Oval Definition:oval:com.redhat.rhsa:def:20203869
Revision Date:2020-09-29Version:638
Title:RHSA-2020:3869: pcp security, bug fix, and enhancement update (Low)
Description:Performance Co-Pilot (PCP) is a suite of tools, services, and libraries for acquisition, archiving, and analysis of system-level performance measurements. Its light-weight distributed architecture makes it particularly well-suited to centralized analysis of complex systems.

Security Fix(es):

  • pcp: Local privilege escalation in pcp spec file %post section (CVE-2019-3695)

  • pcp: Local privilege escalation in pcp spec file through migrate_tempdirs (CVE-2019-3696)

    For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

    Additional Changes:

    For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.9 Release Notes linked from the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2019-3695
    CVE-2019-3696
    RHSA-2020:3869
    Platform(s):Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • pcp is earlier than 0:4.3.2-12.el7
  • AND pcp is signed with Red Hat redhatrelease2 key
  • pcp-conf is earlier than 0:4.3.2-12.el7
  • AND pcp-conf is signed with Red Hat redhatrelease2 key
  • pcp-devel is earlier than 0:4.3.2-12.el7
  • AND pcp-devel is signed with Red Hat redhatrelease2 key
  • pcp-doc is earlier than 0:4.3.2-12.el7
  • AND pcp-doc is signed with Red Hat redhatrelease2 key
  • pcp-export-pcp2elasticsearch is earlier than 0:4.3.2-12.el7
  • AND pcp-export-pcp2elasticsearch is signed with Red Hat redhatrelease2 key
  • pcp-export-pcp2graphite is earlier than 0:4.3.2-12.el7
  • AND pcp-export-pcp2graphite is signed with Red Hat redhatrelease2 key
  • pcp-export-pcp2influxdb is earlier than 0:4.3.2-12.el7
  • AND pcp-export-pcp2influxdb is signed with Red Hat redhatrelease2 key
  • pcp-export-pcp2json is earlier than 0:4.3.2-12.el7
  • AND pcp-export-pcp2json is signed with Red Hat redhatrelease2 key
  • pcp-export-pcp2spark is earlier than 0:4.3.2-12.el7
  • AND pcp-export-pcp2spark is signed with Red Hat redhatrelease2 key
  • pcp-export-pcp2xml is earlier than 0:4.3.2-12.el7
  • AND pcp-export-pcp2xml is signed with Red Hat redhatrelease2 key
  • pcp-export-pcp2zabbix is earlier than 0:4.3.2-12.el7
  • AND pcp-export-pcp2zabbix is signed with Red Hat redhatrelease2 key
  • pcp-export-zabbix-agent is earlier than 0:4.3.2-12.el7
  • AND pcp-export-zabbix-agent is signed with Red Hat redhatrelease2 key
  • pcp-gui is earlier than 0:4.3.2-12.el7
  • AND pcp-gui is signed with Red Hat redhatrelease2 key
  • pcp-import-collectl2pcp is earlier than 0:4.3.2-12.el7
  • AND pcp-import-collectl2pcp is signed with Red Hat redhatrelease2 key
  • pcp-import-ganglia2pcp is earlier than 0:4.3.2-12.el7
  • AND pcp-import-ganglia2pcp is signed with Red Hat redhatrelease2 key
  • pcp-import-iostat2pcp is earlier than 0:4.3.2-12.el7
  • AND pcp-import-iostat2pcp is signed with Red Hat redhatrelease2 key
  • pcp-import-mrtg2pcp is earlier than 0:4.3.2-12.el7
  • AND pcp-import-mrtg2pcp is signed with Red Hat redhatrelease2 key
  • pcp-import-sar2pcp is earlier than 0:4.3.2-12.el7
  • AND pcp-import-sar2pcp is signed with Red Hat redhatrelease2 key
  • pcp-libs is earlier than 0:4.3.2-12.el7
  • AND pcp-libs is signed with Red Hat redhatrelease2 key
  • pcp-libs-devel is earlier than 0:4.3.2-12.el7
  • AND pcp-libs-devel is signed with Red Hat redhatrelease2 key
  • pcp-manager is earlier than 0:4.3.2-12.el7
  • AND pcp-manager is signed with Red Hat redhatrelease2 key
  • pcp-pmda-activemq is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-activemq is signed with Red Hat redhatrelease2 key
  • pcp-pmda-apache is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-apache is signed with Red Hat redhatrelease2 key
  • pcp-pmda-bash is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-bash is signed with Red Hat redhatrelease2 key
  • pcp-pmda-bcc is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-bcc is signed with Red Hat redhatrelease2 key
  • pcp-pmda-bind2 is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-bind2 is signed with Red Hat redhatrelease2 key
  • pcp-pmda-bonding is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-bonding is signed with Red Hat redhatrelease2 key
  • pcp-pmda-cifs is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-cifs is signed with Red Hat redhatrelease2 key
  • pcp-pmda-cisco is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-cisco is signed with Red Hat redhatrelease2 key
  • pcp-pmda-dbping is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-dbping is signed with Red Hat redhatrelease2 key
  • pcp-pmda-dm is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-dm is signed with Red Hat redhatrelease2 key
  • pcp-pmda-docker is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-docker is signed with Red Hat redhatrelease2 key
  • pcp-pmda-ds389 is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-ds389 is signed with Red Hat redhatrelease2 key
  • pcp-pmda-ds389log is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-ds389log is signed with Red Hat redhatrelease2 key
  • pcp-pmda-elasticsearch is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-elasticsearch is signed with Red Hat redhatrelease2 key
  • pcp-pmda-gfs2 is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-gfs2 is signed with Red Hat redhatrelease2 key
  • pcp-pmda-gluster is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-gluster is signed with Red Hat redhatrelease2 key
  • pcp-pmda-gpfs is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-gpfs is signed with Red Hat redhatrelease2 key
  • pcp-pmda-gpsd is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-gpsd is signed with Red Hat redhatrelease2 key
  • pcp-pmda-haproxy is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-haproxy is signed with Red Hat redhatrelease2 key
  • pcp-pmda-infiniband is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-infiniband is signed with Red Hat redhatrelease2 key
  • pcp-pmda-json is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-json is signed with Red Hat redhatrelease2 key
  • pcp-pmda-libvirt is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-libvirt is signed with Red Hat redhatrelease2 key
  • pcp-pmda-lio is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-lio is signed with Red Hat redhatrelease2 key
  • pcp-pmda-lmsensors is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-lmsensors is signed with Red Hat redhatrelease2 key
  • pcp-pmda-logger is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-logger is signed with Red Hat redhatrelease2 key
  • pcp-pmda-lustre is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-lustre is signed with Red Hat redhatrelease2 key
  • pcp-pmda-lustrecomm is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-lustrecomm is signed with Red Hat redhatrelease2 key
  • pcp-pmda-mailq is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-mailq is signed with Red Hat redhatrelease2 key
  • pcp-pmda-memcache is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-memcache is signed with Red Hat redhatrelease2 key
  • pcp-pmda-mic is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-mic is signed with Red Hat redhatrelease2 key
  • pcp-pmda-mounts is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-mounts is signed with Red Hat redhatrelease2 key
  • pcp-pmda-mysql is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-mysql is signed with Red Hat redhatrelease2 key
  • pcp-pmda-named is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-named is signed with Red Hat redhatrelease2 key
  • pcp-pmda-netfilter is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-netfilter is signed with Red Hat redhatrelease2 key
  • pcp-pmda-news is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-news is signed with Red Hat redhatrelease2 key
  • pcp-pmda-nfsclient is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-nfsclient is signed with Red Hat redhatrelease2 key
  • pcp-pmda-nginx is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-nginx is signed with Red Hat redhatrelease2 key
  • pcp-pmda-nvidia-gpu is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-nvidia-gpu is signed with Red Hat redhatrelease2 key
  • pcp-pmda-oracle is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-oracle is signed with Red Hat redhatrelease2 key
  • pcp-pmda-pdns is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-pdns is signed with Red Hat redhatrelease2 key
  • pcp-pmda-perfevent is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-perfevent is signed with Red Hat redhatrelease2 key
  • pcp-pmda-postfix is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-postfix is signed with Red Hat redhatrelease2 key
  • pcp-pmda-postgresql is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-postgresql is signed with Red Hat redhatrelease2 key
  • pcp-pmda-prometheus is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-prometheus is signed with Red Hat redhatrelease2 key
  • pcp-pmda-redis is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-redis is signed with Red Hat redhatrelease2 key
  • pcp-pmda-roomtemp is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-roomtemp is signed with Red Hat redhatrelease2 key
  • pcp-pmda-rpm is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-rpm is signed with Red Hat redhatrelease2 key
  • pcp-pmda-rsyslog is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-rsyslog is signed with Red Hat redhatrelease2 key
  • pcp-pmda-samba is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-samba is signed with Red Hat redhatrelease2 key
  • pcp-pmda-sendmail is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-sendmail is signed with Red Hat redhatrelease2 key
  • pcp-pmda-shping is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-shping is signed with Red Hat redhatrelease2 key
  • pcp-pmda-slurm is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-slurm is signed with Red Hat redhatrelease2 key
  • pcp-pmda-smart is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-smart is signed with Red Hat redhatrelease2 key
  • pcp-pmda-snmp is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-snmp is signed with Red Hat redhatrelease2 key
  • pcp-pmda-summary is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-summary is signed with Red Hat redhatrelease2 key
  • pcp-pmda-systemd is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-systemd is signed with Red Hat redhatrelease2 key
  • pcp-pmda-trace is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-trace is signed with Red Hat redhatrelease2 key
  • pcp-pmda-unbound is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-unbound is signed with Red Hat redhatrelease2 key
  • pcp-pmda-vmware is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-vmware is signed with Red Hat redhatrelease2 key
  • pcp-pmda-weblog is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-weblog is signed with Red Hat redhatrelease2 key
  • pcp-pmda-zimbra is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-zimbra is signed with Red Hat redhatrelease2 key
  • pcp-pmda-zswap is earlier than 0:4.3.2-12.el7
  • AND pcp-pmda-zswap is signed with Red Hat redhatrelease2 key
  • pcp-selinux is earlier than 0:4.3.2-12.el7
  • AND pcp-selinux is signed with Red Hat redhatrelease2 key
  • pcp-system-tools is earlier than 0:4.3.2-12.el7
  • AND pcp-system-tools is signed with Red Hat redhatrelease2 key
  • pcp-testsuite is earlier than 0:4.3.2-12.el7
  • AND pcp-testsuite is signed with Red Hat redhatrelease2 key
  • pcp-webapi is earlier than 0:4.3.2-12.el7
  • AND pcp-webapi is signed with Red Hat redhatrelease2 key
  • pcp-webapp-blinkenlights is earlier than 0:4.3.2-12.el7
  • AND pcp-webapp-blinkenlights is signed with Red Hat redhatrelease2 key
  • pcp-webapp-grafana is earlier than 0:4.3.2-12.el7
  • AND pcp-webapp-grafana is signed with Red Hat redhatrelease2 key
  • pcp-webapp-graphite is earlier than 0:4.3.2-12.el7
  • AND pcp-webapp-graphite is signed with Red Hat redhatrelease2 key
  • pcp-webapp-vector is earlier than 0:4.3.2-12.el7
  • AND pcp-webapp-vector is signed with Red Hat redhatrelease2 key
  • pcp-webjs is earlier than 0:4.3.2-12.el7
  • AND pcp-webjs is signed with Red Hat redhatrelease2 key
  • pcp-zeroconf is earlier than 0:4.3.2-12.el7
  • AND pcp-zeroconf is signed with Red Hat redhatrelease2 key
  • perl-PCP-LogImport is earlier than 0:4.3.2-12.el7
  • AND perl-PCP-LogImport is signed with Red Hat redhatrelease2 key
  • perl-PCP-LogSummary is earlier than 0:4.3.2-12.el7
  • AND perl-PCP-LogSummary is signed with Red Hat redhatrelease2 key
  • perl-PCP-MMV is earlier than 0:4.3.2-12.el7
  • AND perl-PCP-MMV is signed with Red Hat redhatrelease2 key
  • perl-PCP-PMDA is earlier than 0:4.3.2-12.el7
  • AND perl-PCP-PMDA is signed with Red Hat redhatrelease2 key
  • python-pcp is earlier than 0:4.3.2-12.el7
  • AND python-pcp is signed with Red Hat redhatrelease2 key
  • BACK