Security
Headlines
HeadlinesLatestCVEs

Headline

RHSA-2022:0184: Red Hat Security Advisory: gegl04 security update

An update for gegl04 is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.

Related CVEs:

  • CVE-2021-45463: gegl: shell expansion via a crafted pathname
Red Hat Security Data
#vulnerability#web#linux#red_hat#nodejs#js#java#kubernetes

Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Containers
  • Support Cases

Red Hat Customer Portal

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Virtualization
  • Red Hat Identity Management
  • Red Hat Directory Server
  • Red Hat Certificate System
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Update Infrastructure
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat CloudForms
  • Red Hat OpenStack Platform
  • Red Hat OpenShift Container Platform
  • Red Hat OpenShift Data Science
  • Red Hat OpenShift Online
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat CodeReady Workspaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat Single Sign On
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Thorntail
  • Red Hat build of Eclipse Vert.x
  • Red Hat build of OpenJDK
  • Red Hat build of Quarkus
  • Red Hat CodeReady Studio

Integration and Automation

  • Red Hat Process Automation
  • Red Hat Process Automation Manager
  • Red Hat Decision Manager

All Products

Issued:

2022-01-19

Updated:

2022-01-19

RHSA-2022:0184 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: gegl04 security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for gegl04 is now available for Red Hat Enterprise Linux 8.2 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

GEGL (Generic Graphics Library) is a graph-based image processing framework.

Security Fix(es):

  • gegl: shell expansion via a crafted pathname (CVE-2021-45463)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.2 x86_64
  • Red Hat Enterprise Linux Server - AUS 8.2 x86_64
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.2 ppc64le
  • Red Hat Enterprise Linux Server - TUS 8.2 x86_64
  • Red Hat Enterprise Linux Server (for IBM Power LE) - Update Services for SAP Solutions 8.2 ppc64le
  • Red Hat Enterprise Linux Server - Update Services for SAP Solutions 8.2 x86_64
  • Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 8.2 x86_64
  • Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 8.2 ppc64le

Fixes

  • BZ - 2035383 - CVE-2021-45463 gegl: shell expansion via a crafted pathname

Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.2

SRPM

gegl04-0.4.4-6.el8_2.1.src.rpm

SHA-256: 36a4864af0355e6301cdcd3ddff78317640ce8c255d21a2204de0e62cad6b116

x86_64

gegl04-0.4.4-6.el8_2.1.i686.rpm

SHA-256: c557957b84f2908110994708ebbf45f143f7a37da4623b3608d58e9c77a5ac72

gegl04-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: df3b3bd0b65685f143493ca6d1cf9f129a99adb03e90d4b3ba3cd27b80bd519f

gegl04-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 8433f2d0a3eec5cf3e370c9dcc8f4c9d84b679836e3546db9ec052bf3b4f33b5

gegl04-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 82c98210c25cd2d26ac88adcf3fa06592daa56ccbe149f8e93621f525133d1d0

gegl04-debugsource-0.4.4-6.el8_2.1.i686.rpm

SHA-256: b56860fcba8cfc83ce0c7224af8d5e045f9267cfdd612f1bbbd6ae9c6b32eda0

gegl04-debugsource-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 48aeb15a4d90e0ccc455e139e33b27da47ab4897d473f8e14323bd2ed244fc49

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 4a5667abfde1fd039c2f26dbf0586605673264710447092af5e785ee8ff9d62c

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: a28597dd4bcda234d13547746defabee7c748588fdaf38d82a866965fe877013

Red Hat Enterprise Linux Server - AUS 8.2

SRPM

gegl04-0.4.4-6.el8_2.1.src.rpm

SHA-256: 36a4864af0355e6301cdcd3ddff78317640ce8c255d21a2204de0e62cad6b116

x86_64

gegl04-0.4.4-6.el8_2.1.i686.rpm

SHA-256: c557957b84f2908110994708ebbf45f143f7a37da4623b3608d58e9c77a5ac72

gegl04-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: df3b3bd0b65685f143493ca6d1cf9f129a99adb03e90d4b3ba3cd27b80bd519f

gegl04-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 8433f2d0a3eec5cf3e370c9dcc8f4c9d84b679836e3546db9ec052bf3b4f33b5

gegl04-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 82c98210c25cd2d26ac88adcf3fa06592daa56ccbe149f8e93621f525133d1d0

gegl04-debugsource-0.4.4-6.el8_2.1.i686.rpm

SHA-256: b56860fcba8cfc83ce0c7224af8d5e045f9267cfdd612f1bbbd6ae9c6b32eda0

gegl04-debugsource-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 48aeb15a4d90e0ccc455e139e33b27da47ab4897d473f8e14323bd2ed244fc49

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 4a5667abfde1fd039c2f26dbf0586605673264710447092af5e785ee8ff9d62c

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: a28597dd4bcda234d13547746defabee7c748588fdaf38d82a866965fe877013

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.2

SRPM

gegl04-0.4.4-6.el8_2.1.src.rpm

SHA-256: 36a4864af0355e6301cdcd3ddff78317640ce8c255d21a2204de0e62cad6b116

ppc64le

gegl04-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: 3997b5452986d459a9b7e3d4aa377acb4e259c55faffd1b6f998bd1b80ff8035

gegl04-debuginfo-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: eacb8167ff7589bfd7a105ae0be8ca8bfc6c60ad5318a6d8807a44e436bfa754

gegl04-debugsource-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: 3f1476b00991b4a8cefcfe50b687f4d9f2227dfc14345682187e45fb3c4e48dc

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: 22fcceadf79307ba022db683f0c9cab177b5711fcfc54f8f2b53772dbeb0083d

Red Hat Enterprise Linux Server - TUS 8.2

SRPM

gegl04-0.4.4-6.el8_2.1.src.rpm

SHA-256: 36a4864af0355e6301cdcd3ddff78317640ce8c255d21a2204de0e62cad6b116

x86_64

gegl04-0.4.4-6.el8_2.1.i686.rpm

SHA-256: c557957b84f2908110994708ebbf45f143f7a37da4623b3608d58e9c77a5ac72

gegl04-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: df3b3bd0b65685f143493ca6d1cf9f129a99adb03e90d4b3ba3cd27b80bd519f

gegl04-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 8433f2d0a3eec5cf3e370c9dcc8f4c9d84b679836e3546db9ec052bf3b4f33b5

gegl04-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 82c98210c25cd2d26ac88adcf3fa06592daa56ccbe149f8e93621f525133d1d0

gegl04-debugsource-0.4.4-6.el8_2.1.i686.rpm

SHA-256: b56860fcba8cfc83ce0c7224af8d5e045f9267cfdd612f1bbbd6ae9c6b32eda0

gegl04-debugsource-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 48aeb15a4d90e0ccc455e139e33b27da47ab4897d473f8e14323bd2ed244fc49

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 4a5667abfde1fd039c2f26dbf0586605673264710447092af5e785ee8ff9d62c

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: a28597dd4bcda234d13547746defabee7c748588fdaf38d82a866965fe877013

Red Hat Enterprise Linux Server (for IBM Power LE) - Update Services for SAP Solutions 8.2

SRPM

gegl04-0.4.4-6.el8_2.1.src.rpm

SHA-256: 36a4864af0355e6301cdcd3ddff78317640ce8c255d21a2204de0e62cad6b116

ppc64le

gegl04-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: 3997b5452986d459a9b7e3d4aa377acb4e259c55faffd1b6f998bd1b80ff8035

gegl04-debuginfo-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: eacb8167ff7589bfd7a105ae0be8ca8bfc6c60ad5318a6d8807a44e436bfa754

gegl04-debugsource-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: 3f1476b00991b4a8cefcfe50b687f4d9f2227dfc14345682187e45fb3c4e48dc

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: 22fcceadf79307ba022db683f0c9cab177b5711fcfc54f8f2b53772dbeb0083d

Red Hat Enterprise Linux Server - Update Services for SAP Solutions 8.2

SRPM

gegl04-0.4.4-6.el8_2.1.src.rpm

SHA-256: 36a4864af0355e6301cdcd3ddff78317640ce8c255d21a2204de0e62cad6b116

x86_64

gegl04-0.4.4-6.el8_2.1.i686.rpm

SHA-256: c557957b84f2908110994708ebbf45f143f7a37da4623b3608d58e9c77a5ac72

gegl04-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: df3b3bd0b65685f143493ca6d1cf9f129a99adb03e90d4b3ba3cd27b80bd519f

gegl04-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 8433f2d0a3eec5cf3e370c9dcc8f4c9d84b679836e3546db9ec052bf3b4f33b5

gegl04-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 82c98210c25cd2d26ac88adcf3fa06592daa56ccbe149f8e93621f525133d1d0

gegl04-debugsource-0.4.4-6.el8_2.1.i686.rpm

SHA-256: b56860fcba8cfc83ce0c7224af8d5e045f9267cfdd612f1bbbd6ae9c6b32eda0

gegl04-debugsource-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 48aeb15a4d90e0ccc455e139e33b27da47ab4897d473f8e14323bd2ed244fc49

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 4a5667abfde1fd039c2f26dbf0586605673264710447092af5e785ee8ff9d62c

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: a28597dd4bcda234d13547746defabee7c748588fdaf38d82a866965fe877013

Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 8.2

SRPM

x86_64

gegl04-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 8433f2d0a3eec5cf3e370c9dcc8f4c9d84b679836e3546db9ec052bf3b4f33b5

gegl04-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 82c98210c25cd2d26ac88adcf3fa06592daa56ccbe149f8e93621f525133d1d0

gegl04-debugsource-0.4.4-6.el8_2.1.i686.rpm

SHA-256: b56860fcba8cfc83ce0c7224af8d5e045f9267cfdd612f1bbbd6ae9c6b32eda0

gegl04-debugsource-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: 48aeb15a4d90e0ccc455e139e33b27da47ab4897d473f8e14323bd2ed244fc49

gegl04-devel-0.4.4-6.el8_2.1.i686.rpm

SHA-256: b37f50b86450e5769cfe50a574e26304316fca6d271a5c705e7550b3f159d6ef

gegl04-devel-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: c0b7d32ff4cbb4d7d2197aef1831c28eba6b0ded8766b80be4b7165d3c949d3b

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.i686.rpm

SHA-256: 4a5667abfde1fd039c2f26dbf0586605673264710447092af5e785ee8ff9d62c

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.x86_64.rpm

SHA-256: a28597dd4bcda234d13547746defabee7c748588fdaf38d82a866965fe877013

Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 8.2

SRPM

ppc64le

gegl04-debuginfo-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: eacb8167ff7589bfd7a105ae0be8ca8bfc6c60ad5318a6d8807a44e436bfa754

gegl04-debugsource-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: 3f1476b00991b4a8cefcfe50b687f4d9f2227dfc14345682187e45fb3c4e48dc

gegl04-devel-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: e22d9dc32f96321d9f244b1a0c8e492c36d59bb371b819bad05353d2690213cc

gegl04-tools-debuginfo-0.4.4-6.el8_2.1.ppc64le.rpm

SHA-256: 22fcceadf79307ba022db683f0c9cab177b5711fcfc54f8f2b53772dbeb0083d

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat Security Data: Latest News

RHSA-2023:5627: Red Hat Security Advisory: kernel security, bug fix, and enhancement update