Friday, 21 June 2024

Multiple vulnerbilities in Redhat Enterprise Linux

Date:June 21,2024

Severity:Medium

Impacted system

  • Red Hat Enterprise Linux for x86_64
  • Red Hat Enterprise Linux for ARM 64
  • Red Hat Enterprise Linux for Power, little endian
  • Red Hat Enterprise Linux for IBM z Systems
  • Red Hat Enterprise Linux Fast Datapath (for IBM z Systems)
  • Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE)
  • Red Hat Enterprise Linux Fast Datapath
  • Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64)
  • Red Hat Service Interconnect
  • Red Hat OpenShift Serverless for IBM Z and LinuxONE
  • Red Hat Openshift Serverless
  • Red Hat Openshift Serverless for ARM
  • Red Hat OpenShift Serverless for IBM Power, little endian
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support
  • Red Hat Enterprise Linux for x86_64 - Extended Update Support
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
  • Red Hat Enterprise Linux Server - TUS
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian
  • Red Hat Enterprise Linux Server
  • Red Hat Enterprise Linux Desktop
  • Red Hat Enterprise Linux Workstation
  • Red Hat Enterprise Linux Server for ARM 64 - 4 years of updates
  • Red Hat Enterprise Linux Server for IBM z Systems - 4 years of updates
  • Red Hat Enterprise Linux Server - AUS
  • Red Hat CodeReady Linux Builder for ARM 64
  • Red Hat CodeReady Linux Builder for Power, little endian
  • Red Hat CodeReady Linux Builder for x86_64
  • Red Hat CodeReady Linux Builder for IBM z Systems
  • Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support
  • Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support
  • Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support
  • Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support
  • Red Hat Migration Toolkit for Applications

Summary

Redhat publish multiple vulnerabilities in their Redhat  enterprise linux and other system by which an attacker could allow remote code execution or take control of the affected system .

Description

RHSA-2024:4004 Important:thunderbird security update
RHSA-2024:4014 Important:ghostscript security update
RHSA-2024:4015 Important:thunderbird security update
RHSA-2024:4016 Important:thunderbird security update
RHSA-2024:4018 Important:thunderbird security update
RHSA-2024:4023 Important:Release of openshift-serverless-clients kn 1.33.0 security update & enhancements
RHSA-2024:4028 Moderate:Release of OpenShift Serverless 1.33.0 security update & enhancements
RHSA-2024:4034 Important:Red Hat Service Interconnect 1.5.4 Release security update (images)
RHSA-2024:4035 Important:ovn-2021 security update
RHSA-2024:4036 Important:thunderbird security update
RHSA-2024:4003 Important:thunderbird security update
RHSA-2024:4002 Important:thunderbird security update
RHSA-2024:4001 Important:thunderbird security update
RHSA-2024:4000 Important:ghostscript security update
RHSA-2024:3999 Important:ghostscript security update
RHSA-2024:3998 Moderate:curl security update
RHSA-2024:3989 Important:Migration Toolkit for Applications security and bug fix update

Solution

Please apply patches/fixes as recommended by vendor :

https://access.redhat.com/security/security-updates/security-advisories?q=&p=1&sort=portal_publication_date+desc&rows=10&portal_advisory_type=Security+Advisory&documentKind=Errata

Vendor Information

Redhat :

https://access.redhat.com/security/security-updates/security-advisories?q=&p=1&sort=portal_publication_date+desc&rows=10&portal_advisory_type=Security+Advisory&documentKind=Errata

NOTE : The information is provide is on “as is “ basis, without assurance of any kind