Red Hat Updates
2495Warning Date
Severity Level
Warning Number
Target Sector
9 August, 2020
● High
2020-1612
All
Description:
Red Hat has released security updates to address vulnerabilities in the following products:
- Thunderbird
- Red Hat Enterprise Linux for Power, little endian
- Red Hat Enterprise Linux for x86_64 - Extended Update Support
- Red Hat Enterprise Linux Server
- Red Hat Enterprise Linux Server – TUS
- Red Hat Enterprise Linux Server - Update Services for SAP Solutions
- Red Hat Enterprise Linux Workstation
- CloudForms 5.0.7
- Red Hat CloudForms
- Red Hat OpenShift Service Mesh
- OpenShift Service Mesh 3scale-istio-adapter-rhel8-container
- Red Hat OpenShift Service Mesh
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Denial of service attack (DoS)
- Execute arbitrary code
- Escalation of privilege
- Commands injection
Best practice and Recommendations:
The CERT team encourages users to review Red Hat security advisory and apply the necessary updates:
- https://access.redhat.com/errata/RHSA-2020:3341
- https://access.redhat.com/errata/RHSA-2020:3342
- https://access.redhat.com/errata/RHSA-2020:3343
- https://access.redhat.com/errata/RHSA-2020:3344
- https://access.redhat.com/errata/RHSA-2020:3345
- https://access.redhat.com/errata/RHSA-2020:3358
- https://access.redhat.com/errata/RHSA-2020:3369
- https://access.redhat.com/errata/RHSA-2020:3372