Oval Definition:oval:com.redhat.rhsa:def:20200378
Revision Date:2020-02-04Version:638
Title:RHSA-2020:0378: ipa security and bug fix update (Important)
Description:Red Hat Identity Management (IdM) is a centralized authentication, identity management, and authorization solution for both traditional and cloud-based enterprise environments.

Security Fix(es):

  • ipa: Denial of service in IPA server due to wrong use of ber_scanf() (CVE-2019-14867)

  • ipa: Batch API logging user passwords to /var/log/httpd/error_log (CVE-2019-10195)

    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

    Bug Fix(es):

  • Issue with adding multiple RHEL 7 IPA replica to RHEL 6 IPA master (BZ#1770728)

  • User incorrectly added to negative cache when backend is reconnecting to IPA service / timed out: error code 32 'No such object' (BZ#1773953)

  • After upgrade AD Trust Agents were removed from LDAP (BZ#1781153)
  • Family:unixClass:patch
    Status:Reference(s):CVE-2019-10195
    CVE-2019-14867
    RHSA-2020:0378
    Platform(s):Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • ipa-client is earlier than 0:4.6.5-11.el7_7.4
  • AND ipa-client is signed with Red Hat redhatrelease2 key
  • ipa-client-common is earlier than 0:4.6.5-11.el7_7.4
  • AND ipa-client-common is signed with Red Hat redhatrelease2 key
  • ipa-common is earlier than 0:4.6.5-11.el7_7.4
  • AND ipa-common is signed with Red Hat redhatrelease2 key
  • ipa-python-compat is earlier than 0:4.6.5-11.el7_7.4
  • AND ipa-python-compat is signed with Red Hat redhatrelease2 key
  • ipa-server is earlier than 0:4.6.5-11.el7_7.4
  • AND ipa-server is signed with Red Hat redhatrelease2 key
  • ipa-server-common is earlier than 0:4.6.5-11.el7_7.4
  • AND ipa-server-common is signed with Red Hat redhatrelease2 key
  • ipa-server-dns is earlier than 0:4.6.5-11.el7_7.4
  • AND ipa-server-dns is signed with Red Hat redhatrelease2 key
  • ipa-server-trust-ad is earlier than 0:4.6.5-11.el7_7.4
  • AND ipa-server-trust-ad is signed with Red Hat redhatrelease2 key
  • python2-ipaclient is earlier than 0:4.6.5-11.el7_7.4
  • AND python2-ipaclient is signed with Red Hat redhatrelease2 key
  • python2-ipalib is earlier than 0:4.6.5-11.el7_7.4
  • AND python2-ipalib is signed with Red Hat redhatrelease2 key
  • python2-ipaserver is earlier than 0:4.6.5-11.el7_7.4
  • AND python2-ipaserver is signed with Red Hat redhatrelease2 key
  • BACK