Oval Definition:oval:com.redhat.rhsa:def:20192141
Revision Date:2019-08-06Version:637
Title:RHSA-2019:2141: kde-workspace security and bug fix update (Low)
Description:The K Desktop Environment (KDE) is a graphical desktop environment for the X Window System. The kdelibs packages include core libraries for the K Desktop Environment.

The kde-workspace packages consist of components providing the KDE graphical desktop environment.

Security Fix(es):

  • kde-workspace: Missing sanitization of notifications allows to leak client IP address via IMG element (CVE-2018-6790)

    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

    Additional Changes:

    For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.7 Release Notes linked from the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2018-6790
    RHSA-2019:2141
    Platform(s):Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • kcm_colors is earlier than 0:4.11.19-13.el7
  • AND kcm_colors is signed with Red Hat redhatrelease2 key
  • kde-style-oxygen is earlier than 0:4.11.19-13.el7
  • AND kde-style-oxygen is signed with Red Hat redhatrelease2 key
  • kde-workspace is earlier than 0:4.11.19-13.el7
  • AND kde-workspace is signed with Red Hat redhatrelease2 key
  • kde-workspace-devel is earlier than 0:4.11.19-13.el7
  • AND kde-workspace-devel is signed with Red Hat redhatrelease2 key
  • kde-workspace-ksplash-themes is earlier than 0:4.11.19-13.el7
  • AND kde-workspace-ksplash-themes is signed with Red Hat redhatrelease2 key
  • kde-workspace-libs is earlier than 0:4.11.19-13.el7
  • AND kde-workspace-libs is signed with Red Hat redhatrelease2 key
  • kdeclassic-cursor-theme is earlier than 0:4.11.19-13.el7
  • AND kdeclassic-cursor-theme is signed with Red Hat redhatrelease2 key
  • kgreeter-plugins is earlier than 0:4.11.19-13.el7
  • AND kgreeter-plugins is signed with Red Hat redhatrelease2 key
  • khotkeys is earlier than 0:4.11.19-13.el7
  • AND khotkeys is signed with Red Hat redhatrelease2 key
  • khotkeys-libs is earlier than 0:4.11.19-13.el7
  • AND khotkeys-libs is signed with Red Hat redhatrelease2 key
  • kinfocenter is earlier than 0:4.11.19-13.el7
  • AND kinfocenter is signed with Red Hat redhatrelease2 key
  • kmenuedit is earlier than 0:4.11.19-13.el7
  • AND kmenuedit is signed with Red Hat redhatrelease2 key
  • ksysguard is earlier than 0:4.11.19-13.el7
  • AND ksysguard is signed with Red Hat redhatrelease2 key
  • ksysguard-libs is earlier than 0:4.11.19-13.el7
  • AND ksysguard-libs is signed with Red Hat redhatrelease2 key
  • ksysguardd is earlier than 0:4.11.19-13.el7
  • AND ksysguardd is signed with Red Hat redhatrelease2 key
  • kwin is earlier than 0:4.11.19-13.el7
  • AND kwin is signed with Red Hat redhatrelease2 key
  • kwin-gles is earlier than 0:4.11.19-13.el7
  • AND kwin-gles is signed with Red Hat redhatrelease2 key
  • kwin-gles-libs is earlier than 0:4.11.19-13.el7
  • AND kwin-gles-libs is signed with Red Hat redhatrelease2 key
  • kwin-libs is earlier than 0:4.11.19-13.el7
  • AND kwin-libs is signed with Red Hat redhatrelease2 key
  • libkworkspace is earlier than 0:4.11.19-13.el7
  • AND libkworkspace is signed with Red Hat redhatrelease2 key
  • oxygen-cursor-themes is earlier than 0:4.11.19-13.el7
  • AND oxygen-cursor-themes is signed with Red Hat redhatrelease2 key
  • plasma-scriptengine-python is earlier than 0:4.11.19-13.el7
  • AND plasma-scriptengine-python is signed with Red Hat redhatrelease2 key
  • plasma-scriptengine-ruby is earlier than 0:4.11.19-13.el7
  • AND plasma-scriptengine-ruby is signed with Red Hat redhatrelease2 key
  • virtuoso-opensource is earlier than 1:6.1.6-7.el7
  • AND virtuoso-opensource is signed with Red Hat redhatrelease2 key
  • virtuoso-opensource-utils is earlier than 1:6.1.6-7.el7
  • AND virtuoso-opensource-utils is signed with Red Hat redhatrelease2 key
  • kmag is earlier than 0:4.10.5-4.el7
  • AND kmag is signed with Red Hat redhatrelease2 key
  • kde-settings is earlier than 0:19-23.9.el7
  • AND kde-settings is signed with Red Hat redhatrelease2 key
  • kde-settings-ksplash is earlier than 0:19-23.9.el7
  • AND kde-settings-ksplash is signed with Red Hat redhatrelease2 key
  • kde-settings-minimal is earlier than 0:19-23.9.el7
  • AND kde-settings-minimal is signed with Red Hat redhatrelease2 key
  • kde-settings-plasma is earlier than 0:19-23.9.el7
  • AND kde-settings-plasma is signed with Red Hat redhatrelease2 key
  • kde-settings-pulseaudio is earlier than 0:19-23.9.el7
  • AND kde-settings-pulseaudio is signed with Red Hat redhatrelease2 key
  • qt-settings is earlier than 0:19-23.9.el7
  • AND qt-settings is signed with Red Hat redhatrelease2 key
  • kdelibs is earlier than 6:4.14.8-10.el7
  • AND kdelibs is signed with Red Hat redhatrelease2 key
  • kdelibs-apidocs is earlier than 6:4.14.8-10.el7
  • AND kdelibs-apidocs is signed with Red Hat redhatrelease2 key
  • kdelibs-common is earlier than 6:4.14.8-10.el7
  • AND kdelibs-common is signed with Red Hat redhatrelease2 key
  • kdelibs-devel is earlier than 6:4.14.8-10.el7
  • AND kdelibs-devel is signed with Red Hat redhatrelease2 key
  • kdelibs-ktexteditor is earlier than 6:4.14.8-10.el7
  • AND kdelibs-ktexteditor is signed with Red Hat redhatrelease2 key
  • BACK