Vulnerability Database
Blog
FAQ
Docs
RHSA-2018:3157
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2018:3157
Import Source
https://security.access.redhat.com/data/osv/RHSA-2018:3157.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2018:3157
Related
CVE-2018-1000007
CVE-2018-1000120
CVE-2018-1000121
CVE-2018-1000122
CVE-2018-1000301
Published
2024-09-13T16:54:07Z
Modified
2024-09-13T16:54:07Z
Severity
6.5 (Medium)
CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L
CVSS Calculator
Summary
Red Hat Security Advisory: curl and nss-pem security and bug fix update
Details
References
https://access.redhat.com/errata/RHSA-2018:3157
https://access.redhat.com/security/updates/classification/#moderate
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/7.6_release_notes/index
https://bugzilla.redhat.com/show_bug.cgi?id=1510247
https://bugzilla.redhat.com/show_bug.cgi?id=1537125
https://bugzilla.redhat.com/show_bug.cgi?id=1542256
https://bugzilla.redhat.com/show_bug.cgi?id=1552628
https://bugzilla.redhat.com/show_bug.cgi?id=1552631
https://bugzilla.redhat.com/show_bug.cgi?id=1553398
https://bugzilla.redhat.com/show_bug.cgi?id=1575536
https://bugzilla.redhat.com/show_bug.cgi?id=1610998
https://access.redhat.com/security/data/csaf/v2/advisories/2018/rhsa-2018_3157.json
https://access.redhat.com/security/cve/CVE-2018-1000007
https://www.cve.org/CVERecord?id=CVE-2018-1000007
https://nvd.nist.gov/vuln/detail/CVE-2018-1000007
https://curl.haxx.se/docs/adv_2018-b3bf.html
https://access.redhat.com/security/cve/CVE-2018-1000120
https://www.cve.org/CVERecord?id=CVE-2018-1000120
https://nvd.nist.gov/vuln/detail/CVE-2018-1000120
https://curl.haxx.se/docs/adv_2018-9cd6.html
https://access.redhat.com/security/cve/CVE-2018-1000121
https://www.cve.org/CVERecord?id=CVE-2018-1000121
https://nvd.nist.gov/vuln/detail/CVE-2018-1000121
https://curl.haxx.se/docs/adv_2018-97a2.html
https://access.redhat.com/security/cve/CVE-2018-1000122
https://www.cve.org/CVERecord?id=CVE-2018-1000122
https://nvd.nist.gov/vuln/detail/CVE-2018-1000122
https://curl.haxx.se/docs/adv_2018-b047.html
https://access.redhat.com/security/cve/CVE-2018-1000301
https://www.cve.org/CVERecord?id=CVE-2018-1000301
https://nvd.nist.gov/vuln/detail/CVE-2018-1000301
https://curl.haxx.se/docs/adv_2018-b138.html
Affected packages
Red Hat:enterprise_linux:7::client
/
curl
Package
Name
curl
Purl
pkg:rpm/redhat/curl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::client
/
curl-debuginfo
Package
Name
curl-debuginfo
Purl
pkg:rpm/redhat/curl-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::client
/
libcurl
Package
Name
libcurl
Purl
pkg:rpm/redhat/libcurl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::client
/
libcurl-devel
Package
Name
libcurl-devel
Purl
pkg:rpm/redhat/libcurl-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::client
/
nss-pem
Package
Name
nss-pem
Purl
pkg:rpm/redhat/nss-pem
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.3-5.el7
Red Hat:enterprise_linux:7::client
/
nss-pem-debuginfo
Package
Name
nss-pem-debuginfo
Purl
pkg:rpm/redhat/nss-pem-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.3-5.el7
Red Hat:enterprise_linux:7::computenode
/
curl
Package
Name
curl
Purl
pkg:rpm/redhat/curl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::computenode
/
curl-debuginfo
Package
Name
curl-debuginfo
Purl
pkg:rpm/redhat/curl-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::computenode
/
libcurl
Package
Name
libcurl
Purl
pkg:rpm/redhat/libcurl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::computenode
/
libcurl-devel
Package
Name
libcurl-devel
Purl
pkg:rpm/redhat/libcurl-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::computenode
/
nss-pem
Package
Name
nss-pem
Purl
pkg:rpm/redhat/nss-pem
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.3-5.el7
Red Hat:enterprise_linux:7::computenode
/
nss-pem-debuginfo
Package
Name
nss-pem-debuginfo
Purl
pkg:rpm/redhat/nss-pem-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.3-5.el7
Red Hat:enterprise_linux:7::server
/
curl
Package
Name
curl
Purl
pkg:rpm/redhat/curl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::server
/
curl-debuginfo
Package
Name
curl-debuginfo
Purl
pkg:rpm/redhat/curl-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::server
/
libcurl
Package
Name
libcurl
Purl
pkg:rpm/redhat/libcurl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::server
/
libcurl-devel
Package
Name
libcurl-devel
Purl
pkg:rpm/redhat/libcurl-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::server
/
nss-pem
Package
Name
nss-pem
Purl
pkg:rpm/redhat/nss-pem
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.3-5.el7
Red Hat:enterprise_linux:7::server
/
nss-pem-debuginfo
Package
Name
nss-pem-debuginfo
Purl
pkg:rpm/redhat/nss-pem-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.3-5.el7
Red Hat:enterprise_linux:7::workstation
/
curl
Package
Name
curl
Purl
pkg:rpm/redhat/curl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::workstation
/
curl-debuginfo
Package
Name
curl-debuginfo
Purl
pkg:rpm/redhat/curl-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::workstation
/
libcurl
Package
Name
libcurl
Purl
pkg:rpm/redhat/libcurl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::workstation
/
libcurl-devel
Package
Name
libcurl-devel
Purl
pkg:rpm/redhat/libcurl-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.29.0-51.el7
Red Hat:enterprise_linux:7::workstation
/
nss-pem
Package
Name
nss-pem
Purl
pkg:rpm/redhat/nss-pem
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.3-5.el7
Red Hat:enterprise_linux:7::workstation
/
nss-pem-debuginfo
Package
Name
nss-pem-debuginfo
Purl
pkg:rpm/redhat/nss-pem-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.3-5.el7
RHSA-2018:3157 - OSV