Red Hat Updates
3372Warning Date
Severity Level
Warning Number
Target Sector
28 January, 2020
● High
2020-852
All
Description:
Red Hat has released security updates to address multiple vulnerabilities in the following products:
- Red Hat Enterprise Linux Server 7 x86_64
- sqlite
- Red Hat Enterprise Linux for x86_64 - Extended Update Support 7.7 x86_64
- sqlite
- Red Hat Enterprise Linux Server - AUS 7.7 x86_64
- sqlite
- Red Hat Enterprise Linux Workstation 7 x86_64
- sqlite
- Red Hat Enterprise Linux Desktop 7 x86_64
- sqlite
- Red Hat Enterprise Linux for IBM z Systems 7 s390x
- sqlite
- Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 7.7 s390x
- sqlite
- Red Hat Enterprise Linux for Power, big endian 7 ppc64
- sqlite
- Red Hat Enterprise Linux for Power, big endian - Extended Update Support 7.7 ppc64
- sqlite
- Red Hat Enterprise Linux for Scientific Computing 7 x86_64
- sqlite
- Red Hat Enterprise Linux EUS Compute Node 7.7 x86_64
- sqlite
- Red Hat Enterprise Linux for Power, little endian 7 ppc64le
- sqlite
- Red Hat Enterprise Linux for Power, little endian - Extended Update Support 7.7 ppc64le
- sqlite
- Red Hat Enterprise Linux Server - TUS 7.7 x86_64
- sqlite
- Red Hat Enterprise Linux Server (for IBM Power LE) - Update Services for SAP Solutions 7.7 ppc64le
- sqlite
- Red Hat Enterprise Linux Server - Update Services for SAP Solutions 7.7 x86_64
- sqlite
- Red Hat Enterprise Linux Server (for IBM Power LE) - Update Services for SAP Solutions 8.0 ppc64le
- python-reportlab
- sqlite
- nss
- libarchive
- Red Hat Enterprise Linux Server - Update Services for SAP Solutions 8.0 x86_64
- python-reportlab
- sqlite
- nss
- libarchive
- Red Hat JBoss Core Services 1 for RHEL 7 x86_64
- Apache HTTP Server 2.4.37 SP1
- Red Hat JBoss Core Services 1 for RHEL 6 x86_64
- Apache HTTP Server 2.4.37 SP1
- Red Hat JBoss Core Services 1 for RHEL 6 i386
- Apache HTTP Server 2.4.37 SP1
- Red Hat JBoss Core Services Text-Only Advisories x86_64
- Apache HTTP Server 2.4.37 SP1
Threats:
Attacker could exploit these vulnerabilities by executing arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to review Red Hat security advisory and apply the necessary updates:
- https://access.redhat.com/errata/RHSA-2020:0227
- https://access.redhat.com/errata/RHSA-2020:0230
- https://access.redhat.com/errata/RHSA-2020:0229
- https://access.redhat.com/errata/RHSA-2020:0243
- https://access.redhat.com/errata/RHSA-2020:0246
- https://access.redhat.com/errata/RHSA-2020:0246
- https://access.redhat.com/errata/RHSA-2020:0251