[RHSA-2020:4847] pki-core:10.6 and pki-deps:10.6 security, bug fix, and enhancement update

Severity Moderate
Affected Packages 65
CVEs 17

The Public Key Infrastructure (PKI) Core contains fundamental packages required by Red Hat Certificate System.

Security Fix(es):

  • jquery: Cross-site scripting via cross-domain ajax requests (CVE-2015-9251)

  • bootstrap: XSS in the data-target attribute (CVE-2016-10735)

  • bootstrap: Cross-site Scripting (XSS) in the collapse data-parent attribute (CVE-2018-14040)

  • bootstrap: Cross-site Scripting (XSS) in the data-container property of tooltip (CVE-2018-14042)

  • bootstrap: XSS in the tooltip or popover data-template attribute (CVE-2019-8331)

  • jquery: Prototype pollution in object's prototype leading to denial of service, remote code execution, or property injection (CVE-2019-11358)

  • jquery: Cross-site scripting due to improper injQuery.htmlPrefilter method (CVE-2020-11022)

  • jquery: Passing HTML containing <option> elements to manipulation methods could result in untrusted code execution (CVE-2020-11023)

  • pki: Dogtag's python client does not validate certificates (CVE-2020-15720)

  • pki-core: Reflected XSS in 'path length' constraint field in CA's Agent page (CVE-2019-10146)

  • pki-core/pki-kra: Reflected XSS in recoveryID search field at KRA's DRM agent page in authorize recovery tab (CVE-2019-10179)

  • pki-core: Reflected XSS in getcookies?url= endpoint in CA (CVE-2019-10221)

  • pki-core: KRA vulnerable to reflected XSS via the getPk12 page (CVE-2020-1721)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.3 Release Notes linked from the References section.

Package Affected Version
pkg:rpm/redhat/xsom?distro=redhat-8.1 < 0-19.20110809svn.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/xmlstreambuffer?distro=redhat-8.2 < 1.5.4-8.module+el8.2.0+5723+4574fbff
pkg:rpm/redhat/xml-commons-resolver?distro=redhat-8.1 < 1.2-26.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/xml-commons-apis?distro=redhat-8.1 < 1.4.01-25.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/xerces-j2?distro=redhat-8.1 < 2.11.0-34.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/xalan-j2?distro=redhat-8.1 < 2.7.1-38.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/velocity?distro=redhat-8.1 < 1.7-24.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/tomcatjss?distro=redhat-8.3 < 7.5.0-1.module+el8.3.0+7355+c59bcbd9
pkg:rpm/redhat/stax-ex?distro=redhat-8.2 < 1.7.7-8.module+el8.2.0+5723+4574fbff
pkg:rpm/redhat/slf4j?distro=redhat-8.1 < 1.7.25-4.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/slf4j-jdk14?distro=redhat-8.1 < 1.7.25-4.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/resteasy?distro=redhat-8.2 < 3.0.26-3.module+el8.2.0+5723+4574fbff
pkg:rpm/redhat/relaxngDatatype?distro=redhat-8.1 < 2011.1-7.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/python3-pki?distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/python3-nss?arch=x86_64&distro=redhat-8.1 < 1.0.1-10.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/python3-nss?arch=s390x&distro=redhat-8.1 < 1.0.1-10.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/python3-nss?arch=ppc64le&distro=redhat-8.1 < 1.0.1-10.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/python3-nss?arch=aarch64&distro=redhat-8.1 < 1.0.1-10.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/python-nss-doc?arch=x86_64&distro=redhat-8.1 < 1.0.1-10.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/python-nss-doc?arch=s390x&distro=redhat-8.1 < 1.0.1-10.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/python-nss-doc?arch=ppc64le&distro=redhat-8.1 < 1.0.1-10.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/python-nss-doc?arch=aarch64&distro=redhat-8.1 < 1.0.1-10.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/pki-tools?arch=x86_64&distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-tools?arch=s390x&distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-tools?arch=ppc64le&distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-tools?arch=aarch64&distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-symkey?arch=x86_64&distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-symkey?arch=s390x&distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-symkey?arch=ppc64le&distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-symkey?arch=aarch64&distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-servlet-engine?distro=redhat-8.3 < 9.0.30-1.module+el8.3.0+6730+8f9c6254
pkg:rpm/redhat/pki-servlet-4.0-api?distro=redhat-8.3 < 9.0.30-1.module+el8.3.0+6730+8f9c6254
pkg:rpm/redhat/pki-server?distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-kra?distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-ca?distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-base?distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/pki-base-java?distro=redhat-8.3 < 10.9.4-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/ldapjdk?distro=redhat-8.3 < 4.22.0-1.module+el8.3.0+6784+6e1e4c62
pkg:rpm/redhat/ldapjdk-javadoc?distro=redhat-8.3 < 4.22.0-1.module+el8.3.0+6784+6e1e4c62
pkg:rpm/redhat/jss?arch=x86_64&distro=redhat-8.3 < 4.7.3-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/jss?arch=s390x&distro=redhat-8.3 < 4.7.3-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/jss?arch=ppc64le&distro=redhat-8.3 < 4.7.3-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/jss?arch=aarch64&distro=redhat-8.3 < 4.7.3-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/jss-javadoc?arch=x86_64&distro=redhat-8.3 < 4.7.3-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/jss-javadoc?arch=s390x&distro=redhat-8.3 < 4.7.3-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/jss-javadoc?arch=ppc64le&distro=redhat-8.3 < 4.7.3-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/jss-javadoc?arch=aarch64&distro=redhat-8.3 < 4.7.3-1.module+el8.3.0+8058+d5cd4219
pkg:rpm/redhat/javassist?distro=redhat-8.1 < 3.18.1-8.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/javassist-javadoc?distro=redhat-8.1 < 3.18.1-8.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/jakarta-commons-httpclient?distro=redhat-8.1 < 3.1-28.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/jackson-module-jaxb-annotations?distro=redhat-8.1 < 2.7.6-4.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/jackson-jaxrs-providers?distro=redhat-8.1 < 2.9.9-1.module+el8.1.0+3832+9784644d
pkg:rpm/redhat/jackson-jaxrs-json-provider?distro=redhat-8.1 < 2.9.9-1.module+el8.1.0+3832+9784644d
pkg:rpm/redhat/jackson-databind?distro=redhat-8.2 < 2.10.0-1.module+el8.2.0+5059+3eb3af25
pkg:rpm/redhat/jackson-core?distro=redhat-8.2 < 2.10.0-1.module+el8.2.0+5059+3eb3af25
pkg:rpm/redhat/jackson-annotations?distro=redhat-8.2 < 2.10.0-1.module+el8.2.0+5059+3eb3af25
pkg:rpm/redhat/glassfish-jaxb-txw2?distro=redhat-8.1 < 2.2.11-11.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/glassfish-jaxb-runtime?distro=redhat-8.1 < 2.2.11-11.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/glassfish-jaxb-core?distro=redhat-8.1 < 2.2.11-11.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/glassfish-jaxb-api?distro=redhat-8.1 < 2.2.12-8.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/glassfish-fastinfoset?distro=redhat-8.1 < 1.2.13-9.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/bea-stax-api?distro=redhat-8.1 < 1.2.0-16.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/apache-commons-net?distro=redhat-8.3 < 3.6-3.module+el8.3.0+6805+72837426
pkg:rpm/redhat/apache-commons-lang?distro=redhat-8.1 < 2.6-21.module+el8.1.0+3366+6dfb954c
pkg:rpm/redhat/apache-commons-collections?distro=redhat-8.1 < 3.2.2-10.module+el8.1.0+3366+6dfb954c
ID
RHSA-2020:4847
Severity
moderate
URL
https://access.redhat.com/errata/RHSA-2020:4847
Published
2020-11-04T00:00:00
(3 years ago)
Modified
2020-11-04T00:00:00
(3 years ago)
Rights
Copyright 2020 Red Hat, Inc.
Other Advisories
Source # ID Name URL
Bugzilla 1399546 https://bugzilla.redhat.com/1399546
Bugzilla 1601614 https://bugzilla.redhat.com/1601614
Bugzilla 1601617 https://bugzilla.redhat.com/1601617
Bugzilla 1668097 https://bugzilla.redhat.com/1668097
Bugzilla 1686454 https://bugzilla.redhat.com/1686454
Bugzilla 1695901 https://bugzilla.redhat.com/1695901
Bugzilla 1701972 https://bugzilla.redhat.com/1701972
Bugzilla 1710171 https://bugzilla.redhat.com/1710171
Bugzilla 1732565 https://bugzilla.redhat.com/1732565
Bugzilla 1777579 https://bugzilla.redhat.com/1777579
Bugzilla 1806398 https://bugzilla.redhat.com/1806398
Bugzilla 1806835 https://bugzilla.redhat.com/1806835
Bugzilla 1828406 https://bugzilla.redhat.com/1828406
Bugzilla 1850004 https://bugzilla.redhat.com/1850004
Bugzilla 1855273 https://bugzilla.redhat.com/1855273
Bugzilla 1891016 https://bugzilla.redhat.com/1891016
Bugzilla 2085304 https://bugzilla.redhat.com/2085304
RHSA RHSA-2020:4847 https://access.redhat.com/errata/RHSA-2020:4847
CVE CVE-2015-9251 https://access.redhat.com/security/cve/CVE-2015-9251
CVE CVE-2016-10735 https://access.redhat.com/security/cve/CVE-2016-10735
CVE CVE-2018-14040 https://access.redhat.com/security/cve/CVE-2018-14040
CVE CVE-2018-14042 https://access.redhat.com/security/cve/CVE-2018-14042
CVE CVE-2019-10146 https://access.redhat.com/security/cve/CVE-2019-10146
CVE CVE-2019-10179 https://access.redhat.com/security/cve/CVE-2019-10179
CVE CVE-2019-10221 https://access.redhat.com/security/cve/CVE-2019-10221
CVE CVE-2019-11358 https://access.redhat.com/security/cve/CVE-2019-11358
CVE CVE-2019-8331 https://access.redhat.com/security/cve/CVE-2019-8331
CVE CVE-2020-11022 https://access.redhat.com/security/cve/CVE-2020-11022
CVE CVE-2020-11023 https://access.redhat.com/security/cve/CVE-2020-11023
CVE CVE-2020-15720 https://access.redhat.com/security/cve/CVE-2020-15720
CVE CVE-2020-1721 https://access.redhat.com/security/cve/CVE-2020-1721
CVE CVE-2020-1935 https://access.redhat.com/security/cve/CVE-2020-1935
CVE CVE-2020-1938 https://access.redhat.com/security/cve/CVE-2020-1938
CVE CVE-2020-25715 https://access.redhat.com/security/cve/CVE-2020-25715
CVE CVE-2022-25762 https://access.redhat.com/security/cve/CVE-2022-25762
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/redhat/xsom?distro=redhat-8.1 redhat xsom < 0-19.20110809svn.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/xmlstreambuffer?distro=redhat-8.2 redhat xmlstreambuffer < 1.5.4-8.module+el8.2.0+5723+4574fbff redhat-8.2
Affected pkg:rpm/redhat/xml-commons-resolver?distro=redhat-8.1 redhat xml-commons-resolver < 1.2-26.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/xml-commons-apis?distro=redhat-8.1 redhat xml-commons-apis < 1.4.01-25.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/xerces-j2?distro=redhat-8.1 redhat xerces-j2 < 2.11.0-34.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/xalan-j2?distro=redhat-8.1 redhat xalan-j2 < 2.7.1-38.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/velocity?distro=redhat-8.1 redhat velocity < 1.7-24.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/tomcatjss?distro=redhat-8.3 redhat tomcatjss < 7.5.0-1.module+el8.3.0+7355+c59bcbd9 redhat-8.3
Affected pkg:rpm/redhat/stax-ex?distro=redhat-8.2 redhat stax-ex < 1.7.7-8.module+el8.2.0+5723+4574fbff redhat-8.2
Affected pkg:rpm/redhat/slf4j?distro=redhat-8.1 redhat slf4j < 1.7.25-4.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/slf4j-jdk14?distro=redhat-8.1 redhat slf4j-jdk14 < 1.7.25-4.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/resteasy?distro=redhat-8.2 redhat resteasy < 3.0.26-3.module+el8.2.0+5723+4574fbff redhat-8.2
Affected pkg:rpm/redhat/relaxngDatatype?distro=redhat-8.1 redhat relaxngDatatype < 2011.1-7.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/python3-pki?distro=redhat-8.3 redhat python3-pki < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3
Affected pkg:rpm/redhat/python3-nss?arch=x86_64&distro=redhat-8.1 redhat python3-nss < 1.0.1-10.module+el8.1.0+3366+6dfb954c redhat-8.1 x86_64
Affected pkg:rpm/redhat/python3-nss?arch=s390x&distro=redhat-8.1 redhat python3-nss < 1.0.1-10.module+el8.1.0+3366+6dfb954c redhat-8.1 s390x
Affected pkg:rpm/redhat/python3-nss?arch=ppc64le&distro=redhat-8.1 redhat python3-nss < 1.0.1-10.module+el8.1.0+3366+6dfb954c redhat-8.1 ppc64le
Affected pkg:rpm/redhat/python3-nss?arch=aarch64&distro=redhat-8.1 redhat python3-nss < 1.0.1-10.module+el8.1.0+3366+6dfb954c redhat-8.1 aarch64
Affected pkg:rpm/redhat/python-nss-doc?arch=x86_64&distro=redhat-8.1 redhat python-nss-doc < 1.0.1-10.module+el8.1.0+3366+6dfb954c redhat-8.1 x86_64
Affected pkg:rpm/redhat/python-nss-doc?arch=s390x&distro=redhat-8.1 redhat python-nss-doc < 1.0.1-10.module+el8.1.0+3366+6dfb954c redhat-8.1 s390x
Affected pkg:rpm/redhat/python-nss-doc?arch=ppc64le&distro=redhat-8.1 redhat python-nss-doc < 1.0.1-10.module+el8.1.0+3366+6dfb954c redhat-8.1 ppc64le
Affected pkg:rpm/redhat/python-nss-doc?arch=aarch64&distro=redhat-8.1 redhat python-nss-doc < 1.0.1-10.module+el8.1.0+3366+6dfb954c redhat-8.1 aarch64
Affected pkg:rpm/redhat/pki-tools?arch=x86_64&distro=redhat-8.3 redhat pki-tools < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 x86_64
Affected pkg:rpm/redhat/pki-tools?arch=s390x&distro=redhat-8.3 redhat pki-tools < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 s390x
Affected pkg:rpm/redhat/pki-tools?arch=ppc64le&distro=redhat-8.3 redhat pki-tools < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 ppc64le
Affected pkg:rpm/redhat/pki-tools?arch=aarch64&distro=redhat-8.3 redhat pki-tools < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 aarch64
Affected pkg:rpm/redhat/pki-symkey?arch=x86_64&distro=redhat-8.3 redhat pki-symkey < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 x86_64
Affected pkg:rpm/redhat/pki-symkey?arch=s390x&distro=redhat-8.3 redhat pki-symkey < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 s390x
Affected pkg:rpm/redhat/pki-symkey?arch=ppc64le&distro=redhat-8.3 redhat pki-symkey < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 ppc64le
Affected pkg:rpm/redhat/pki-symkey?arch=aarch64&distro=redhat-8.3 redhat pki-symkey < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 aarch64
Affected pkg:rpm/redhat/pki-servlet-engine?distro=redhat-8.3 redhat pki-servlet-engine < 9.0.30-1.module+el8.3.0+6730+8f9c6254 redhat-8.3
Affected pkg:rpm/redhat/pki-servlet-4.0-api?distro=redhat-8.3 redhat pki-servlet-4.0-api < 9.0.30-1.module+el8.3.0+6730+8f9c6254 redhat-8.3
Affected pkg:rpm/redhat/pki-server?distro=redhat-8.3 redhat pki-server < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3
Affected pkg:rpm/redhat/pki-kra?distro=redhat-8.3 redhat pki-kra < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3
Affected pkg:rpm/redhat/pki-ca?distro=redhat-8.3 redhat pki-ca < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3
Affected pkg:rpm/redhat/pki-base?distro=redhat-8.3 redhat pki-base < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3
Affected pkg:rpm/redhat/pki-base-java?distro=redhat-8.3 redhat pki-base-java < 10.9.4-1.module+el8.3.0+8058+d5cd4219 redhat-8.3
Affected pkg:rpm/redhat/ldapjdk?distro=redhat-8.3 redhat ldapjdk < 4.22.0-1.module+el8.3.0+6784+6e1e4c62 redhat-8.3
Affected pkg:rpm/redhat/ldapjdk-javadoc?distro=redhat-8.3 redhat ldapjdk-javadoc < 4.22.0-1.module+el8.3.0+6784+6e1e4c62 redhat-8.3
Affected pkg:rpm/redhat/jss?arch=x86_64&distro=redhat-8.3 redhat jss < 4.7.3-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 x86_64
Affected pkg:rpm/redhat/jss?arch=s390x&distro=redhat-8.3 redhat jss < 4.7.3-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 s390x
Affected pkg:rpm/redhat/jss?arch=ppc64le&distro=redhat-8.3 redhat jss < 4.7.3-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 ppc64le
Affected pkg:rpm/redhat/jss?arch=aarch64&distro=redhat-8.3 redhat jss < 4.7.3-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 aarch64
Affected pkg:rpm/redhat/jss-javadoc?arch=x86_64&distro=redhat-8.3 redhat jss-javadoc < 4.7.3-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 x86_64
Affected pkg:rpm/redhat/jss-javadoc?arch=s390x&distro=redhat-8.3 redhat jss-javadoc < 4.7.3-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 s390x
Affected pkg:rpm/redhat/jss-javadoc?arch=ppc64le&distro=redhat-8.3 redhat jss-javadoc < 4.7.3-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 ppc64le
Affected pkg:rpm/redhat/jss-javadoc?arch=aarch64&distro=redhat-8.3 redhat jss-javadoc < 4.7.3-1.module+el8.3.0+8058+d5cd4219 redhat-8.3 aarch64
Affected pkg:rpm/redhat/javassist?distro=redhat-8.1 redhat javassist < 3.18.1-8.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/javassist-javadoc?distro=redhat-8.1 redhat javassist-javadoc < 3.18.1-8.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/jakarta-commons-httpclient?distro=redhat-8.1 redhat jakarta-commons-httpclient < 3.1-28.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/jackson-module-jaxb-annotations?distro=redhat-8.1 redhat jackson-module-jaxb-annotations < 2.7.6-4.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/jackson-jaxrs-providers?distro=redhat-8.1 redhat jackson-jaxrs-providers < 2.9.9-1.module+el8.1.0+3832+9784644d redhat-8.1
Affected pkg:rpm/redhat/jackson-jaxrs-json-provider?distro=redhat-8.1 redhat jackson-jaxrs-json-provider < 2.9.9-1.module+el8.1.0+3832+9784644d redhat-8.1
Affected pkg:rpm/redhat/jackson-databind?distro=redhat-8.2 redhat jackson-databind < 2.10.0-1.module+el8.2.0+5059+3eb3af25 redhat-8.2
Affected pkg:rpm/redhat/jackson-core?distro=redhat-8.2 redhat jackson-core < 2.10.0-1.module+el8.2.0+5059+3eb3af25 redhat-8.2
Affected pkg:rpm/redhat/jackson-annotations?distro=redhat-8.2 redhat jackson-annotations < 2.10.0-1.module+el8.2.0+5059+3eb3af25 redhat-8.2
Affected pkg:rpm/redhat/glassfish-jaxb-txw2?distro=redhat-8.1 redhat glassfish-jaxb-txw2 < 2.2.11-11.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/glassfish-jaxb-runtime?distro=redhat-8.1 redhat glassfish-jaxb-runtime < 2.2.11-11.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/glassfish-jaxb-core?distro=redhat-8.1 redhat glassfish-jaxb-core < 2.2.11-11.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/glassfish-jaxb-api?distro=redhat-8.1 redhat glassfish-jaxb-api < 2.2.12-8.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/glassfish-fastinfoset?distro=redhat-8.1 redhat glassfish-fastinfoset < 1.2.13-9.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/bea-stax-api?distro=redhat-8.1 redhat bea-stax-api < 1.2.0-16.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/apache-commons-net?distro=redhat-8.3 redhat apache-commons-net < 3.6-3.module+el8.3.0+6805+72837426 redhat-8.3
Affected pkg:rpm/redhat/apache-commons-lang?distro=redhat-8.1 redhat apache-commons-lang < 2.6-21.module+el8.1.0+3366+6dfb954c redhat-8.1
Affected pkg:rpm/redhat/apache-commons-collections?distro=redhat-8.1 redhat apache-commons-collections < 3.2.2-10.module+el8.1.0+3366+6dfb954c redhat-8.1
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...