Moderate: java-21-ibm-semeru-certified-jdk bug fix and enhancement update
Moderate: git security update
Git is a distributed revision control system with a decentralized architecture. As opposed to centralized version control systems with a client-server model, Git ensures that each working copy of a Git repository is an exact copy with complete revision history. This not only allows the user to work on and contribute to projects without the need to have permission to push the changes to their official repositories, but also makes it possible for the user to work with no network connection.Security Fix(es): git: The sideband payload is passed unfiltered to the terminal in git (CVE-2024-52005) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Moderate: ghostscript security update
Moderate: glibc security update
Moderate: java-1.8.0-openjdk security update
Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies.<br>Security Fix(es):<br><li> tomcat: RCE due to TOCTOU issue in JSP compilation (CVE-2024-50379)</li> <li> tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT (CVE-2025-24813)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Expat is a C library for parsing XML documents.Security Fix(es): libexpat: expat: DoS via XMLResumeParser (CVE-2024-50602) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Moderate: python3.11-urllib3 security update
Moderate: python3.11-urllib3 security update
Moderate: gcc security update
Moderate: tbb security update
Moderate: traceroute security update
Moderate: java-17-openjdk security update for RHEL 8.6, 8.8, 8.10, 9.4 and 9.5
Moderate: java-17-openjdk security update for RHEL 9.0 and 9.2
Moderate: java-21-openjdk security update for RHEL 8.10, 9.4 and 9.5
Libreswan is an implementation of IPsec and IKE for Linux. IPsec is the Internet Protocol Security and uses strong cryptography to provide both authentication and encryption services. These services allow you to build secure tunnels through untrusted networks such as virtual private network (VPN).<br>Security Fix(es):<br><li> libreswan: Invalid IKEv1 Quick Mode ID causes restart (CVE-2023-38711)</li> <li> libreswan: Invalid IKEv2 REKEY proposal causes restart (CVE-2023-38710)</li> <li> libreswan: Invalid IKEv1 repeat IKE SA delete causes crash and restart (CVE-2023-38712)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Moderate: tuned security update
Expat is a C library for parsing XML documents.<br>Security Fix(es):<br><li> libexpat: expat: DoS via XMLResumeParser (CVE-2024-50602)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Moderate: haproxy security update
Moderate: python3.11-urllib3 security update
Moderate: python3.12-urllib3 security update
GNOME Shell acts as a compositing manager for the desktop, and displays both application windows and other objects. It provides core interface functions like switching windows, launching applications, and notifications. It takes advantage of the capabilities of modern graphics hardware and introduces innovative user interface concepts. Security Fix(es): gnome-shell: code execution in portal helper (CVE-2024-36472) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Moderate: thunderbird security update
Moderate: thunderbird security update
Moderate: firefox security update
Moderate: python39:3.9 security update
libuv is a multi-platform support library with a focus on asynchronous I/O. Security Fix(es): libuv: Improper Domain Lookup that potentially leads to SSRF attacks (CVE-2024-24806) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Moderate: OpenIPMI security update
Moderate: python3.11-urllib3 security update