{"id":"RHBA-2019:0453","summary":"Red Hat Bug Fix Advisory: CloudForms 4.7.1 bug fix and enhancement update","modified":"2025-11-22T11:37:57Z","published":"2024-09-13T14:37:45Z","upstream":["CVE-2017-1000385"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHBA-2019:0453"},{"type":"ARTICLE","url":"https://access.redhat.com/documentation/en-us/red_hat_cloudforms/4.7/html/release_notes"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1669269"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1669582"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1669626"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1670200"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672690"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672691"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672693"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672694"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672695"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672696"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672697"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672698"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672699"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672700"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672702"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672703"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1672704"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1673039"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1673199"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1673747"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1673748"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1674585"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1674673"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1676555"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1676556"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1677409"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1678340"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1678360"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1678368"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1678376"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1678449"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1678450"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1678489"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1678614"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhba-2019_0453.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2017-1000385"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1520400"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2017-1000385"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2017-1000385"}],"affected":[{"package":{"name":"ansible-tower","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/ansible-tower"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.4.1-2.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"ansible-tower-server","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/ansible-tower-server"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.4.1-2.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"ansible-tower-setup","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/ansible-tower-setup"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.4.1-2.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"ansible-tower-ui","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/ansible-tower-ui"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.4.1-2.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"ansible-tower-venv-ansible","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/ansible-tower-venv-ansible"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.4.1-2.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"ansible-tower-venv-tower","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/ansible-tower-venv-tower"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.4.1-2.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"cfme","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/cfme"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:5.10.1.2-2.el7cf"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"cfme-amazon-smartstate","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/cfme-amazon-smartstate"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:5.10.1.2-1.el7cf"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"cfme-appliance","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/cfme-appliance"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:5.10.1.2-1.el7cf"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"cfme-appliance-common","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/cfme-appliance-common"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:5.10.1.2-1.el7cf"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"cfme-appliance-debuginfo","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/cfme-appliance-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:5.10.1.2-1.el7cf"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"cfme-appliance-tools","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/cfme-appliance-tools"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:5.10.1.2-1.el7cf"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"cfme-debuginfo","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/cfme-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:5.10.1.2-2.el7cf"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"cfme-gemset","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/cfme-gemset"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:5.10.1.2-1.el7cf"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"cfme-gemset-debuginfo","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/cfme-gemset-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:5.10.1.2-1.el7cf"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"erlang","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/erlang"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:20.3.8.9-2.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"erlang-debuginfo","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/erlang-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:20.3.8.9-2.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx-all-modules","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx-all-modules"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx-debuginfo","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx-filesystem","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx-filesystem"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx-mod-http-geoip","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx-mod-http-geoip"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx-mod-http-image-filter","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx-mod-http-image-filter"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx-mod-http-perl","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx-mod-http-perl"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx-mod-http-xslt-filter","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx-mod-http-xslt-filter"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx-mod-mail","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx-mod-mail"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"nginx-mod-stream","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/nginx-mod-stream"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.14.1-1.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}},{"package":{"name":"rabbitmq-server","ecosystem":"Red Hat:cloudforms_managementengine:5.10::el7","purl":"pkg:rpm/redhat/rabbitmq-server"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.7.4-2.el7at"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHBA-2019:0453.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N"}]}