Oval Definition:oval:com.redhat.rhsa:def:20192280
Revision Date:2019-08-06Version:638
Title:RHSA-2019:2280: uriparser security update (Moderate)
Description:Uriparser is a URI parsing library, which is written in C and strictly complies with RFC 3986.

Security Fix(es):

  • uriparser: Out-of-bounds write via uriComposeQuery
  • or uriComposeQueryEx
  • function (CVE-2018-19198)

  • uriparser: Integer overflow via uriComposeQuery
  • or uriComposeQueryEx
  • function (CVE-2018-19199)

    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

    Additional Changes:

    For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.7 Release Notes linked from the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2018-19198
    CVE-2018-19199
    RHSA-2019:2280
    Platform(s):Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • uriparser is earlier than 0:0.7.5-10.el7
  • AND uriparser is signed with Red Hat redhatrelease2 key
  • uriparser-devel is earlier than 0:0.7.5-10.el7
  • AND uriparser-devel is signed with Red Hat redhatrelease2 key
  • BACK