ELSA-2019-1529

ELSA-2019-1529 - pki-deps:10.6 security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2019-07-30

Description


apache-commons-collections
[3.2.2-10]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild

[3.2.2-9]
- Remove workaround for symlink->directory rpm bug

jackson-bom
[2.9.8-1]
- Update to latest upstream release

[2.9.4-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild

[2.9.4-1]
- Update to latest upstream release

[2.9.3-1]
- Initial packaging

pki-servlet-container
[1:9.0.7-14]
- Update to JWS 5.0.2 distribution
- Resolves: rhbz#1658846 CVE-2018-8034 pki-servlet-container: tomcat: host name verification missing in WebSocket client
- Resolves: rhbz#1579614 CVE-2018-8014 pki-servlet-container: tomcat: Insecure defaults in CORS filter enable 'supportsCredentials' for all origins
- Resolves: rhbz#1619232 - CVE-2018-8037 pki-servlet-container: tomcat: Due to a mishandling of close in NIO/NIO2 connectors user sessions can get mixed up
- Resolves: rhbz#1641874 - CVE-2018-11784 pki-servlet-container: tomcat: Open redirect in default servlet

velocity
[0:1.7-24]
- Repack the tarball without binaries

[0:1.7-23]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild

xerces-j2
[2.11.0-34]
- Fix license tag to include W3C

[2.11.0-33]
- Add requirement on javapackages-tools since scripts use
java-functions.

[2.11.0-32]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild

xml-commons-resolver
[0:1.2-26]
- Add requirement on javapackages-tools since scripts use
java-functions.

[0:1.2-25]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild


Related CVEs


CVE-2018-11784
CVE-2018-8037
CVE-2018-8014
CVE-2018-8034

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) apache-commons-collections-3.2.2-10.module+el8.0.0+5231+3e842911.src.rpm9d9791e36dd28674be2dfa79e6e18831-
apache-commons-lang-2.6-21.module+el8.0.0+5231+3e842911.src.rpm73a4e5adc5c33e83fb0ce82ad533ac95-
bea-stax-1.2.0-16.module+el8.0.0+5231+3e842911.src.rpm1278d658968e564238e516294e583752-
glassfish-fastinfoset-1.2.13-9.module+el8.0.0+5231+3e842911.src.rpmc90edb6586fc98e437a8b0efc666eec1-
glassfish-jaxb-2.2.11-11.module+el8.0.0+5231+3e842911.src.rpmcd4d6d029eedd5ae43035dd79931b740-
glassfish-jaxb-api-2.2.12-8.module+el8.0.0+5231+3e842911.src.rpm320f338259d10d230bdd47d86072b25b-
jackson-annotations-2.9.8-1.module+el8.0.0+5231+3e842911.src.rpmd38ecb626e487ee5ea91a05821eac870-
jackson-core-2.9.8-1.module+el8.0.0+5231+3e842911.src.rpm29931a5a9c3234ec2391f4aaa8bbc582-
jackson-databind-2.9.8-1.module+el8.0.0+5231+3e842911.src.rpm5f3a50ed2d3f4d61b1ef4ad6d38c8b2c-
jackson-jaxrs-providers-2.9.8-1.module+el8.0.0+5231+3e842911.src.rpm4f1eb05e61175028dc08a417d57b512b-
jackson-module-jaxb-annotations-2.7.6-4.module+el8.0.0+5231+3e842911.src.rpm6450aadf442740badefcd5ef9cbbd1f8-
jakarta-commons-httpclient-3.1-28.module+el8.0.0+5231+3e842911.src.rpmbb94bd4573c5a4ea3a0a7736cbf9819c-
javassist-3.18.1-8.module+el8.0.0+5231+3e842911.src.rpm15314f5b7015dd7576fd6239c706ea47-
pki-servlet-container-9.0.7-14.module+el8.0.0+5231+3e842911.src.rpm1d509b4a2326a71cef377dad06d78dea-
python-nss-1.0.1-10.module+el8.0.0+5231+3e842911.src.rpm911000bbf5488626aaff9be8a203c646-
relaxngDatatype-2011.1-7.module+el8.0.0+5231+3e842911.src.rpmad7d719392fbac6a60a9923ddcfdd4c8-
resteasy-3.0.26-3.module+el8.0.0+5231+3e842911.src.rpmda65a42fa14030fc0c85ca0df395c85e-
slf4j-1.7.25-4.module+el8.0.0+5231+3e842911.src.rpm514165b7ee538c3eda02e202640555a6-
stax-ex-1.7.7-8.module+el8.0.0+5231+3e842911.src.rpm94afefd411793ad2336007ed90361b9e-
velocity-1.7-24.module+el8.0.0+5231+3e842911.src.rpm1e070934ddc51016b386ca21266f0868-
xalan-j2-2.7.1-38.module+el8.0.0+5231+3e842911.src.rpmd296d1b042f6768c24202aa4831c066f-
xerces-j2-2.11.0-34.module+el8.0.0+5231+3e842911.src.rpm41ddec7811e4a3a1959930ab3ac81c63-
xml-commons-apis-1.4.01-25.module+el8.0.0+5231+3e842911.src.rpm64bc45d37551f88e4a53865bfb151dd4-
xml-commons-resolver-1.2-26.module+el8.0.0+5231+3e842911.src.rpm5fee81b4b20a84208211b9c5dbcc9744-
xmlstreambuffer-1.5.4-8.module+el8.0.0+5231+3e842911.src.rpm3351cbb15038a1e98b98461f4ee97b9f-
xsom-0-19.20110809svn.module+el8.0.0+5231+3e842911.src.rpmdf7aa61e29ca05414b69431452d4f2a5-
apache-commons-collections-3.2.2-10.module+el8.0.0+5231+3e842911.noarch.rpm6039c021b648fe2c10da151ddb15f3fe-
apache-commons-lang-2.6-21.module+el8.0.0+5231+3e842911.noarch.rpm848c887bcf977e391a140bba95966f8f-
bea-stax-api-1.2.0-16.module+el8.0.0+5231+3e842911.noarch.rpmad35cef1f062d21f1b3c87562e234a99-
glassfish-fastinfoset-1.2.13-9.module+el8.0.0+5231+3e842911.noarch.rpm9b2f3cfeb1984d62801b5d5042074a17-
glassfish-jaxb-api-2.2.12-8.module+el8.0.0+5231+3e842911.noarch.rpmf6960fbd98bc2a3bbd477fa0de421b11-
glassfish-jaxb-core-2.2.11-11.module+el8.0.0+5231+3e842911.noarch.rpmddfe4fedb84bfa53003f3e305790193f-
glassfish-jaxb-runtime-2.2.11-11.module+el8.0.0+5231+3e842911.noarch.rpmdc8ba7936794f3fde35a8a39cd3617ac-
glassfish-jaxb-txw2-2.2.11-11.module+el8.0.0+5231+3e842911.noarch.rpme64611f127df07f40ff85d378451717a-
jackson-annotations-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpme6ad8621686cd851d50c2bc365fd4c60-
jackson-core-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpme883fb0f43ff767c211e56e19652ae11-
jackson-databind-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpm8f5bfb0f7853f6b12b6d5dceee9805de-
jackson-jaxrs-json-provider-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpm59f3d6cd5c59f6acdebcc37101c29c0f-
jackson-jaxrs-providers-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpm71391da9dab180eac323a31d1b6f8884-
jackson-module-jaxb-annotations-2.7.6-4.module+el8.0.0+5231+3e842911.noarch.rpma189dc4ea4513fe3814cfbed6dfd00bb-
jakarta-commons-httpclient-3.1-28.module+el8.0.0+5231+3e842911.noarch.rpm51f585e2fcc2c1761b3acd40ca437219-
javassist-3.18.1-8.module+el8.0.0+5231+3e842911.noarch.rpma5c6e0d19e33979ac773fd9505fe4c98-
javassist-javadoc-3.18.1-8.module+el8.0.0+5231+3e842911.noarch.rpmb8b435d23a54b1cb2df108f7e3ecdf6e-
pki-servlet-4.0-api-9.0.7-14.module+el8.0.0+5231+3e842911.noarch.rpm196e14a04218b09d734e436c30daae6c-
pki-servlet-container-9.0.7-14.module+el8.0.0+5231+3e842911.noarch.rpm2b2163797bc94dc8880fe58310fb47ec-
python-nss-doc-1.0.1-10.module+el8.0.0+5231+3e842911.aarch64.rpmcac98dd7453ffa08353bb63a08a096c1-
python3-nss-1.0.1-10.module+el8.0.0+5231+3e842911.aarch64.rpm04b3c28a6d2d430c98ea6ae18897cbb3-
relaxngDatatype-2011.1-7.module+el8.0.0+5231+3e842911.noarch.rpm0dbce405e5e584037f478634c4ba8171-
resteasy-3.0.26-3.module+el8.0.0+5231+3e842911.noarch.rpmcd5d3e33b4d490b89fb2bf8ea346c517-
slf4j-1.7.25-4.module+el8.0.0+5231+3e842911.noarch.rpm616043dc616286d52cf894cb0df6f9bb-
slf4j-jdk14-1.7.25-4.module+el8.0.0+5231+3e842911.noarch.rpmc22e93dc4d850eec8923f71597d44383-
stax-ex-1.7.7-8.module+el8.0.0+5231+3e842911.noarch.rpmfdee6d102bc3b9dd05b95677034e40e6-
velocity-1.7-24.module+el8.0.0+5231+3e842911.noarch.rpmb22d0ca88b8318c001df847f2d969343-
xalan-j2-2.7.1-38.module+el8.0.0+5231+3e842911.noarch.rpm1752691e3202581fa86cbfb43d7aaa7f-
xerces-j2-2.11.0-34.module+el8.0.0+5231+3e842911.noarch.rpm18651560551db271f9357ae51ce36181-
xml-commons-apis-1.4.01-25.module+el8.0.0+5231+3e842911.noarch.rpm8e20ce0503866300f3e66b19a22ec41f-
xml-commons-resolver-1.2-26.module+el8.0.0+5231+3e842911.noarch.rpm33cc8ceb34233661b175db3e49077a9e-
xmlstreambuffer-1.5.4-8.module+el8.0.0+5231+3e842911.noarch.rpm686782aa830f125a220805c35a4f806d-
xsom-0-19.20110809svn.module+el8.0.0+5231+3e842911.noarch.rpmfd5dac86e3bfb7a79c0316e8b9d3edcf-
Oracle Linux 8 (x86_64) apache-commons-collections-3.2.2-10.module+el8.0.0+5231+3e842911.src.rpm9d9791e36dd28674be2dfa79e6e18831-
apache-commons-lang-2.6-21.module+el8.0.0+5231+3e842911.src.rpm73a4e5adc5c33e83fb0ce82ad533ac95-
bea-stax-1.2.0-16.module+el8.0.0+5231+3e842911.src.rpm1278d658968e564238e516294e583752-
glassfish-fastinfoset-1.2.13-9.module+el8.0.0+5231+3e842911.src.rpmc90edb6586fc98e437a8b0efc666eec1-
glassfish-jaxb-2.2.11-11.module+el8.0.0+5231+3e842911.src.rpmcd4d6d029eedd5ae43035dd79931b740-
glassfish-jaxb-api-2.2.12-8.module+el8.0.0+5231+3e842911.src.rpm320f338259d10d230bdd47d86072b25b-
jackson-annotations-2.9.8-1.module+el8.0.0+5231+3e842911.src.rpmd38ecb626e487ee5ea91a05821eac870-
jackson-core-2.9.8-1.module+el8.0.0+5231+3e842911.src.rpm29931a5a9c3234ec2391f4aaa8bbc582-
jackson-databind-2.9.8-1.module+el8.0.0+5231+3e842911.src.rpm5f3a50ed2d3f4d61b1ef4ad6d38c8b2c-
jackson-jaxrs-providers-2.9.8-1.module+el8.0.0+5231+3e842911.src.rpm4f1eb05e61175028dc08a417d57b512b-
jackson-module-jaxb-annotations-2.7.6-4.module+el8.0.0+5231+3e842911.src.rpm6450aadf442740badefcd5ef9cbbd1f8-
jakarta-commons-httpclient-3.1-28.module+el8.0.0+5231+3e842911.src.rpmbb94bd4573c5a4ea3a0a7736cbf9819c-
javassist-3.18.1-8.module+el8.0.0+5231+3e842911.src.rpm15314f5b7015dd7576fd6239c706ea47-
pki-servlet-container-9.0.7-14.module+el8.0.0+5231+3e842911.src.rpm1d509b4a2326a71cef377dad06d78dea-
python-nss-1.0.1-10.module+el8.0.0+5231+3e842911.src.rpm911000bbf5488626aaff9be8a203c646-
relaxngDatatype-2011.1-7.module+el8.0.0+5231+3e842911.src.rpmad7d719392fbac6a60a9923ddcfdd4c8-
resteasy-3.0.26-3.module+el8.0.0+5231+3e842911.src.rpmda65a42fa14030fc0c85ca0df395c85e-
slf4j-1.7.25-4.module+el8.0.0+5231+3e842911.src.rpm514165b7ee538c3eda02e202640555a6-
stax-ex-1.7.7-8.module+el8.0.0+5231+3e842911.src.rpm94afefd411793ad2336007ed90361b9e-
velocity-1.7-24.module+el8.0.0+5231+3e842911.src.rpm1e070934ddc51016b386ca21266f0868-
xalan-j2-2.7.1-38.module+el8.0.0+5231+3e842911.src.rpmd296d1b042f6768c24202aa4831c066f-
xerces-j2-2.11.0-34.module+el8.0.0+5231+3e842911.src.rpm41ddec7811e4a3a1959930ab3ac81c63-
xml-commons-apis-1.4.01-25.module+el8.0.0+5231+3e842911.src.rpm64bc45d37551f88e4a53865bfb151dd4-
xml-commons-resolver-1.2-26.module+el8.0.0+5231+3e842911.src.rpm5fee81b4b20a84208211b9c5dbcc9744-
xmlstreambuffer-1.5.4-8.module+el8.0.0+5231+3e842911.src.rpm3351cbb15038a1e98b98461f4ee97b9f-
xsom-0-19.20110809svn.module+el8.0.0+5231+3e842911.src.rpmdf7aa61e29ca05414b69431452d4f2a5-
apache-commons-collections-3.2.2-10.module+el8.0.0+5231+3e842911.noarch.rpm6039c021b648fe2c10da151ddb15f3fe-
apache-commons-lang-2.6-21.module+el8.0.0+5231+3e842911.noarch.rpm848c887bcf977e391a140bba95966f8f-
bea-stax-api-1.2.0-16.module+el8.0.0+5231+3e842911.noarch.rpmad35cef1f062d21f1b3c87562e234a99-
glassfish-fastinfoset-1.2.13-9.module+el8.0.0+5231+3e842911.noarch.rpm9b2f3cfeb1984d62801b5d5042074a17-
glassfish-jaxb-api-2.2.12-8.module+el8.0.0+5231+3e842911.noarch.rpmf6960fbd98bc2a3bbd477fa0de421b11-
glassfish-jaxb-core-2.2.11-11.module+el8.0.0+5231+3e842911.noarch.rpmddfe4fedb84bfa53003f3e305790193f-
glassfish-jaxb-runtime-2.2.11-11.module+el8.0.0+5231+3e842911.noarch.rpmdc8ba7936794f3fde35a8a39cd3617ac-
glassfish-jaxb-txw2-2.2.11-11.module+el8.0.0+5231+3e842911.noarch.rpme64611f127df07f40ff85d378451717a-
jackson-annotations-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpme6ad8621686cd851d50c2bc365fd4c60-
jackson-core-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpme883fb0f43ff767c211e56e19652ae11-
jackson-databind-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpm8f5bfb0f7853f6b12b6d5dceee9805de-
jackson-jaxrs-json-provider-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpm59f3d6cd5c59f6acdebcc37101c29c0f-
jackson-jaxrs-providers-2.9.8-1.module+el8.0.0+5231+3e842911.noarch.rpm71391da9dab180eac323a31d1b6f8884-
jackson-module-jaxb-annotations-2.7.6-4.module+el8.0.0+5231+3e842911.noarch.rpma189dc4ea4513fe3814cfbed6dfd00bb-
jakarta-commons-httpclient-3.1-28.module+el8.0.0+5231+3e842911.noarch.rpm51f585e2fcc2c1761b3acd40ca437219-
javassist-3.18.1-8.module+el8.0.0+5231+3e842911.noarch.rpma5c6e0d19e33979ac773fd9505fe4c98-
javassist-javadoc-3.18.1-8.module+el8.0.0+5231+3e842911.noarch.rpmb8b435d23a54b1cb2df108f7e3ecdf6e-
pki-servlet-4.0-api-9.0.7-14.module+el8.0.0+5231+3e842911.noarch.rpm196e14a04218b09d734e436c30daae6c-
pki-servlet-container-9.0.7-14.module+el8.0.0+5231+3e842911.noarch.rpm2b2163797bc94dc8880fe58310fb47ec-
python-nss-doc-1.0.1-10.module+el8.0.0+5231+3e842911.x86_64.rpmf7a17056a7df74b699bb30e56d43efc3-
python3-nss-1.0.1-10.module+el8.0.0+5231+3e842911.x86_64.rpmdcc3a710aee365135050ac00a0dd4acb-
relaxngDatatype-2011.1-7.module+el8.0.0+5231+3e842911.noarch.rpm0dbce405e5e584037f478634c4ba8171-
resteasy-3.0.26-3.module+el8.0.0+5231+3e842911.noarch.rpmcd5d3e33b4d490b89fb2bf8ea346c517-
slf4j-1.7.25-4.module+el8.0.0+5231+3e842911.noarch.rpm616043dc616286d52cf894cb0df6f9bb-
slf4j-jdk14-1.7.25-4.module+el8.0.0+5231+3e842911.noarch.rpmc22e93dc4d850eec8923f71597d44383-
stax-ex-1.7.7-8.module+el8.0.0+5231+3e842911.noarch.rpmfdee6d102bc3b9dd05b95677034e40e6-
velocity-1.7-24.module+el8.0.0+5231+3e842911.noarch.rpmb22d0ca88b8318c001df847f2d969343-
xalan-j2-2.7.1-38.module+el8.0.0+5231+3e842911.noarch.rpm1752691e3202581fa86cbfb43d7aaa7f-
xerces-j2-2.11.0-34.module+el8.0.0+5231+3e842911.noarch.rpm18651560551db271f9357ae51ce36181-
xml-commons-apis-1.4.01-25.module+el8.0.0+5231+3e842911.noarch.rpm8e20ce0503866300f3e66b19a22ec41f-
xml-commons-resolver-1.2-26.module+el8.0.0+5231+3e842911.noarch.rpm33cc8ceb34233661b175db3e49077a9e-
xmlstreambuffer-1.5.4-8.module+el8.0.0+5231+3e842911.noarch.rpm686782aa830f125a220805c35a4f806d-
xsom-0-19.20110809svn.module+el8.0.0+5231+3e842911.noarch.rpmfd5dac86e3bfb7a79c0316e8b9d3edcf-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete