Vulnerability Database
Blog
FAQ
Docs
RHSA-2019:3583
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2019:3583
Import Source
https://security.access.redhat.com/data/osv/RHSA-2019:3583.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2019:3583
Related
CVE-2018-20534
CVE-2019-3817
Published
2024-09-16T02:19:43Z
Modified
2024-11-22T13:19:41Z
Severity
7.5 (High)
CVSS_V3 - CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: yum security, bug fix, and enhancement update
Details
References
https://access.redhat.com/errata/RHSA-2019:3583
https://access.redhat.com/security/updates/classification/#moderate
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.1_release_notes/
https://bugzilla.redhat.com/show_bug.cgi?id=1650266
https://bugzilla.redhat.com/show_bug.cgi?id=1655605
https://bugzilla.redhat.com/show_bug.cgi?id=1656584
https://bugzilla.redhat.com/show_bug.cgi?id=1656801
https://bugzilla.redhat.com/show_bug.cgi?id=1657703
https://bugzilla.redhat.com/show_bug.cgi?id=1657851
https://bugzilla.redhat.com/show_bug.cgi?id=1658579
https://bugzilla.redhat.com/show_bug.cgi?id=1663533
https://bugzilla.redhat.com/show_bug.cgi?id=1665538
https://bugzilla.redhat.com/show_bug.cgi?id=1666325
https://bugzilla.redhat.com/show_bug.cgi?id=1667898
https://bugzilla.redhat.com/show_bug.cgi?id=1668005
https://bugzilla.redhat.com/show_bug.cgi?id=1670835
https://bugzilla.redhat.com/show_bug.cgi?id=1671731
https://bugzilla.redhat.com/show_bug.cgi?id=1671839
https://bugzilla.redhat.com/show_bug.cgi?id=1672649
https://bugzilla.redhat.com/show_bug.cgi?id=1673278
https://bugzilla.redhat.com/show_bug.cgi?id=1673289
https://bugzilla.redhat.com/show_bug.cgi?id=1673902
https://bugzilla.redhat.com/show_bug.cgi?id=1673913
https://bugzilla.redhat.com/show_bug.cgi?id=1673920
https://bugzilla.redhat.com/show_bug.cgi?id=1674562
https://bugzilla.redhat.com/show_bug.cgi?id=1676418
https://bugzilla.redhat.com/show_bug.cgi?id=1677199
https://bugzilla.redhat.com/show_bug.cgi?id=1677583
https://bugzilla.redhat.com/show_bug.cgi?id=1677640
https://bugzilla.redhat.com/show_bug.cgi?id=1678593
https://bugzilla.redhat.com/show_bug.cgi?id=1678596
https://bugzilla.redhat.com/show_bug.cgi?id=1678598
https://bugzilla.redhat.com/show_bug.cgi?id=1678689
https://bugzilla.redhat.com/show_bug.cgi?id=1679008
https://bugzilla.redhat.com/show_bug.cgi?id=1679509
https://bugzilla.redhat.com/show_bug.cgi?id=1684270
https://bugzilla.redhat.com/show_bug.cgi?id=1686645
https://bugzilla.redhat.com/show_bug.cgi?id=1686779
https://bugzilla.redhat.com/show_bug.cgi?id=1688537
https://bugzilla.redhat.com/show_bug.cgi?id=1688823
https://bugzilla.redhat.com/show_bug.cgi?id=1689331
https://bugzilla.redhat.com/show_bug.cgi?id=1689931
https://bugzilla.redhat.com/show_bug.cgi?id=1690288
https://bugzilla.redhat.com/show_bug.cgi?id=1690289
https://bugzilla.redhat.com/show_bug.cgi?id=1690299
https://bugzilla.redhat.com/show_bug.cgi?id=1690414
https://bugzilla.redhat.com/show_bug.cgi?id=1691315
https://bugzilla.redhat.com/show_bug.cgi?id=1692402
https://bugzilla.redhat.com/show_bug.cgi?id=1694019
https://bugzilla.redhat.com/show_bug.cgi?id=1694709
https://bugzilla.redhat.com/show_bug.cgi?id=1695720
https://bugzilla.redhat.com/show_bug.cgi?id=1697946
https://bugzilla.redhat.com/show_bug.cgi?id=1699348
https://bugzilla.redhat.com/show_bug.cgi?id=1700250
https://bugzilla.redhat.com/show_bug.cgi?id=1700741
https://bugzilla.redhat.com/show_bug.cgi?id=1702283
https://bugzilla.redhat.com/show_bug.cgi?id=1702678
https://bugzilla.redhat.com/show_bug.cgi?id=1702690
https://bugzilla.redhat.com/show_bug.cgi?id=1703609
https://bugzilla.redhat.com/show_bug.cgi?id=1706215
https://bugzilla.redhat.com/show_bug.cgi?id=1707453
https://bugzilla.redhat.com/show_bug.cgi?id=1709798
https://bugzilla.redhat.com/show_bug.cgi?id=1712055
https://bugzilla.redhat.com/show_bug.cgi?id=1712460
https://bugzilla.redhat.com/show_bug.cgi?id=1713220
https://bugzilla.redhat.com/show_bug.cgi?id=1714265
https://bugzilla.redhat.com/show_bug.cgi?id=1714788
https://bugzilla.redhat.com/show_bug.cgi?id=1716313
https://bugzilla.redhat.com/show_bug.cgi?id=1717429
https://bugzilla.redhat.com/show_bug.cgi?id=1719830
https://bugzilla.redhat.com/show_bug.cgi?id=1722493
https://bugzilla.redhat.com/show_bug.cgi?id=1724564
https://bugzilla.redhat.com/show_bug.cgi?id=1724668
https://bugzilla.redhat.com/show_bug.cgi?id=1725213
https://bugzilla.redhat.com/show_bug.cgi?id=1726141
https://bugzilla.redhat.com/show_bug.cgi?id=1730224
https://bugzilla.redhat.com/show_bug.cgi?id=1737328
https://bugzilla.redhat.com/show_bug.cgi?id=1744979
https://bugzilla.redhat.com/show_bug.cgi?id=1746349
https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_3583.json
https://access.redhat.com/security/cve/CVE-2018-20534
https://www.cve.org/CVERecord?id=CVE-2018-20534
https://nvd.nist.gov/vuln/detail/CVE-2018-20534
https://access.redhat.com/security/cve/CVE-2019-3817
https://www.cve.org/CVERecord?id=CVE-2019-3817
https://nvd.nist.gov/vuln/detail/CVE-2019-3817
Affected packages
Red Hat:enterprise_linux:8::appstream
/
createrepo_c
Package
Name
createrepo_c
Purl
pkg:rpm/redhat/createrepo_c
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.11.0-3.el8
Red Hat:enterprise_linux:8::appstream
/
createrepo_c-debuginfo
Package
Name
createrepo_c-debuginfo
Purl
pkg:rpm/redhat/createrepo_c-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.11.0-3.el8
Red Hat:enterprise_linux:8::appstream
/
createrepo_c-debugsource
Package
Name
createrepo_c-debugsource
Purl
pkg:rpm/redhat/createrepo_c-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.11.0-3.el8
Red Hat:enterprise_linux:8::appstream
/
createrepo_c-devel
Package
Name
createrepo_c-devel
Purl
pkg:rpm/redhat/createrepo_c-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.11.0-3.el8
Red Hat:enterprise_linux:8::appstream
/
createrepo_c-libs
Package
Name
createrepo_c-libs
Purl
pkg:rpm/redhat/createrepo_c-libs
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.11.0-3.el8
Red Hat:enterprise_linux:8::appstream
/
createrepo_c-libs-debuginfo
Package
Name
createrepo_c-libs-debuginfo
Purl
pkg:rpm/redhat/createrepo_c-libs-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.11.0-3.el8
Red Hat:enterprise_linux:8::appstream
/
python3-createrepo_c
Package
Name
python3-createrepo_c
Purl
pkg:rpm/redhat/python3-createrepo_c
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.11.0-3.el8
Red Hat:enterprise_linux:8::appstream
/
python3-createrepo_c-debuginfo
Package
Name
python3-createrepo_c-debuginfo
Purl
pkg:rpm/redhat/python3-createrepo_c-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.11.0-3.el8
Red Hat:enterprise_linux:8::baseos
/
dnf
Package
Name
dnf
Purl
pkg:rpm/redhat/dnf
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.2.7-6.el8
Red Hat:enterprise_linux:8::baseos
/
dnf-automatic
Package
Name
dnf-automatic
Purl
pkg:rpm/redhat/dnf-automatic
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.2.7-6.el8
Red Hat:enterprise_linux:8::baseos
/
dnf-data
Package
Name
dnf-data
Purl
pkg:rpm/redhat/dnf-data
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.2.7-6.el8
Red Hat:enterprise_linux:8::baseos
/
dnf-plugins-core
Package
Name
dnf-plugins-core
Purl
pkg:rpm/redhat/dnf-plugins-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.0.8-3.el8
Red Hat:enterprise_linux:8::baseos
/
libcomps
Package
Name
libcomps
Purl
pkg:rpm/redhat/libcomps
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.1.11-2.el8
Red Hat:enterprise_linux:8::baseos
/
libcomps-debuginfo
Package
Name
libcomps-debuginfo
Purl
pkg:rpm/redhat/libcomps-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.1.11-2.el8
Red Hat:enterprise_linux:8::baseos
/
libcomps-debugsource
Package
Name
libcomps-debugsource
Purl
pkg:rpm/redhat/libcomps-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.1.11-2.el8
Red Hat:enterprise_linux:8::baseos
/
libcomps-devel
Package
Name
libcomps-devel
Purl
pkg:rpm/redhat/libcomps-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.1.11-2.el8
Red Hat:enterprise_linux:8::baseos
/
libdnf
Package
Name
libdnf
Purl
pkg:rpm/redhat/libdnf
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.35.1-8.el8
Red Hat:enterprise_linux:8::baseos
/
libdnf-debuginfo
Package
Name
libdnf-debuginfo
Purl
pkg:rpm/redhat/libdnf-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.35.1-8.el8
Red Hat:enterprise_linux:8::baseos
/
libdnf-debugsource
Package
Name
libdnf-debugsource
Purl
pkg:rpm/redhat/libdnf-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.35.1-8.el8
Red Hat:enterprise_linux:8::baseos
/
librepo
Package
Name
librepo
Purl
pkg:rpm/redhat/librepo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.10.3-3.el8
Red Hat:enterprise_linux:8::baseos
/
librepo-debuginfo
Package
Name
librepo-debuginfo
Purl
pkg:rpm/redhat/librepo-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.10.3-3.el8
Red Hat:enterprise_linux:8::baseos
/
librepo-debugsource
Package
Name
librepo-debugsource
Purl
pkg:rpm/redhat/librepo-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.10.3-3.el8
Red Hat:enterprise_linux:8::baseos
/
librhsm
Package
Name
librhsm
Purl
pkg:rpm/redhat/librhsm
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.0.3-3.el8
Red Hat:enterprise_linux:8::baseos
/
librhsm-debuginfo
Package
Name
librhsm-debuginfo
Purl
pkg:rpm/redhat/librhsm-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.0.3-3.el8
Red Hat:enterprise_linux:8::baseos
/
librhsm-debugsource
Package
Name
librhsm-debugsource
Purl
pkg:rpm/redhat/librhsm-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.0.3-3.el8
Red Hat:enterprise_linux:8::baseos
/
libsolv
Package
Name
libsolv
Purl
pkg:rpm/redhat/libsolv
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.7.4-3.el8
Red Hat:enterprise_linux:8::baseos
/
libsolv-debuginfo
Package
Name
libsolv-debuginfo
Purl
pkg:rpm/redhat/libsolv-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.7.4-3.el8
Red Hat:enterprise_linux:8::baseos
/
libsolv-debugsource
Package
Name
libsolv-debugsource
Purl
pkg:rpm/redhat/libsolv-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.7.4-3.el8
Red Hat:enterprise_linux:8::baseos
/
libsolv-demo-debuginfo
Package
Name
libsolv-demo-debuginfo
Purl
pkg:rpm/redhat/libsolv-demo-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.7.4-3.el8
Red Hat:enterprise_linux:8::baseos
/
libsolv-tools-debuginfo
Package
Name
libsolv-tools-debuginfo
Purl
pkg:rpm/redhat/libsolv-tools-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.7.4-3.el8
Red Hat:enterprise_linux:8::baseos
/
microdnf
Package
Name
microdnf
Purl
pkg:rpm/redhat/microdnf
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.1-3.el8
Red Hat:enterprise_linux:8::baseos
/
microdnf-debuginfo
Package
Name
microdnf-debuginfo
Purl
pkg:rpm/redhat/microdnf-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.1-3.el8
Red Hat:enterprise_linux:8::baseos
/
microdnf-debugsource
Package
Name
microdnf-debugsource
Purl
pkg:rpm/redhat/microdnf-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.1-3.el8
Red Hat:enterprise_linux:8::baseos
/
perl-solv-debuginfo
Package
Name
perl-solv-debuginfo
Purl
pkg:rpm/redhat/perl-solv-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.7.4-3.el8
Red Hat:enterprise_linux:8::baseos
/
python3-dnf
Package
Name
python3-dnf
Purl
pkg:rpm/redhat/python3-dnf
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.2.7-6.el8
Red Hat:enterprise_linux:8::baseos
/
python3-dnf-plugin-versionlock
Package
Name
python3-dnf-plugin-versionlock
Purl
pkg:rpm/redhat/python3-dnf-plugin-versionlock
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.0.8-3.el8
Red Hat:enterprise_linux:8::baseos
/
python3-dnf-plugins-core
Package
Name
python3-dnf-plugins-core
Purl
pkg:rpm/redhat/python3-dnf-plugins-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.0.8-3.el8
Red Hat:enterprise_linux:8::baseos
/
python3-hawkey
Package
Name
python3-hawkey
Purl
pkg:rpm/redhat/python3-hawkey
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.35.1-8.el8
Red Hat:enterprise_linux:8::baseos
/
python3-hawkey-debuginfo
Package
Name
python3-hawkey-debuginfo
Purl
pkg:rpm/redhat/python3-hawkey-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.35.1-8.el8
Red Hat:enterprise_linux:8::baseos
/
python3-libcomps
Package
Name
python3-libcomps
Purl
pkg:rpm/redhat/python3-libcomps
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.1.11-2.el8
Red Hat:enterprise_linux:8::baseos
/
python3-libcomps-debuginfo
Package
Name
python3-libcomps-debuginfo
Purl
pkg:rpm/redhat/python3-libcomps-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.1.11-2.el8
Red Hat:enterprise_linux:8::baseos
/
python3-libdnf
Package
Name
python3-libdnf
Purl
pkg:rpm/redhat/python3-libdnf
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.35.1-8.el8
Red Hat:enterprise_linux:8::baseos
/
python3-libdnf-debuginfo
Package
Name
python3-libdnf-debuginfo
Purl
pkg:rpm/redhat/python3-libdnf-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.35.1-8.el8
Red Hat:enterprise_linux:8::baseos
/
python3-librepo
Package
Name
python3-librepo
Purl
pkg:rpm/redhat/python3-librepo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.10.3-3.el8
Red Hat:enterprise_linux:8::baseos
/
python3-librepo-debuginfo
Package
Name
python3-librepo-debuginfo
Purl
pkg:rpm/redhat/python3-librepo-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.10.3-3.el8
Red Hat:enterprise_linux:8::baseos
/
python3-solv-debuginfo
Package
Name
python3-solv-debuginfo
Purl
pkg:rpm/redhat/python3-solv-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.7.4-3.el8
Red Hat:enterprise_linux:8::baseos
/
ruby-solv-debuginfo
Package
Name
ruby-solv-debuginfo
Purl
pkg:rpm/redhat/ruby-solv-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.7.4-3.el8
Red Hat:enterprise_linux:8::baseos
/
yum
Package
Name
yum
Purl
pkg:rpm/redhat/yum
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.2.7-6.el8
Red Hat:enterprise_linux:8::baseos
/
yum-utils
Package
Name
yum-utils
Purl
pkg:rpm/redhat/yum-utils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.0.8-3.el8
RHSA-2019:3583 - OSV