Vulnerability Database
Blog
FAQ
Docs
RHSA-2024:0137
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2024:0137
Import Source
https://security.access.redhat.com/data/osv/RHSA-2024:0137.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2024:0137
Related
CVE-2020-17049
CVE-2023-5455
Published
2024-09-16T16:08:57Z
Modified
2024-11-23T03:30:32Z
Severity
7.2 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: idm:DL1 security update
Details
References
https://access.redhat.com/errata/RHSA-2024:0137
https://access.redhat.com/security/updates/classification/#moderate
https://bugzilla.redhat.com/show_bug.cgi?id=2025721
https://bugzilla.redhat.com/show_bug.cgi?id=2242828
https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_0137.json
https://access.redhat.com/security/cve/CVE-2020-17049
https://www.cve.org/CVERecord?id=CVE-2020-17049
https://nvd.nist.gov/vuln/detail/CVE-2020-17049
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2020-17049
https://access.redhat.com/security/cve/CVE-2023-5455
https://www.cve.org/CVERecord?id=CVE-2023-5455
https://nvd.nist.gov/vuln/detail/CVE-2023-5455
https://www.freeipa.org/release-notes/4-10-3.html
https://www.freeipa.org/release-notes/4-11-1.html
https://www.freeipa.org/release-notes/4-6-10.html
https://www.freeipa.org/release-notes/4-9-14.html
Affected packages
Red Hat:rhel_eus:8.8::appstream
/
bind-dyndb-ldap
Package
Name
bind-dyndb-ldap
Purl
pkg:rpm/redhat/bind-dyndb-ldap
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:11.6-4.module+el8.8.0+17351+9a3fb056
Red Hat:rhel_eus:8.8::appstream
/
bind-dyndb-ldap-debuginfo
Package
Name
bind-dyndb-ldap-debuginfo
Purl
pkg:rpm/redhat/bind-dyndb-ldap-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:11.6-4.module+el8.8.0+17351+9a3fb056
Red Hat:rhel_eus:8.8::appstream
/
bind-dyndb-ldap-debugsource
Package
Name
bind-dyndb-ldap-debugsource
Purl
pkg:rpm/redhat/bind-dyndb-ldap-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:11.6-4.module+el8.8.0+17351+9a3fb056
Red Hat:rhel_eus:8.8::appstream
/
custodia
Package
Name
custodia
Purl
pkg:rpm/redhat/custodia
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.6.0-3.module+el8.1.0+4098+f286395e
Red Hat:rhel_eus:8.8::appstream
/
ipa
Package
Name
ipa
Purl
pkg:rpm/redhat/ipa
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-client
Package
Name
ipa-client
Purl
pkg:rpm/redhat/ipa-client
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-client-common
Package
Name
ipa-client-common
Purl
pkg:rpm/redhat/ipa-client-common
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-client-debuginfo
Package
Name
ipa-client-debuginfo
Purl
pkg:rpm/redhat/ipa-client-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-client-epn
Package
Name
ipa-client-epn
Purl
pkg:rpm/redhat/ipa-client-epn
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-client-samba
Package
Name
ipa-client-samba
Purl
pkg:rpm/redhat/ipa-client-samba
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-common
Package
Name
ipa-common
Purl
pkg:rpm/redhat/ipa-common
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-debuginfo
Package
Name
ipa-debuginfo
Purl
pkg:rpm/redhat/ipa-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-debugsource
Package
Name
ipa-debugsource
Purl
pkg:rpm/redhat/ipa-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-healthcheck
Package
Name
ipa-healthcheck
Purl
pkg:rpm/redhat/ipa-healthcheck
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.12-1.module+el8.8.0+17582+6bf5bf91
Red Hat:rhel_eus:8.8::appstream
/
ipa-healthcheck-core
Package
Name
ipa-healthcheck-core
Purl
pkg:rpm/redhat/ipa-healthcheck-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.12-1.module+el8.8.0+17582+6bf5bf91
Red Hat:rhel_eus:8.8::appstream
/
ipa-python-compat
Package
Name
ipa-python-compat
Purl
pkg:rpm/redhat/ipa-python-compat
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-selinux
Package
Name
ipa-selinux
Purl
pkg:rpm/redhat/ipa-selinux
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-server
Package
Name
ipa-server
Purl
pkg:rpm/redhat/ipa-server
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-server-common
Package
Name
ipa-server-common
Purl
pkg:rpm/redhat/ipa-server-common
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-server-debuginfo
Package
Name
ipa-server-debuginfo
Purl
pkg:rpm/redhat/ipa-server-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-server-dns
Package
Name
ipa-server-dns
Purl
pkg:rpm/redhat/ipa-server-dns
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-server-trust-ad
Package
Name
ipa-server-trust-ad
Purl
pkg:rpm/redhat/ipa-server-trust-ad
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
ipa-server-trust-ad-debuginfo
Package
Name
ipa-server-trust-ad-debuginfo
Purl
pkg:rpm/redhat/ipa-server-trust-ad-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
opendnssec
Package
Name
opendnssec
Purl
pkg:rpm/redhat/opendnssec
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.1.7-1.module+el8.4.0+9007+5084bdd8
Red Hat:rhel_eus:8.8::appstream
/
opendnssec-debuginfo
Package
Name
opendnssec-debuginfo
Purl
pkg:rpm/redhat/opendnssec-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.1.7-1.module+el8.4.0+9007+5084bdd8
Red Hat:rhel_eus:8.8::appstream
/
opendnssec-debugsource
Package
Name
opendnssec-debugsource
Purl
pkg:rpm/redhat/opendnssec-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.1.7-1.module+el8.4.0+9007+5084bdd8
Red Hat:rhel_eus:8.8::appstream
/
python-jwcrypto
Package
Name
python-jwcrypto
Purl
pkg:rpm/redhat/python-jwcrypto
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.5.0-1.1.module+el8.7.0+15842+306cbc83
Red Hat:rhel_eus:8.8::appstream
/
python-kdcproxy
Package
Name
python-kdcproxy
Purl
pkg:rpm/redhat/python-kdcproxy
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.4-5.module+el8.2.0+4691+a05b2456
Red Hat:rhel_eus:8.8::appstream
/
python-qrcode
Package
Name
python-qrcode
Purl
pkg:rpm/redhat/python-qrcode
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:5.1-12.module+el8.1.0+4098+f286395e
Red Hat:rhel_eus:8.8::appstream
/
python-yubico
Package
Name
python-yubico
Purl
pkg:rpm/redhat/python-yubico
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.3.2-9.1.module+el8.7.0+15691+2b2c1dd5
Red Hat:rhel_eus:8.8::appstream
/
python3-custodia
Package
Name
python3-custodia
Purl
pkg:rpm/redhat/python3-custodia
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.6.0-3.module+el8.1.0+4098+f286395e
Red Hat:rhel_eus:8.8::appstream
/
python3-ipaclient
Package
Name
python3-ipaclient
Purl
pkg:rpm/redhat/python3-ipaclient
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
python3-ipalib
Package
Name
python3-ipalib
Purl
pkg:rpm/redhat/python3-ipalib
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
python3-ipaserver
Package
Name
python3-ipaserver
Purl
pkg:rpm/redhat/python3-ipaserver
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
python3-ipatests
Package
Name
python3-ipatests
Purl
pkg:rpm/redhat/python3-ipatests
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.11-9.module+el8.8.0+20825+52dd1628
Red Hat:rhel_eus:8.8::appstream
/
python3-jwcrypto
Package
Name
python3-jwcrypto
Purl
pkg:rpm/redhat/python3-jwcrypto
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.5.0-1.1.module+el8.7.0+15842+306cbc83
Red Hat:rhel_eus:8.8::appstream
/
python3-kdcproxy
Package
Name
python3-kdcproxy
Purl
pkg:rpm/redhat/python3-kdcproxy
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.4-5.module+el8.2.0+4691+a05b2456
Red Hat:rhel_eus:8.8::appstream
/
python3-pyusb
Package
Name
python3-pyusb
Purl
pkg:rpm/redhat/python3-pyusb
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.0-9.1.module+el8.7.0+15691+2b2c1dd5
Red Hat:rhel_eus:8.8::appstream
/
python3-qrcode
Package
Name
python3-qrcode
Purl
pkg:rpm/redhat/python3-qrcode
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:5.1-12.module+el8.1.0+4098+f286395e
Red Hat:rhel_eus:8.8::appstream
/
python3-qrcode-core
Package
Name
python3-qrcode-core
Purl
pkg:rpm/redhat/python3-qrcode-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:5.1-12.module+el8.1.0+4098+f286395e
Red Hat:rhel_eus:8.8::appstream
/
python3-yubico
Package
Name
python3-yubico
Purl
pkg:rpm/redhat/python3-yubico
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.3.2-9.1.module+el8.7.0+15691+2b2c1dd5
Red Hat:rhel_eus:8.8::appstream
/
pyusb
Package
Name
pyusb
Purl
pkg:rpm/redhat/pyusb
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.0-9.1.module+el8.7.0+15691+2b2c1dd5
Red Hat:rhel_eus:8.8::appstream
/
slapi-nis
Package
Name
slapi-nis
Purl
pkg:rpm/redhat/slapi-nis
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.60.0-4.module+el8.8.0+20635+330e3683
Red Hat:rhel_eus:8.8::appstream
/
slapi-nis-debuginfo
Package
Name
slapi-nis-debuginfo
Purl
pkg:rpm/redhat/slapi-nis-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.60.0-4.module+el8.8.0+20635+330e3683
Red Hat:rhel_eus:8.8::appstream
/
slapi-nis-debugsource
Package
Name
slapi-nis-debugsource
Purl
pkg:rpm/redhat/slapi-nis-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.60.0-4.module+el8.8.0+20635+330e3683
Red Hat:rhel_eus:8.8::appstream
/
softhsm
Package
Name
softhsm
Purl
pkg:rpm/redhat/softhsm
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.0-5.module+el8.4.0+10227+076cd560
Red Hat:rhel_eus:8.8::appstream
/
softhsm-debuginfo
Package
Name
softhsm-debuginfo
Purl
pkg:rpm/redhat/softhsm-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.0-5.module+el8.4.0+10227+076cd560
Red Hat:rhel_eus:8.8::appstream
/
softhsm-debugsource
Package
Name
softhsm-debugsource
Purl
pkg:rpm/redhat/softhsm-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.0-5.module+el8.4.0+10227+076cd560
Red Hat:rhel_eus:8.8::appstream
/
softhsm-devel
Package
Name
softhsm-devel
Purl
pkg:rpm/redhat/softhsm-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.0-5.module+el8.4.0+10227+076cd560
RHSA-2024:0137 - OSV