Oval Definition:oval:com.redhat.rhsa:def:20193553
Revision Date:2019-11-05Version:640
Title:RHSA-2019:3553: GNOME security, bug fix, and enhancement update (Low)
Description:GNOME is the default desktop environment of Red Hat Enterprise Linux.

Security Fix(es):

  • evince: uninitialized memory use in function tiff_document_render() and tiff_document_get_thumbnail() (CVE-2019-11459)

  • gvfs: improper authorization in daemon/gvfsdaemon.c in gvfsd (CVE-2019-12795)

    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

    Additional Changes:

    For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.1 Release Notes linked from the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2019-11070
    CVE-2019-11459
    CVE-2019-12795
    CVE-2019-3820
    CVE-2019-6237
    CVE-2019-6251
    CVE-2019-8506
    CVE-2019-8518
    CVE-2019-8523
    CVE-2019-8524
    CVE-2019-8535
    CVE-2019-8536
    CVE-2019-8544
    CVE-2019-8551
    CVE-2019-8558
    CVE-2019-8559
    CVE-2019-8563
    CVE-2019-8571
    CVE-2019-8583
    CVE-2019-8584
    CVE-2019-8586
    CVE-2019-8587
    CVE-2019-8594
    CVE-2019-8595
    CVE-2019-8596
    CVE-2019-8597
    CVE-2019-8601
    CVE-2019-8607
    CVE-2019-8608
    CVE-2019-8609
    CVE-2019-8610
    CVE-2019-8611
    CVE-2019-8615
    CVE-2019-8619
    CVE-2019-8622
    CVE-2019-8623
    CVE-2019-8666
    CVE-2019-8671
    CVE-2019-8672
    CVE-2019-8673
    CVE-2019-8676
    CVE-2019-8677
    CVE-2019-8679
    CVE-2019-8681
    CVE-2019-8686
    CVE-2019-8687
    CVE-2019-8689
    CVE-2019-8690
    CVE-2019-8726
    CVE-2019-8735
    CVE-2019-8768
    RHSA-2019:3553
    Platform(s):Red Hat Enterprise Linux 8
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 8 is installed
  • OR Red Hat CoreOS 4 is installed
  • AND
  • wayland-protocols-devel is earlier than 0:1.17-1.el8
  • AND wayland-protocols-devel is signed with Red Hat redhatrelease2 key
  • SDL is earlier than 0:1.2.15-35.el8
  • AND SDL is signed with Red Hat redhatrelease2 key
  • SDL-devel is earlier than 0:1.2.15-35.el8
  • AND SDL-devel is signed with Red Hat redhatrelease2 key
  • gnome-remote-desktop is earlier than 0:0.1.6-5.el8
  • AND gnome-remote-desktop is signed with Red Hat redhatrelease2 key
  • file-roller is earlier than 0:3.28.1-2.el8
  • AND file-roller is signed with Red Hat redhatrelease2 key
  • libpurple is earlier than 0:2.13.0-5.el8
  • AND libpurple is signed with Red Hat redhatrelease2 key
  • libpurple-devel is earlier than 0:2.13.0-5.el8
  • AND libpurple-devel is signed with Red Hat redhatrelease2 key
  • pidgin is earlier than 0:2.13.0-5.el8
  • AND pidgin is signed with Red Hat redhatrelease2 key
  • pidgin-devel is earlier than 0:2.13.0-5.el8
  • AND pidgin-devel is signed with Red Hat redhatrelease2 key
  • gnome-desktop3 is earlier than 0:3.32.2-1.el8
  • AND gnome-desktop3 is signed with Red Hat redhatrelease2 key
  • gnome-desktop3-devel is earlier than 0:3.32.2-1.el8
  • AND gnome-desktop3-devel is signed with Red Hat redhatrelease2 key
  • evince is earlier than 0:3.28.4-3.el8
  • AND evince is signed with Red Hat redhatrelease2 key
  • evince-browser-plugin is earlier than 0:3.28.4-3.el8
  • AND evince-browser-plugin is signed with Red Hat redhatrelease2 key
  • evince-libs is earlier than 0:3.28.4-3.el8
  • AND evince-libs is signed with Red Hat redhatrelease2 key
  • evince-nautilus is earlier than 0:3.28.4-3.el8
  • AND evince-nautilus is signed with Red Hat redhatrelease2 key
  • accountsservice is earlier than 0:0.6.50-7.el8
  • AND accountsservice is signed with Red Hat redhatrelease2 key
  • accountsservice-devel is earlier than 0:0.6.50-7.el8
  • AND accountsservice-devel is signed with Red Hat redhatrelease2 key
  • accountsservice-libs is earlier than 0:0.6.50-7.el8
  • AND accountsservice-libs is signed with Red Hat redhatrelease2 key
  • gnome-tweaks is earlier than 0:3.28.1-6.el8
  • AND gnome-tweaks is signed with Red Hat redhatrelease2 key
  • nautilus is earlier than 0:3.28.1-10.el8
  • AND nautilus is signed with Red Hat redhatrelease2 key
  • nautilus-devel is earlier than 0:3.28.1-10.el8
  • AND nautilus-devel is signed with Red Hat redhatrelease2 key
  • nautilus-extensions is earlier than 0:3.28.1-10.el8
  • AND nautilus-extensions is signed with Red Hat redhatrelease2 key
  • baobab is earlier than 0:3.28.0-2.el8
  • AND baobab is signed with Red Hat redhatrelease2 key
  • gnome-settings-daemon is earlier than 0:3.32.0-4.el8
  • AND gnome-settings-daemon is signed with Red Hat redhatrelease2 key
  • webkit2gtk3 is earlier than 0:2.24.3-1.el8
  • AND webkit2gtk3 is signed with Red Hat redhatrelease2 key
  • webkit2gtk3-devel is earlier than 0:2.24.3-1.el8
  • AND webkit2gtk3-devel is signed with Red Hat redhatrelease2 key
  • webkit2gtk3-jsc is earlier than 0:2.24.3-1.el8
  • AND webkit2gtk3-jsc is signed with Red Hat redhatrelease2 key
  • webkit2gtk3-jsc-devel is earlier than 0:2.24.3-1.el8
  • AND webkit2gtk3-jsc-devel is signed with Red Hat redhatrelease2 key
  • webkit2gtk3-plugin-process-gtk2 is earlier than 0:2.24.3-1.el8
  • AND webkit2gtk3-plugin-process-gtk2 is signed with Red Hat redhatrelease2 key
  • gnome-software is earlier than 0:3.30.6-2.el8
  • AND gnome-software is signed with Red Hat redhatrelease2 key
  • gnome-software-editor is earlier than 0:3.30.6-2.el8
  • AND gnome-software-editor is signed with Red Hat redhatrelease2 key
  • chrome-gnome-shell is earlier than 0:10.1-6.el8
  • AND chrome-gnome-shell is signed with Red Hat redhatrelease2 key
  • gsettings-desktop-schemas is earlier than 0:3.32.0-3.el8
  • AND gsettings-desktop-schemas is signed with Red Hat redhatrelease2 key
  • gsettings-desktop-schemas-devel is earlier than 0:3.32.0-3.el8
  • AND gsettings-desktop-schemas-devel is signed with Red Hat redhatrelease2 key
  • gnome-classic-session is earlier than 0:3.32.1-10.el8
  • AND gnome-classic-session is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-apps-menu is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-apps-menu is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-auto-move-windows is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-auto-move-windows is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-common is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-common is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-dash-to-dock is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-dash-to-dock is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-desktop-icons is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-desktop-icons is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-disable-screenshield is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-disable-screenshield is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-drive-menu is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-drive-menu is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-horizontal-workspaces is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-horizontal-workspaces is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-launch-new-instance is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-launch-new-instance is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-native-window-placement is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-native-window-placement is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-no-hot-corner is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-no-hot-corner is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-panel-favorites is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-panel-favorites is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-places-menu is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-places-menu is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-screenshot-window-sizer is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-screenshot-window-sizer is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-systemMonitor is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-systemMonitor is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-top-icons is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-top-icons is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-updates-dialog is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-updates-dialog is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-user-theme is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-user-theme is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-window-grouper is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-window-grouper is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-window-list is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-window-list is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-windowsNavigator is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-windowsNavigator is signed with Red Hat redhatrelease2 key
  • gnome-shell-extension-workspace-indicator is earlier than 0:3.32.1-10.el8
  • AND gnome-shell-extension-workspace-indicator is signed with Red Hat redhatrelease2 key
  • gdm is earlier than 1:3.28.3-22.el8
  • AND gdm is signed with Red Hat redhatrelease2 key
  • gnome-control-center is earlier than 0:3.28.2-5.el8
  • AND gnome-control-center is signed with Red Hat redhatrelease2 key
  • gnome-control-center-filesystem is earlier than 0:3.28.2-5.el8
  • AND gnome-control-center-filesystem is signed with Red Hat redhatrelease2 key
  • appstream-data is earlier than 0:8-20190805.el8
  • AND appstream-data is signed with Red Hat redhatrelease2 key
  • gvfs is earlier than 0:1.36.2-6.el8
  • AND gvfs is signed with Red Hat redhatrelease2 key
  • gvfs-afc is earlier than 0:1.36.2-6.el8
  • AND gvfs-afc is signed with Red Hat redhatrelease2 key
  • gvfs-afp is earlier than 0:1.36.2-6.el8
  • AND gvfs-afp is signed with Red Hat redhatrelease2 key
  • gvfs-archive is earlier than 0:1.36.2-6.el8
  • AND gvfs-archive is signed with Red Hat redhatrelease2 key
  • gvfs-client is earlier than 0:1.36.2-6.el8
  • AND gvfs-client is signed with Red Hat redhatrelease2 key
  • gvfs-devel is earlier than 0:1.36.2-6.el8
  • AND gvfs-devel is signed with Red Hat redhatrelease2 key
  • gvfs-fuse is earlier than 0:1.36.2-6.el8
  • AND gvfs-fuse is signed with Red Hat redhatrelease2 key
  • gvfs-goa is earlier than 0:1.36.2-6.el8
  • AND gvfs-goa is signed with Red Hat redhatrelease2 key
  • gvfs-gphoto2 is earlier than 0:1.36.2-6.el8
  • AND gvfs-gphoto2 is signed with Red Hat redhatrelease2 key
  • gvfs-mtp is earlier than 0:1.36.2-6.el8
  • AND gvfs-mtp is signed with Red Hat redhatrelease2 key
  • gvfs-smb is earlier than 0:1.36.2-6.el8
  • AND gvfs-smb is signed with Red Hat redhatrelease2 key
  • gnome-shell is earlier than 0:3.32.2-9.el8
  • AND gnome-shell is signed with Red Hat redhatrelease2 key
  • gtk-update-icon-cache is earlier than 0:3.22.30-4.el8
  • AND gtk-update-icon-cache is signed with Red Hat redhatrelease2 key
  • gtk3 is earlier than 0:3.22.30-4.el8
  • AND gtk3 is signed with Red Hat redhatrelease2 key
  • gtk3-devel is earlier than 0:3.22.30-4.el8
  • AND gtk3-devel is signed with Red Hat redhatrelease2 key
  • gtk3-immodule-xim is earlier than 0:3.22.30-4.el8
  • AND gtk3-immodule-xim is signed with Red Hat redhatrelease2 key
  • mutter is earlier than 0:3.32.2-10.el8
  • AND mutter is signed with Red Hat redhatrelease2 key
  • mutter-devel is earlier than 0:3.32.2-10.el8
  • AND mutter-devel is signed with Red Hat redhatrelease2 key
  • pango is earlier than 0:1.42.4-6.el8
  • AND pango is signed with Red Hat redhatrelease2 key
  • pango-devel is earlier than 0:1.42.4-6.el8
  • AND pango-devel is signed with Red Hat redhatrelease2 key
  • gdk-pixbuf2 is earlier than 0:2.36.12-5.el8
  • AND gdk-pixbuf2 is signed with Red Hat redhatrelease2 key
  • gdk-pixbuf2-devel is earlier than 0:2.36.12-5.el8
  • AND gdk-pixbuf2-devel is signed with Red Hat redhatrelease2 key
  • gdk-pixbuf2-modules is earlier than 0:2.36.12-5.el8
  • AND gdk-pixbuf2-modules is signed with Red Hat redhatrelease2 key
  • gdk-pixbuf2-xlib is earlier than 0:2.36.12-5.el8
  • AND gdk-pixbuf2-xlib is signed with Red Hat redhatrelease2 key
  • gdk-pixbuf2-xlib-devel is earlier than 0:2.36.12-5.el8
  • AND gdk-pixbuf2-xlib-devel is signed with Red Hat redhatrelease2 key
  • mozjs60 is earlier than 0:60.9.0-3.el8
  • AND mozjs60 is signed with Red Hat redhatrelease2 key
  • mozjs60-devel is earlier than 0:60.9.0-3.el8
  • AND mozjs60-devel is signed with Red Hat redhatrelease2 key
  • gjs is earlier than 0:1.56.2-3.el8
  • AND gjs is signed with Red Hat redhatrelease2 key
  • gjs-devel is earlier than 0:1.56.2-3.el8
  • AND gjs-devel is signed with Red Hat redhatrelease2 key
  • plymouth is earlier than 0:0.9.3-15.el8
  • AND plymouth is signed with Red Hat redhatrelease2 key
  • plymouth-core-libs is earlier than 0:0.9.3-15.el8
  • AND plymouth-core-libs is signed with Red Hat redhatrelease2 key
  • plymouth-graphics-libs is earlier than 0:0.9.3-15.el8
  • AND plymouth-graphics-libs is signed with Red Hat redhatrelease2 key
  • plymouth-plugin-fade-throbber is earlier than 0:0.9.3-15.el8
  • AND plymouth-plugin-fade-throbber is signed with Red Hat redhatrelease2 key
  • plymouth-plugin-label is earlier than 0:0.9.3-15.el8
  • AND plymouth-plugin-label is signed with Red Hat redhatrelease2 key
  • plymouth-plugin-script is earlier than 0:0.9.3-15.el8
  • AND plymouth-plugin-script is signed with Red Hat redhatrelease2 key
  • plymouth-plugin-space-flares is earlier than 0:0.9.3-15.el8
  • AND plymouth-plugin-space-flares is signed with Red Hat redhatrelease2 key
  • plymouth-plugin-throbgress is earlier than 0:0.9.3-15.el8
  • AND plymouth-plugin-throbgress is signed with Red Hat redhatrelease2 key
  • plymouth-plugin-two-step is earlier than 0:0.9.3-15.el8
  • AND plymouth-plugin-two-step is signed with Red Hat redhatrelease2 key
  • plymouth-scripts is earlier than 0:0.9.3-15.el8
  • AND plymouth-scripts is signed with Red Hat redhatrelease2 key
  • plymouth-system-theme is earlier than 0:0.9.3-15.el8
  • AND plymouth-system-theme is signed with Red Hat redhatrelease2 key
  • plymouth-theme-charge is earlier than 0:0.9.3-15.el8
  • AND plymouth-theme-charge is signed with Red Hat redhatrelease2 key
  • plymouth-theme-fade-in is earlier than 0:0.9.3-15.el8
  • AND plymouth-theme-fade-in is signed with Red Hat redhatrelease2 key
  • plymouth-theme-script is earlier than 0:0.9.3-15.el8
  • AND plymouth-theme-script is signed with Red Hat redhatrelease2 key
  • plymouth-theme-solar is earlier than 0:0.9.3-15.el8
  • AND plymouth-theme-solar is signed with Red Hat redhatrelease2 key
  • plymouth-theme-spinfinity is earlier than 0:0.9.3-15.el8
  • AND plymouth-theme-spinfinity is signed with Red Hat redhatrelease2 key
  • plymouth-theme-spinner is earlier than 0:0.9.3-15.el8
  • AND plymouth-theme-spinner is signed with Red Hat redhatrelease2 key
  • BACK