Synopsis
Critical: python-paramiko security update
Type/Severity
Security Advisory: Critical
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
View affected systems
Topic
An update for python-paramiko is now available for Red Hat Enterprise Linux 7.
Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
The python-paramiko package provides a Python module that implements the SSH2 protocol for encrypted and authenticated connections to remote machines. Unlike SSL, the SSH2 protocol does not require hierarchical certificates signed by a powerful central authority. The protocol also includes the ability to open arbitrary channels to remote services across an encrypted tunnel.
Security Fix(es):
- python-paramiko: Authentication bypass in auth_handler.py (CVE-2018-1000805)
For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.
Affected Products
-
Red Hat Enterprise Linux Server 7 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 7.6 x86_64
-
Red Hat Enterprise Linux Server - AUS 7.6 x86_64
-
Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64
-
Red Hat Enterprise Linux Workstation 7 x86_64
-
Red Hat Enterprise Linux Desktop 7 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 7 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 7.6 s390x
-
Red Hat Enterprise Linux for Power, big endian 7 ppc64
-
Red Hat Enterprise Linux for Power, big endian - Extended Update Support 7.6 ppc64
-
Red Hat Enterprise Linux for Scientific Computing 7 x86_64
-
Red Hat Enterprise Linux for Power, little endian 7 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 7.6 ppc64le
-
Red Hat Enterprise Linux Server - TUS 7.6 x86_64
-
Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x
-
Red Hat Enterprise Linux for ARM 64 7 aarch64
-
Red Hat Enterprise Linux for Power 9 7 ppc64le
-
Red Hat Enterprise Linux EUS Compute Node 7.6 x86_64
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 7.6 ppc64le
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 7.6 x86_64
-
Red Hat Enterprise Linux for IBM System z (Structure A) 7 s390x
-
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64
-
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le
Fixes
-
BZ - 1637263
- CVE-2018-1000805 python-paramiko: Authentication bypass in auth_handler.py
Note:
More recent versions of these packages may be available.
Click a package name for more details.
Red Hat Enterprise Linux Server 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 7.6
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux Server - AUS 7.6
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux Workstation 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux Desktop 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for IBM z Systems 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
s390x |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 7.6
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
s390x |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for Power, big endian 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
ppc64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for Power, big endian - Extended Update Support 7.6
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
ppc64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for Scientific Computing 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for Power, little endian 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
ppc64le |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 7.6
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
ppc64le |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux Server - TUS 7.6
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
s390x |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for ARM 64 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
aarch64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for Power 9 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
ppc64le |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux EUS Compute Node 7.6
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 7.6
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
ppc64le |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 7.6
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
x86_64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux for IBM System z (Structure A) 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
s390x |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
ppc64 |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7
SRPM |
python-paramiko-2.1.1-9.el7.src.rpm
|
SHA-256: 240b492a891132a7cb7a509b80e3454d25c6e47d6367d13cb43c39b9abb6aead |
ppc64le |
python-paramiko-2.1.1-9.el7.noarch.rpm
|
SHA-256: cb20a715f1cc1ebe5061f3a99d153ae218f9fb75e4e2625123a6a0f703aaaf7a |
python-paramiko-doc-2.1.1-9.el7.noarch.rpm
|
SHA-256: 638756feb3ff43a67e091e1affb592a75267ce82c28a67eec695c2e5890f3049 |