16.module+el8.0.0+2961+596d0223.src.rpm babel-2.5.1-9.module+el8.0.0+2961+596d0223.src.rpm numpy-1.14.2-10.module+el8.0.0+2961+596d0223.src.rpm pytest-3.4.2-13.module+el8.0.0+2961+596d0223.src.rpm python-PyMySQL-0.8.0-10.module+el8.0.0+2961+596d0223.src.rpm python-attrs-17.4.0-10.module+el8.0.0+2961+596d0223.src.rpm python-backports-1.0-15.module+el8.0.0+2961+596d0223.src.rpm python-backports-ssl_match_hostname-3.5.0.1-11.module+el8.0.0+2961+596d0223.src.rpm python-chardet-3.0.4-10.module+el8.0.0+2961+596d0223.src.rpm python-coverage-4.5.1-4.module+el8.0.0+2961+596d0223.src.rpm python-dns-1.15.0-9.module+el8.0.0+2961+596d0223.src.rpm python-docs-2.7.15-4.module+el8.0.0+2961+596d0223.src.rpm python-docutils-0.14-12.module+el8.0.0+2961+596d0223.src.rpm python-funcsigs-1.0.2-13.module+el8.0.0+2961+596d0223.src.rpm python-idna-2.5-7.module+el8.0.0+2961+596d0223.src.rpm python-ipaddress-1.0.18-6.module+el8.0.0+2961+596d0223.src.rpm python-jinja2-2.10-8.module+el8.0.0+2961+596d0223.src.rpm python-lxml-4.2.3-3.module+el8.0.0+2961+596d0223.src.rpm python-markupsafe-0.23-19.module+el8.0.0+2961+596d0223.src.rpm python-mock-2.0.0-13.module+el8.0.0+2961+596d0223.src.rpm python-nose-1.3.7-30.module+el8.0.0+2961+596d0223.src.rpm python-pluggy-0.6.0-8.module+el8.0.0+2961+596d0223.src.rpm python-psycopg2-2.7.5-7.module+el8.0.0+2961+596d0223.src.rpm python-py-1.5.3-6.module+el8.0.0+2961+596d0223.src.rpm python-pygments-2.2.0-20.module+el8.0.0+2961+596d0223.src.rpm python-pymongo-3.6.1-9.module+el8.0.0+2961+596d0223.src.rpm python-pysocks-1.6.8-6.module+el8.0.0+2961+596d0223.src.rpm python-pytest-mock-1.9.0-4.module+el8.0.0+2961+596d0223.src.rpm python-requests-2.20.0-2.module+el8.0.0+2961+596d0223.src.rpm python-setuptools_scm-1.15.7-6.module+el8.0.0+2961+596d0223.src.rpm python-six-1.11.0-5.module+el8.0.0+2961+596d0223.src.rpm python-sqlalchemy-1.3.2-1.module+el8.0.0+2974+76d21d2e.src.rpm python-urllib3-1.23-7.module+el8.0.0+2961+596d0223.src.rpm python-virtualenv-15.1.0-18.module+el8.0.0+2961+596d0223.src.rpm python-wheel-0.30.0-13.module+el8.0.0+2961+596d0223.src.rpm python2-2.7.15-22.module+el8.0.0+2961+596d0223.src.rpm python2-pip-9.0.3-13.module+el8.0.0+2961+596d0223.src.rpm python2-rpm-macros-3-38.module+el8.0.0+2961+596d0223.src.rpm python2-setuptools-39.0.1-11.module+el8.0.0+2961+596d0223.src.rpm pytz-2017.2-12.module+el8.0.0+2961+596d0223.src.rpm scipy-1.0.0-19.module+el8.0.0+2961+596d0223.src.rpm aarch64: python-psycopg2-doc-2.7.5-7.module+el8.0.0+2961+596d0223.aarch64.rpm python2-2.7.15-22.module+el8.0.0+2961+596d0223.aarch64.rpm python2-Cython-0.28.1-7.module+el8.0.0+2961+596d0223.aarch64.rpm python2-Cython-debuginfo-0.28.1-7.module+el8.0.0+2961+596d0223.aarch64.rpm python2-backports-1.0-15.module+el8.0.0+2961+596d0223.aarch64.rpm python2-bson-3.6.1-9.module+el8.0.0+2961+596d0223.aarch64.rpm python2-bson-debuginfo-3.6.1-9.module+el8.0.0+2961+596d0223.aarch64.rpm python2-coverage-4.5.1-4.module+el8.0.0+2961+596d0223.aarch64.rpm python2-coverage-debuginfo-4.5.1-4.module+el8.0.0+2961+596d0223.aarch64.rpm python2-debug-2.7.15-22.module+el8.0.0+2961+596d0223.aarch64.rpm python2-debuginfo-2.7.15-22.module+el8.0.0+2961+596d0223.aarch64.rpm python2-debugsource-2.7.15-22.module+el8.0.0+2961+596d0223.aarch64.rpm python2-devel-2.7.15-22.module+el8.0.0+2961+596d0223.aarch64.rpm python2-libs-2.7.15-22.module+el8.0.0+2961+596d0223.aarch64.rpm python2-lxml-4.2.3-3.module+el8.0.0+2961+596d0223.aarch64.rpm python2-lxml-debuginfo-4.2.3-3.module+el8.0.0+2961+596d0223.aarch64.rpm python2-markupsafe-0.23-19.module+el8.0.0+2961+596d0223.aarch64.rpm python2-numpy-1.14.2-10.module+el8.0.0+2961+596d0223.aarch64.rpm python2-numpy-debuginfo-1.14.2-10.module+el8.0.0+2961+596d0223.aarch64.rpm python2-numpy-f2py-1.14.2-10.module+el8.0.0+2961+596d0223.aarch64.rpm python2-psycopg2-2.7.5-7.module+el8.0.0+2961+596d0223.aarch64.rpm python2-psycopg2-debug-2.7.5-7.module+el8.0.0+2961+596d0223.aarch64.rpm python2-psycopg2-debug-debuginfo-2.7.5-7.module+el8.0.0+2961+596d0223.aarch64.rpm python2-psycopg2-debuginfo-2.7.5-7.module+el8.0.0+2961+596d0223.aarch64.rpm python2-psycopg2-tests-2.7.5-7.module+el8.0.0+2961+596d0223.aarch64.rpm python2-pymongo-3.6.1-9.module+el8.0.0+2961+596d0223.aarch64.rpm python2-pymongo-debuginfo-3.6.1-9.module+el8.0.0+2961+596d0223.aarch64.rpm python2-pymongo-gridfs-3.6.1-9.module+el8.0.0+2961+596d0223.aarch64.rpm python2-pyyaml-3.12-16.module+el8.0.0+2961+596d0223.aarch64.rpm python2-pyyaml-debuginfo-3.12-16.module+el8.0.0+2961+596d0223.aarch64.rpm python2-scipy-1.0.0-19.module+el8.0.0+2961+596d0223.aarch64.rpm python2-scipy-debuginfo-1.0.0-19.module+el8.0.0+2961+596d0223.aarch64.rpm python2-sqlalchemy-1.3.2-1.module+el8.0.0+2974+76d21d2e.aarch64.rpm python2-test-2.7.15-22.module+el8.0.0+2961+596d0223.aarch64.rpm python2-tkinter-2.7.15-22.module+el8.0.0+2961+596d0223.aarch64.rpm python2-tools-2.7.15-22.module+el8.0.0+2961+596d0223.aarch64.rpm noarch: babel-2.5.1-9.module+el8.0.0+2961+596d0223.noarch.rpm python-nose-docs-1.3.7-30.module+el8.0.0+2961+596d0223.noarch.rpm python-sqlalchemy-doc-1.3.2-1.module+el8.0.0+2974+76d21d2e.noarch.rpm python2-PyMySQL-0.8.0-10.module+el8.0.0+2961+596d0223.noarch.rpm python2-attrs-17.4.0-10.module+el8.0.0+2961+596d0223.noarch.rpm python2-babel-2.5.1-9.module+el8.0.0+2961+596d0223.noarch.rpm python2-backports-ssl_match_hostname-3.5.0.1-11.module+el8.0.0+2961+596d0223.noarch.rpm python2-chardet-3.0.4-10.module+el8.0.0+2961+596d0223.noarch.rpm python2-dns-1.15.0-9.module+el8.0.0+2961+596d0223.noarch.rpm python2-docs-2.7.15-4.module+el8.0.0+2961+596d0223.noarch.rpm python2-docs-info-2.7.15-4.module+el8.0.0+2961+596d0223.noarch.rpm python2-docutils-0.14-12.module+el8.0.0+2961+596d0223.noarch.rpm python2-funcsigs-1.0.2-13.module+el8.0.0+2961+596d0223.noarch.rpm python2-idna-2.5-7.module+el8.0.0+2961+596d0223.noarch.rpm python2-ipaddress-1.0.18-6.module+el8.0.0+2961+596d0223.noarch.rpm python2-jinja2-2.10-8.module+el8.0.0+2961+596d0223.noarch.rpm python2-mock-2.0.0-13.module+el8.0.0+2961+596d0223.noarch.rpm python2-nose-1.3.7-30.module+el8.0.0+2961+596d0223.noarch.rpm python2-numpy-doc-1.14.2-10.module+el8.0.0+2961+596d0223.noarch.rpm python2-pip-9.0.3-13.module+el8.0.0+2961+596d0223.noarch.rpm python2-pluggy-0.6.0-8.module+el8.0.0+2961+596d0223.noarch.rpm python2-py-1.5.3-6.module+el8.0.0+2961+596d0223.noarch.rpm python2-pygments-2.2.0-20.module+el8.0.0+2961+596d0223.noarch.rpm python2-pysocks-1.6.8-6.module+el8.0.0+2961+596d0223.noarch.rpm python2-pytest-3.4.2-13.module+el8.0.0+2961+596d0223.noarch.rpm python2-pytest-mock-1.9.0-4.module+el8.0.0+2961+596d0223.noarch.rpm python2-pytz-2017.2-12.module+el8.0.0+2961+596d0223.noarch.rpm python2-requests-2.20.0-2.module+el8.0.0+2961+596d0223.noarch.rpm python2-rpm-macros-3-38.module+el8.0.0+2961+596d0223.noarch.rpm python2-setuptools-39.0.1-11.module+el8.0.0+2961+596d0223.noarch.rpm python2-setuptools_scm-1.15.7-6.module+el8.0.0+2961+596d0223.noarch.rpm python2-six-1.11.0-5.module+el8.0.0+2961+596d0223.noarch.rpm python2-urllib3-1.23-7.module+el8.0.0+2961+596d0223.noarch.rpm python2-virtualenv-15.1.0-18.module+el8.0.0+2961+596d0223.noarch.rpm python2-wheel-0.30.0-13.module+el8.0.0+2961+596d0223.noarch.rpm ppc64le: python-psycopg2-doc-2.7.5-7.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-2.7.15-22.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-Cython-0.28.1-7.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-Cython-debuginfo-0.28.1-7.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-backports-1.0-15.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-bson-3.6.1-9.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-bson-debuginfo-3.6.1-9.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-coverage-4.5.1-4.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-coverage-debuginfo-4.5.1-4.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-debug-2.7.15-22.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-debuginfo-2.7.15-22.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-debugsource-2.7.15-22.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-devel-2.7.15-22.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-libs-2.7.15-22.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-lxml-4.2.3-3.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-lxml-debuginfo-4.2.3-3.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-markupsafe-0.23-19.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-numpy-1.14.2-10.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-numpy-debuginfo-1.14.2-10.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-numpy-f2py-1.14.2-10.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-psycopg2-2.7.5-7.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-psycopg2-debug-2.7.5-7.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-psycopg2-debug-debuginfo-2.7.5-7.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-psycopg2-debuginfo-2.7.5-7.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-psycopg2-tests-2.7.5-7.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-pymongo-3.6.1-9.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-pymongo-debuginfo-3.6.1-9.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-pymongo-gridfs-3.6.1-9.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-pyyaml-3.12-16.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-pyyaml-debuginfo-3.12-16.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-scipy-1.0.0-19.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-scipy-debuginfo-1.0.0-19.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-sqlalchemy-1.3.2-1.module+el8.0.0+2974+76d21d2e.ppc64le.rpm python2-test-2.7.15-22.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-tkinter-2.7.15-22.module+el8.0.0+2961+596d0223.ppc64le.rpm python2-tools-2.7.15-22.module+el8.0.0+2961+596d0223.ppc64le.rpm s390x: python-psycopg2-doc-2.7.5-7.module+el8.0.0+2961+596d0223.s390x.rpm python2-2.7.15-22.module+el8.0.0+2961+596d0223.s390x.rpm python2-Cython-0.28.1-7.module+el8.0.0+2961+596d0223.s390x.rpm python2-Cython-debuginfo-0.28.1-7.module+el8.0.0+2961+596d0223.s390x.rpm python2-backports-1.0-15.module+el8.0.0+2961+596d0223.s390x.rpm python2-bson-3.6.1-9.module+el8.0.0+2961+596d0223.s390x.rpm python2-bson-debuginfo-3.6.1-9.module+el8.0.0+2961+596d0223.s390x.rpm python2-coverage-4.5.1-4.module+el8.0.0+2961+596d0223.s390x.rpm python2-coverage-debuginfo-4.5.1-4.module+el8.0.0+2961+596d0223.s390x.rpm python2-debug-2.7.15-22.module+el8.0.0+2961+596d0223.s390x.rpm python2-debuginfo-2.7.15-22.module+el8.0.0+2961+596d0223.s390x.rpm python2-debugsource-2.7.15-22.module+el8.0.0+2961+596d0223.s390x.rpm python2-devel-2.7.15-22.module+el8.0.0+2961+596d0223.s390x.rpm python2-libs-2.7.15-22.module+el8.0.0+2961+596d0223.s390x.rpm python2-lxml-4.2.3-3.module+el8.0.0+2961+596d0223.s390x.rpm python2-lxml-debuginfo-4.2.3-3.module+el8.0.0+2961+596d0223.s390x.rpm python2-markupsafe-0.23-19.module+el8.0.0+2961+596d0223.s390x.rpm python2-numpy-1.14.2-10.module+el8.0.0+2961+596d0223.s390x.rpm python2-numpy-debuginfo-1.14.2-10.module+el8.0.0+2961+596d0223.s390x.rpm python2-numpy-f2py-1.14.2-10.module+el8.0.0+2961+596d0223.s390x.rpm python2-psycopg2-2.7.5-7.module+el8.0.0+2961+596d0223.s390x.rpm python2-psycopg2-debug-2.7.5-7.module+el8.0.0+2961+596d0223.s390x.rpm python2-psycopg2-debug-debuginfo-2.7.5-7.module+el8.0.0+2961+596d0223.s390x.rpm python2-psycopg2-debuginfo-2.7.5-7.module+el8.0.0+2961+596d0223.s390x.rpm python2-psycopg2-tests-2.7.5-7.module+el8.0.0+2961+596d0223.s390x.rpm python2-pymongo-3.6.1-9.module+el8.0.0+2961+596d0223.s390x.rpm python2-pymongo-debuginfo-3.6.1-9.module+el8.0.0+2961+596d0223.s390x.rpm python2-pymongo-gridfs-3.6.1-9.module+el8.0.0+2961+596d0223.s390x.rpm python2-pyyaml-3.12-16.module+el8.0.0+2961+596d0223.s390x.rpm python2-pyyaml-debuginfo-3.12-16.module+el8.0.0+2961+596d0223.s390x.rpm python2-scipy-1.0.0-19.module+el8.0.0+2961+596d0223.s390x.rpm python2-scipy-debuginfo-1.0.0-19.module+el8.0.0+2961+596d0223.s390x.rpm python2-sqlalchemy-1.3.2-1.module+el8.0.0+2974+76d21d2e.s390x.rpm python2-test-2.7.15-22.module+el8.0.0+2961+596d0223.s390x.rpm python2-tkinter-2.7.15-22.module+el8.0.0+2961+596d0223.s390x.rpm python2-tools-2.7.15-22.module+el8.0.0+2961+596d0223.s390x.rpm x86_64: python-psycopg2-doc-2.7.5-7.module+el8.0.0+2961+596d0223.x86_64.rpm python2-2.7.15-22.module+el8.0.0+2961+596d0223.x86_64.rpm python2-Cython-0.28.1-7.module+el8.0.0+2961+596d0223.x86_64.rpm python2-Cython-debuginfo-0.28.1-7.module+el8.0.0+2961+596d0223.x86_64.rpm python2-backports-1.0-15.module+el8.0.0+2961+596d0223.x86_64.rpm python2-bson-3.6.1-9.module+el8.0.0+2961+596d0223.x86_64.rpm python2-bson-debuginfo-3.6.1-9.module+el8.0.0+2961+596d0223.x86_64.rpm python2-coverage-4.5.1-4.module+el8.0.0+2961+596d0223.x86_64.rpm python2-coverage-debuginfo-4.5.1-4.module+el8.0.0+2961+596d0223.x86_64.rpm python2-debug-2.7.15-22.module+el8.0.0+2961+596d0223.x86_64.rpm python2-debuginfo-2.7.15-22.module+el8.0.0+2961+596d0223.x86_64.rpm python2-debugsource-2.7.15-22.module+el8.0.0+2961+596d0223.x86_64.rpm python2-devel-2.7.15-22.module+el8.0.0+2961+596d0223.x86_64.rpm python2-libs-2.7.15-22.module+el8.0.0+2961+596d0223.x86_64.rpm python2-lxml-4.2.3-3.module+el8.0.0+2961+596d0223.x86_64.rpm python2-lxml-debuginfo-4.2.3-3.module+el8.0.0+2961+596d0223.x86_64.rpm python2-markupsafe-0.23-19.module+el8.0.0+2961+596d0223.x86_64.rpm python2-numpy-1.14.2-10.module+el8.0.0+2961+596d0223.x86_64.rpm python2-numpy-debuginfo-1.14.2-10.module+el8.0.0+2961+596d0223.x86_64.rpm python2-numpy-f2py-1.14.2-10.module+el8.0.0+2961+596d0223.x86_64.rpm python2-psycopg2-2.7.5-7.module+el8.0.0+2961+596d0223.x86_64.rpm python2-psycopg2-debug-2.7.5-7.module+el8.0.0+2961+596d0223.x86_64.rpm python2-psycopg2-debug-debuginfo-2.7.5-7.module+el8.0.0+2961+596d0223.x86_64.rpm python2-psycopg2-debuginfo-2.7.5-7.module+el8.0.0+2961+596d0223.x86_64.rpm python2-psycopg2-tests-2.7.5-7.module+el8.0.0+2961+596d0223.x86_64.rpm python2-pymongo-3.6.1-9.module+el8.0.0+2961+596d0223.x86_64.rpm python2-pymongo-debuginfo-3.6.1-9.module+el8.0.0+2961+596d0223.x86_64.rpm python2-pymongo-gridfs-3.6.1-9.module+el8.0.0+2961+596d0223.x86_64.rpm python2-pyyaml-3.12-16.module+el8.0.0+2961+596d0223.x86_64.rpm python2-pyyaml-debuginfo-3.12-16.module+el8.0.0+2961+596d0223.x86_64.rpm python2-scipy-1.0.0-19.module+el8.0.0+2961+596d0223.x86_64.rpm python2-scipy-debuginfo-1.0.0-19.module+el8.0.0+2961+596d0223.x86_64.rpm python2-sqlalchemy-1.3.2-1.module+el8.0.0+2974+76d21d2e.x86_64.rpm python2-test-2.7.15-22.module+el8.0.0+2961+596d0223.x86_64.rpm python2-tkinter-2.7.15-22.module+el8.0.0+2961+596d0223.x86_64.rpm python2-tools-2.7.15-22.module+el8.0.0+2961+596d0223.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2019-7164 https://access.redhat.com/security/cve/CVE-2019-7548 https://access.redhat.com/security/cve/CVE-2019-9636 https://access.redhat.com/security/updates/classification#important https://python-security.readthedocs.io/vuln/urlsplit-nfkc-normalization.html 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2019 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBXNEIedzjgjWX9erEAQgSPQ/7BFD2+dSvttAc6C7LlDcuWTW5BHqGlHG5 lgAaJriYrsteqrjp0mqkaI/+6kgbF4v/nbf0Ss1gmKvVIz9hKwZcNbfe1hTkuHbr WTKg7mpkULE9C+ZaF0D4y8K6b5nufWZLeVbtxVtE+0xC/ozxesxv2XdD98os8deL 0nT6N1AfVDY9QtrMuMQ+2Gvjqso7ETY0iHqRka34SI/fVQ/VFVewrdcRIe7wFiTo FQIkuQAhO5k9fJjlaxy1bcUkcm+Nrpu4PG3Td/kpsvuOarICj5fgcqSJ/UenwGo0 KmNY3ze8lTNoIDvshbSFfeplhrdB/ws0QmKc+/1irUEFOoi3IuSgViPucYc4P0sp KvjWpgOCemKJnE2FMwwiMcNbQHn9fY9BbSczSKO4pZQPxutFcsR/zNP62+sh9cIm hYJD1uRVCyh+I8Gar0h2eefhYtd9CESQNunAA41ZKVpY2NFToCDawi5mW+RAUnfz zrfIs4ydoVi7CqpCCmq3927fXRs3XZ4cLZBavtyWJimM1y8/ItOJwUk6AWIEi/sN 4uQo4KQMJqsN6TtZsLc5Ho37afykfytKdrw5w5T3cM9eBuU44mf80qpDELKJxqKW cGMDWrlcKcAriYrMaWqh0MrYbe/aymAFOwybrt9dYn1f9wKAz/2gqnLdNP7g/tKk /J0xuJHQG7M=pTYb -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Red Hat releases a critical alert regarding the python27:2.7 package, addressing serious vulnerabilities related to SQL injection and potential data leakage risks.. Red Hat Security Advisory, Python Security Update, SQL Injection, InformationDisclosure, Enterprise Linux. . Severity: Important. LinuxSecurity.com Team

Calendar%202 May 07, 2019 Important Red Hat
98

Red Hat: RHSA-2017-0437-01 Critical: Firefox Security Vulnerability

An update for thunderbird is now available for Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6, and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Important: thunderbird security update Advisory ID: RHSA-2017:0238-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2017:0238.html Issue date: 2017-02-02 CVE Names: CVE-2017-5373 CVE-2017-5375 CVE-2017-5376 CVE-2017-5378 CVE-2017-5380 CVE-2017-5383 CVE-2017-5390 CVE-2017-5396 ==================================================================== 1. Summary: An update for thunderbird is now available for Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6, and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Client (v. 7) - x86_64 Red Hat Enterprise Linux Desktop (v. 5 client) - i386, x86_64 Red Hat Enterprise Linux Desktop (v. 6) - i386, x86_64 Red Hat Enterprise Linux Optional Productivity Applications (v. 5 server) - i386, x86_64 Red Hat Enterprise Linux Server Optional (v. 6) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Server Optional (v. 7) - aarch64, ppc64le, x86_64 Red Hat Enterprise Linux Workstation (v. 6) - i386, x86_64 Red Hat Enterprise Linux Workstation (v. 7) - x86_64 3. Description: Mozilla Thunderbird is a standalone mail and newsgroup client. This update upgrades Thunderbird to version 45.7.0. SecurityFix(es): * Multiple flaws were found in the processing of malformed web content. A web page containing malicious content could cause Thunderbird to crash or, potentially, execute arbitrary code with the privileges of the user running Thunderbird. (CVE-2017-5373, CVE-2017-5375, CVE-2017-5376, CVE-2017-5378, CVE-2017-5380, CVE-2017-5383, CVE-2017-5390, CVE-2017-5396) Red Hat would like to thank the Mozilla project for reporting these issues. Upstream acknowledges Jann Horn, Filipe Gomes, Nils, Armin Razmjou, Christian Holler, Gary Kwong, Andre Bargull, Jan de Mooij, Tom Schuster, Oriol, Rh0, Nicolas Gregoire, and Jerri Rice as the original reporters. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 All running instances of Thunderbird must be restarted for the update to take effect. 5. Bugs fixed (https://bugzilla.redhat.com/): 1415924 - CVE-2017-5373 Mozilla: Memory safety bugs fixed in Firefox 51 and Firefox ESR 45.7 (MFSA 2017-01) 1416271 - CVE-2017-5375 Mozilla: Excessive JIT code allocation allows bypass of ASLR and DEP (MFSA 2017-02) 1416272 - CVE-2017-5376 Mozilla: Use-after-free in XSL (MFSA 2017-02) 1416273 - CVE-2017-5378 Mozilla: Pointer and frame data leakage of Javascript objects (MFSA 2017-02) 1416274 - CVE-2017-5380 Mozilla: Potential use-after-free during DOM manipulations (MFSA 2017-02) 1416279 - CVE-2017-5390 Mozilla: Insecure communication methods in Developer Tools JSON viewer (MFSA 2017-02) 1416280 - CVE-2017-5396 Mozilla: Use-after-free with Media Decoder (MFSA 2017-02) 1416281 - CVE-2017-5383 Mozilla: Location bar spoofing with unicode characters (MFSA 2017-02) 6. Package List: Red Hat Enterprise Linux Desktop (v. 5 client): Source: thunderbird-45.7.0-1.el5_11.src.rpm i386: thunderbird-45.7.0-1.el5_11.i386.rpm thunderbird-debuginfo-45.7.0-1.el5_11.i386.rpm x86_64: thunderbird-45.7.0-1.el5_11.x86_64.rpm thunderbird-debuginfo-45.7.0-1.el5_11.x86_64.rpm Red Hat EnterpriseLinux Optional Productivity Applications (v. 5 server): Source: thunderbird-45.7.0-1.el5_11.src.rpm i386: thunderbird-45.7.0-1.el5_11.i386.rpm thunderbird-debuginfo-45.7.0-1.el5_11.i386.rpm x86_64: thunderbird-45.7.0-1.el5_11.x86_64.rpm thunderbird-debuginfo-45.7.0-1.el5_11.x86_64.rpm Red Hat Enterprise Linux Desktop (v. 6): Source: thunderbird-45.7.0-1.el6_8.src.rpm i386: thunderbird-45.7.0-1.el6_8.i686.rpm thunderbird-debuginfo-45.7.0-1.el6_8.i686.rpm x86_64: thunderbird-45.7.0-1.el6_8.x86_64.rpm thunderbird-debuginfo-45.7.0-1.el6_8.x86_64.rpm Red Hat Enterprise Linux Server Optional (v. 6): Source: thunderbird-45.7.0-1.el6_8.src.rpm i386: thunderbird-45.7.0-1.el6_8.i686.rpm thunderbird-debuginfo-45.7.0-1.el6_8.i686.rpm ppc64: thunderbird-45.7.0-1.el6_8.ppc64.rpm thunderbird-debuginfo-45.7.0-1.el6_8.ppc64.rpm s390x: thunderbird-45.7.0-1.el6_8.s390x.rpm thunderbird-debuginfo-45.7.0-1.el6_8.s390x.rpm x86_64: thunderbird-45.7.0-1.el6_8.x86_64.rpm thunderbird-debuginfo-45.7.0-1.el6_8.x86_64.rpm Red Hat Enterprise Linux Workstation (v. 6): Source: thunderbird-45.7.0-1.el6_8.src.rpm i386: thunderbird-45.7.0-1.el6_8.i686.rpm thunderbird-debuginfo-45.7.0-1.el6_8.i686.rpm x86_64: thunderbird-45.7.0-1.el6_8.x86_64.rpm thunderbird-debuginfo-45.7.0-1.el6_8.x86_64.rpm Red Hat Enterprise Linux Client (v. 7): Source: thunderbird-45.7.0-1.el7_3.src.rpm x86_64: thunderbird-45.7.0-1.el7_3.x86_64.rpm thunderbird-debuginfo-45.7.0-1.el7_3.x86_64.rpm Red Hat Enterprise Linux Server Optional (v. 7): Source: thunderbird-45.7.0-1.el7_3.src.rpm aarch64: thunderbird-45.7.0-1.el7_3.aarch64.rpm thunderbird-debuginfo-45.7.0-1.el7_3.aarch64.rpm ppc64le: thunderbird-45.7.0-1.el7_3.ppc64le.rpm thunderbird-debuginfo-45.7.0-1.el7_3.ppc64le.rpm x86_64: thunderbird-45.7.0-1.el7_3.x86_64.rpm thunderbird-debuginfo-45.7.0-1.el7_3.x86_64.rpm Red Hat Enterprise Linux Workstation (v.7): Source: thunderbird-45.7.0-1.el7_3.src.rpm x86_64: thunderbird-45.7.0-1.el7_3.x86_64.rpm thunderbird-debuginfo-45.7.0-1.el7_3.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2017-5373 https://access.redhat.com/security/cve/CVE-2017-5375 https://access.redhat.com/security/cve/CVE-2017-5376 https://access.redhat.com/security/cve/CVE-2017-5378 https://access.redhat.com/security/cve/CVE-2017-5380 https://access.redhat.com/security/cve/CVE-2017-5383 https://access.redhat.com/security/cve/CVE-2017-5390 https://access.redhat.com/security/cve/CVE-2017-5396 https://access.redhat.com/security/updates/classification#important https://www.mozilla.org/en-US/security/advisories/mfsa2017-03/ 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2017 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iD8DBQFYksbBXlSAg2UNWIIRAmE/AJ9v2GkhbI7z8KNm4DsEjP8Qhjn8/wCfQrsj udSzVHVv4uPEHHnQzABhJOE=E0xe -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Canonical announces a significant patch for vulnerabilities in the Ubuntu desktop environment impacting various releases of the operating system.. Red Hat Security, Thunderbird Update, Linux Threat Management. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 02, 2017 Important Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200