A lack of access control was found in the message queues maintained by Satellite's QPID broker and used by katello-agent in versions before Satellite 6.2, Satellite 6.1 optional and Satellite Capsule 6.1. A malicious user authenticated to a host registered to Satellite (or Capsule) can use this flaw to access QMF methods to any host also registered to Satellite (or Capsule) and execute privileged commands.
CVSS Details
- CVSS 3.1 Base Score: 8
- CVSS 3.1 Vector: (CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
- CVSS 3.0 Vector: (CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade python-pulp-puppet-commonUpgrade tfm-ror52-rubygem-mime-typesUpgrade python3-tracerUpgrade tfm-ror52-rubygem-mime-types-dataUpgrade pulp-puppet-toolsUpgrade tfm-rubygem-http-cookieUpgrade python-hashlibUpgrade qpid-proton-cUpgrade python2-beautifulsoup4Upgrade python-pulp-rpm-commonUpgrade python3-beautifulsoup4Upgrade qpid-proton-debugsourceUpgrade python3-psutilUpgrade python-hashlib-debuginfoUpgrade python-goferUpgrade tfm-rubygem-hammer_cliUpgrade tfm-rubygem-hammer_cli_foreman_adminUpgrade tfm-rubygem-hammer_cli_foreman_dockerUpgrade tfm-rubygem-highlineUpgrade tfm-rubygem-hammer_cli_foreman_discoveryUpgrade tracer-commonUpgrade python3-gofer-protonUpgrade tfm-rubygem-hammer_cli_foreman_virt_who_configureUpgrade tfm-rubygem-rest-clientUpgrade tfm-rubygem-unicodeUpgrade python-uuidUpgrade tfm-rubygem-hammer_cli_foreman_remote_executionUpgrade foreman-cliUpgrade goferUpgrade rubygem-jsonUpgrade tfm-rubygem-netrcUpgrade python-pulp-commonUpgrade tfm-ror52-rubygem-multi_jsonUpgrade python3-qpid-proton-debuginfoUpgrade tfm-rubygem-unf_ext-debuginfoUpgrade python3-goferUpgrade tfm-rubygem-hammer_cli_foreman_tasksUpgrade python3-futureUpgrade tfm-rubygem-clampUpgrade python-pulp-manifestUpgrade pulp-rpm-handlersUpgrade python-argcompleteUpgrade tfm-rubygem-hammer_cli_foreman_templatesUpgrade tfm-rubygem-fast_gettextUpgrade tfm-rubygem-localeUpgrade satellite-brandingUpgrade python-pulp-agent-libUpgrade puppet-agentUpgrade tfm-rubygem-unicode-debuginfoUpgrade tfm-rubygem-hashieUpgrade rubygem-json-debuginfoUpgrade python2-tracerUpgrade python-isodateUpgrade tfm-rubygem-loggingUpgrade tfm-rubygem-unicode-display_widthUpgrade tfm-rubygem-hammer_cli_foreman_ansibleUpgrade satelliteUpgrade tfm-rubygem-apipie-bindingsUpgrade tfm-rubygem-hammer_cli_foreman_openscapUpgrade katello-host-tools-tracerUpgrade qpid-proton-c-debuginfoUpgrade tfm-rubygem-domain_nameUpgrade tfm-ror52-runtimeUpgrade python-qpid-protonUpgrade tfm-rubygem-powerbarUpgrade tfm-rubygem-unfUpgrade satellite-cliUpgrade tfm-rubygem-oauthUpgrade python3-qpid-protonUpgrade tfm-rubygem-awesome_printUpgrade tfm-rubygem-hammer_cli_katelloUpgrade tfm-rubygem-hammer_cli_foremanUpgrade python-gofer-protonUpgrade katello-host-toolsUpgrade tfm-rubygem-little-pluggerUpgrade python3-psutil-debuginfoUpgrade tfm-rubygem-hammer_cli_csvUpgrade qpid-proton-cpp-debuginfoUpgrade tfm-runtimeUpgrade python-psutil-debuginfoUpgrade katello-host-tools-fact-pluginUpgrade tfm-rubygem-unf_extUpgrade qpid-proton-debuginfoUpgrade katello-agentUpgrade python2-futureUpgrade python-psutilUpgrade rubygem-foreman_scap_clientUpgrade python-psutil-debugsourceUpgrade tfm-rubygem-hammer_cli_foreman_bootdisk | Aug 28, 2019 | Apr 11, 2019 |
| Redhat_linux | — | Upgrade python2-beautifulsoup4Upgrade satellite-brandingUpgrade python-uuidUpgrade python-psutilUpgrade rubygem-json-debuginfoUpgrade tfm-rubygem-hammer_cli_katelloUpgrade qpid-proton-debuginfoUpgrade python-pulp-manifestUpgrade tfm-rubygem-loggingUpgrade tfm-rubygem-awesome_printUpgrade tfm-rubygem-hammer_cli_foreman_discoveryUpgrade foreman-cliUpgrade tfm-rubygem-unicode-display_widthUpgrade tfm-rubygem-hammer_cli_csvUpgrade tfm-rubygem-clampUpgrade python3-qpid-protonUpgrade python-gofer-protonUpgrade python-pulp-agent-libUpgrade python-hashlib-debuginfoUpgrade python-isodateUpgrade tfm-rubygem-apipie-bindingsUpgrade tfm-rubygem-hammer_cli_foremanUpgrade tfm-ror52-runtimeUpgrade tfm-rubygem-unfUpgrade pulp-rpm-handlersUpgrade tfm-rubygem-fast_gettextUpgrade python-pulp-commonUpgrade tfm-rubygem-unicode-debuginfoUpgrade python3-gofer-protonUpgrade python-pulp-puppet-commonUpgrade python-qpid-protonUpgrade qpid-proton-debugsourceUpgrade python-hashlibUpgrade python-psutil-debuginfoUpgrade tfm-rubygem-little-pluggerUpgrade tfm-ror52-rubygem-mime-typesUpgrade python-psutil-debugsourceUpgrade katello-host-tools-fact-pluginUpgrade python2-futureUpgrade tfm-rubygem-domain_nameUpgrade python3-goferUpgrade tfm-rubygem-hammer_cli_foreman_remote_executionUpgrade tfm-rubygem-unicodeUpgrade tfm-ror52-rubygem-multi_jsonUpgrade tfm-rubygem-localeUpgrade tfm-runtimeUpgrade tracer-commonUpgrade tfm-rubygem-hashieUpgrade satelliteUpgrade tfm-rubygem-hammer_cli_foreman_templatesUpgrade tfm-rubygem-unf_extUpgrade python3-qpid-proton-debuginfoUpgrade tfm-rubygem-hammer_cli_foreman_dockerUpgrade goferUpgrade tfm-rubygem-http-cookieUpgrade tfm-rubygem-hammer_cliUpgrade tfm-rubygem-netrcUpgrade python3-psutil-debuginfoUpgrade katello-host-toolsUpgrade tfm-rubygem-hammer_cli_foreman_ansibleUpgrade rubygem-foreman_scap_clientUpgrade python3-psutilUpgrade tfm-rubygem-powerbarUpgrade puppet-agentUpgrade tfm-rubygem-hammer_cli_foreman_tasksUpgrade tfm-rubygem-oauthUpgrade katello-host-tools-tracerUpgrade tfm-rubygem-hammer_cli_foreman_adminUpgrade katello-agentUpgrade tfm-rubygem-hammer_cli_foreman_bootdiskUpgrade qpid-proton-cUpgrade tfm-ror52-rubygem-mime-types-dataUpgrade python3-futureUpgrade qpid-proton-c-debuginfoUpgrade python-goferUpgrade python3-beautifulsoup4Upgrade satellite-cliUpgrade python3-tracerUpgrade pulp-puppet-toolsUpgrade tfm-rubygem-hammer_cli_foreman_virt_who_configureUpgrade python2-tracerUpgrade tfm-rubygem-highlineUpgrade rubygem-jsonUpgrade python-pulp-rpm-commonUpgrade qpid-proton-cpp-debuginfoUpgrade python-argcompleteUpgrade tfm-rubygem-unf_ext-debuginfoUpgrade tfm-rubygem-rest-clientUpgrade tfm-rubygem-hammer_cli_foreman_openscap | May 15, 2019 | Apr 11, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub