Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
  • Products & Services

    Products

    Support

    • Production Support
    • Development Support
    • Product Life Cycles

    Services

    • Consulting
    • Technical Account Management
    • Training & Certifications

    Documentation

    • Red Hat Enterprise Linux
    • Red Hat JBoss Enterprise Application Platform
    • Red Hat OpenStack Platform
    • Red Hat OpenShift Container Platform
    All Documentation

    Ecosystem Catalog

    • Red Hat Partner Ecosystem
    • Partner Resources
  • Tools

    Tools

    • Troubleshoot a product issue
    • Packages
    • Errata

    Customer Portal Labs

    • Configuration
    • Deployment
    • Security
    • Troubleshoot
    All labs

    Red Hat Insights

    Increase visibility into IT operations to detect and resolve technical issues before they impact your business.

    Learn More
    Go to Insights
  • Security

    Red Hat Product Security Center

    Engage with our Red Hat Product Security team, access security updates, and ensure your environments are not exposed to any known security vulnerabilities.

    Product Security Center

    Security Updates

    • Security Advisories
    • Red Hat CVE Database
    • Security Labs

    Keep your systems secure with Red Hat's specialized responses to security vulnerabilities.

    View Responses

    Resources

    • Security Blog
    • Security Measurement
    • Severity Ratings
    • Backporting Policies
    • Product Signing (GPG) Keys
  • Community

    Customer Portal Community

    • Discussions
    • Private Groups
    Community Activity

    Customer Events

    • Red Hat Convergence
    • Red Hat Summit

    Stories

    • Red Hat Subscription Value
    • You Asked. We Acted.
    • Open Source Communities
Or troubleshoot an issue.

Select Your Language

  • English
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Virtualization
  • Red Hat Identity Management
  • Red Hat Directory Server
  • Red Hat Certificate System
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Update Infrastructure
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat CloudForms
  • Red Hat OpenStack Platform
  • Red Hat OpenShift Container Platform
  • Red Hat OpenShift Data Science
  • Red Hat OpenShift Online
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat Single Sign On
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Thorntail
  • Red Hat build of Eclipse Vert.x
  • Red Hat build of OpenJDK
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Integration
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
  • Red Hat JBoss Data Virtualization
  • Red Hat Process Automation
  • Red Hat Process Automation Manager
  • Red Hat Decision Manager
All Products
Red Hat Product Errata RHSA-2018:1605 - Security Advisory
Issued:
2018-05-17
Updated:
2018-05-17

RHSA-2018:1605 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: collectd security update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

Updated collectd packages are now available for Red Hat OpenStack Platform 10.0 Operational Tools for RHEL 7.

Red Hat Product Security has rated this update as having a security impact of
Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Red Hat OpenStack Platform Operational Tools provides the facilities for monitoring a private or public Red Hat OpenStack Platform cloud.

collectd is a small C-language daemon, which reads various system metrics
periodically and updates RRD files (creating them if necessary). Because
the daemon does not start up each time it updates files, it has a low
system footprint.

Security fix:

  • collectd: double free in csnmp_read_table function in snmp.c (CVE-2017-16820)

For more details about the security issue, including impact, a CVSS score, and other related information, refer to the CVE page listed in the References section.

Solution

Before applying this update, ensure all previously released errata relevant
to your system have been applied.

Red Hat OpenStack Platform 10 runs on Red Hat Enterprise Linux 7.5.

The Red Hat OpenStack Platform 10 Release Notes contain the following:

  • An explanation of the way in which the provided components interact to

form a working cloud computing environment.

  • Technology Previews, Recommended Practices, and Known Issues.
  • The channels required for Red Hat OpenStack Platform 10, including which

channels need to be enabled and disabled.

The Release Notes are available at:
https://access.redhat.com/documentation/en/red-hat-openstack-platform/

This update is available through 'yum update' on systems registered through
Red Hat Subscription Manager. For more information about Red Hat
Subscription Manager, see:

https://access.redhat.com/documentation/en-US/Red_Hat_Subscription_Management/1/html/RHSM/index.html

Affected Products

  • Red Hat OpenStack 10 x86_64

Fixes

  • BZ - 1516447 - CVE-2017-16820 collectd: double free in csnmp_read_table function in snmp.c
  • BZ - 1550149 - [UPDATES]Failed to on dependencies if collectd sub-packages are installed

CVEs

  • CVE-2017-16820

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat OpenStack 10

SRPM
collectd-5.8.0-10.el7ost.src.rpm SHA-256: 0aeb61c9f9a32c29cf02d02793da3207db392915a172b1d5449d99f21412aa8f
intel-cmt-cat-1.0.1-1.el7ost.src.rpm SHA-256: 2ca04cb6152f41ce100ac84d8a91a9a1135295de56e211058a854b7dfdd5c423
x86_64
collectd-5.8.0-10.el7ost.x86_64.rpm SHA-256: 2e9333e31c522c17a318accb91641c2c1c8dee18954d7b19b140e5bb8ac6cae7
collectd-apache-5.8.0-10.el7ost.x86_64.rpm SHA-256: b92fffde9b4f937d8643b8dad1033e62cfae241c7d6d2cdec45d3096694246ed
collectd-ascent-5.8.0-10.el7ost.x86_64.rpm SHA-256: dc17cc094d53941a9c437bd6af6f76514c831e249e7afedb32ba599d3b936080
collectd-bind-5.8.0-10.el7ost.x86_64.rpm SHA-256: 2f04071a95a242f4991362c09dcb63f35e40ba43fed879427a3fb2605d3a5a31
collectd-ceph-5.8.0-10.el7ost.x86_64.rpm SHA-256: e5e73c9d981260496b4dc2509b412cef37b948a6966d54008ddbde2d0d4811ac
collectd-curl-5.8.0-10.el7ost.x86_64.rpm SHA-256: 6a0164c189b83fcb6d9e0285313bc5e17c2e78474cac22bcfa7b8b407069ab32
collectd-curl_json-5.8.0-10.el7ost.x86_64.rpm SHA-256: cd6d21a092ab47e2ba3ee39afcb3606da870732b8f928436355b89870c512790
collectd-curl_xml-5.8.0-10.el7ost.x86_64.rpm SHA-256: 9bba0e92dbeaa4cda30ab38e275c8aa1b7cb4945025d5fa77e352f4cd0e918cf
collectd-dbi-5.8.0-10.el7ost.x86_64.rpm SHA-256: d83744121dc1bbdf30e620b44120033c1aa24bf0f72b91f9a88a28fef138ed56
collectd-debuginfo-5.8.0-10.el7ost.x86_64.rpm SHA-256: 52cc5dca981b55fb4b29d42b1d126a145be1eaeab0f046321f6b6c2d28b59880
collectd-disk-5.8.0-10.el7ost.x86_64.rpm SHA-256: 0a5639167c9b81705d166b5187755a2b1f38dcfa4a0fe244a0282970b1fbf7e1
collectd-dns-5.8.0-10.el7ost.x86_64.rpm SHA-256: 557cbb7a01a242043dbdebe4a4967e56c6ee10034a39249f0f7d63959ed573d0
collectd-drbd-5.8.0-10.el7ost.x86_64.rpm SHA-256: 5372e2e1ff03096299a3b4b45fd045a5f45fe6a1f404f55265b9b012441fe069
collectd-email-5.8.0-10.el7ost.x86_64.rpm SHA-256: 499214bc85423de5f400f08859fca137722501ee833886ece6504b92086f8187
collectd-generic-jmx-5.8.0-10.el7ost.x86_64.rpm SHA-256: 9295d3d36d48cfef408c525f2d3ae641f5ad64d702a563936831ecc45ad4a2c0
collectd-ipmi-5.8.0-10.el7ost.x86_64.rpm SHA-256: 7a4fcfbb26a7d8e2c69142d1b48fff9e575cf4158063b5f5c75d3737729b4b81
collectd-iptables-5.8.0-10.el7ost.x86_64.rpm SHA-256: 3faa59c85ed61f53c1f3543706b07e0d5523a564e403129462d8b95e71c0e758
collectd-ipvs-5.8.0-10.el7ost.x86_64.rpm SHA-256: 564cce74bb0c907b36e1c1e5cedbad5be4e2adc0a91df98f16bb59d7826b2bf1
collectd-java-5.8.0-10.el7ost.x86_64.rpm SHA-256: 63dfb88be55bcbd5c19fbcce2f68669c9cdfec9be1b61be0ba0c8c92bacd4b8b
collectd-log_logstash-5.8.0-10.el7ost.x86_64.rpm SHA-256: fdc1b98ac15cde76bdbbf7514c7bc17d9b2682202308534f91696963b233374a
collectd-mcelog-5.8.0-10.el7ost.x86_64.rpm SHA-256: 72a02f3a1824b2d6cb7ac82519039a6f92cf3a534c499bf46d4111b885d68ca1
collectd-memcachec-5.8.0-10.el7ost.x86_64.rpm SHA-256: d4e5252a93eb98532d809b6765eceee7e066b5a86310bb7ea810d8bff56f2d01
collectd-mysql-5.8.0-10.el7ost.x86_64.rpm SHA-256: 640d08152e962b08ea2483cd4c7582ed048134d61373a5a27d48a78627ee00e7
collectd-netlink-5.8.0-10.el7ost.x86_64.rpm SHA-256: 0c6eda405063f10d38dbb24819e49f708e565cef1eb221f60d5e3fac6adf627f
collectd-nginx-5.8.0-10.el7ost.x86_64.rpm SHA-256: 2e2d8c20e6f6563252d31b7e10da8375191bb47f656ea6d5e6d86e2d391d1d04
collectd-notify_email-5.8.0-10.el7ost.x86_64.rpm SHA-256: 57540bd6f65c9229f0fda915523008c96787678dbb0cf6c537d706e78a8b422f
collectd-openldap-5.8.0-10.el7ost.x86_64.rpm SHA-256: 5437d3fc9debb49bcc543064822d805d606cf7b961b67727320bf124704b6b32
collectd-ovs-events-5.8.0-10.el7ost.x86_64.rpm SHA-256: 03c8a30e1c46a1f83c30578606c19ae69e1ee719cfabb80b9b025d00d20c8f54
collectd-ovs-stats-5.8.0-10.el7ost.x86_64.rpm SHA-256: 7c6d687f47eb1b5477bbba15442472cdd25499b743d3bb9ecb780b49f91751d0
collectd-ping-5.8.0-10.el7ost.x86_64.rpm SHA-256: 21ec31264952afe140c2d3670254e2acb4562cd4b2063ef5550dc71b54da76d4
collectd-postgresql-5.8.0-10.el7ost.x86_64.rpm SHA-256: 61e990fb4b77873a97cb79cc2947c8990ef73ffd4081799069fd2ae5a9c24668
collectd-python-5.8.0-10.el7ost.x86_64.rpm SHA-256: bb55a0c1c73d431825340fade395513764d8750b96942bb3fbf48f375a268c4f
collectd-rdt-5.8.0-10.el7ost.x86_64.rpm SHA-256: 2c2218ea4a14ac05af423493c90db628df90d21c3bd68d3bb34a9e0c2f08aa9c
collectd-rrdcached-5.8.0-10.el7ost.x86_64.rpm SHA-256: 6282c1473a1f08950ef10a492db94d22862018fc8728744859d7e590a42f63c0
collectd-rrdtool-5.8.0-10.el7ost.x86_64.rpm SHA-256: b6eaf9b357508801c359da4fcabdbcf3dd0c039b1ed0790df0993bfb5ee435b7
collectd-sensors-5.8.0-10.el7ost.x86_64.rpm SHA-256: b265d6948a10e4694aa20d53910b6453b319c3c0dd29dd97f2ce45e5fd6161af
collectd-smart-5.8.0-10.el7ost.x86_64.rpm SHA-256: 57d5399c51d60a4533f1da1dde413e93f952873f6b0bf35d43dc54fce984e3d7
collectd-snmp-5.8.0-10.el7ost.x86_64.rpm SHA-256: 1044a6d88896444b7a5e273722fa11dcd06fda269db6d765197bf4ade861014e
collectd-snmp-agent-5.8.0-10.el7ost.x86_64.rpm SHA-256: 2ab262a169569f6c5ec30c37e6d827bdc18730e10785870963d378941f77960a
collectd-turbostat-5.8.0-10.el7ost.x86_64.rpm SHA-256: 1b731068ebe83dae2db43523895b309990dd94393042604c10eb708837c46459
collectd-utils-5.8.0-10.el7ost.x86_64.rpm SHA-256: 86eae3f3fd6363f5273803c17e2e703837028bdb53c6c015fdfabcf097540c29
collectd-virt-5.8.0-10.el7ost.x86_64.rpm SHA-256: a5d8de4fcecd722ced7939901c4106ed2ec22eee3e1d3e88514814903400efa3
collectd-write_http-5.8.0-10.el7ost.x86_64.rpm SHA-256: f0d5901dc530b7ccfcccec7e98db34b16bafc2b769cd516371d593f5291e8312
collectd-write_sensu-5.8.0-10.el7ost.x86_64.rpm SHA-256: 20223248f9a3b43a37b0556131c12f8d42e908e2605bb182bfcb2dd907819b58
collectd-write_tsdb-5.8.0-10.el7ost.x86_64.rpm SHA-256: 32063dc9b201dd557371403b4dee20c82f3f8e6e3c9c32c5a13b196beba81bde
collectd-zookeeper-5.8.0-10.el7ost.x86_64.rpm SHA-256: 9995f5d7db045a3a4e8f90924bfbbabb22497cb735fed1684b8040496ad0fba6
intel-cmt-cat-1.0.1-1.el7ost.x86_64.rpm SHA-256: e73c32b661a746a30df301262ee40eb7a411de629354129f8d9c561e791d6bef
libcollectdclient-5.8.0-10.el7ost.x86_64.rpm SHA-256: 516ef475d7d1ad43eac554adc64db67326820a6c2cef6e3454cf37d091f31ff5
perl-Collectd-5.8.0-10.el7ost.x86_64.rpm SHA-256: 10ec0951f5bf2bfce00a4c73d0bcb3a13a0ec6f3fb65d206281c7e790afacc86

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

About

  • Red Hat Subscription Value
  • About Red Hat
  • Red Hat Jobs
Copyright © 2023 Red Hat, Inc.
  • Privacy Statement
  • Customer Portal Terms of Use
  • All Policies and Guidelines
Red Hat Summit
Twitter