Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2023:7531 - Security Advisory
Issued:
2023-11-28
Updated:
2023-11-28

RHSA-2023:7531 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: pixman security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for pixman is now available for Red Hat Enterprise Linux 8.8 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Pixman is a pixel manipulation library for the X Window System and Cairo.

Security Fix(es):

  • pixman: Integer overflow in pixman_sample_floor_y leading to heap out-of-bounds write (CVE-2022-44638)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8 x86_64
  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.8 x86_64
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.8 s390x
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.8 ppc64le
  • Red Hat Enterprise Linux Server - TUS 8.8 x86_64
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.8 aarch64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64

Fixes

  • BZ - 2139988 - CVE-2022-44638 pixman: Integer overflow in pixman_sample_floor_y leading to heap out-of-bounds write

CVEs

  • CVE-2022-44638

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.8

SRPM
pixman-0.38.4-3.el8_8.src.rpm SHA-256: 752c94dd906be1dd7e74c0a55d2f8aab9326826031d2b8cd3d295093dc68ce2a
x86_64
pixman-0.38.4-3.el8_8.i686.rpm SHA-256: 3cff2b4c7a87711bce53c01b08a4aad088b7a14706f6ba238a35111730fc184b
pixman-0.38.4-3.el8_8.x86_64.rpm SHA-256: af580d07d563a40bf4980c075d3a746e30fbf654477f52f6001af1960ec482ed
pixman-debuginfo-0.38.4-3.el8_8.i686.rpm SHA-256: 8ccd8992731fbcae713bd940f642483cb78a8a990f0eb2f91f3efb0c1dfd6b88
pixman-debuginfo-0.38.4-3.el8_8.x86_64.rpm SHA-256: 8cacc6cd60d57d6a29c375e064057fea58674005854e1db57a9df03491d81bf1
pixman-debugsource-0.38.4-3.el8_8.i686.rpm SHA-256: 761f843721f2b71aaff2cad7aff723863f341fb72a94c8ba5c788f9ef42f8fce
pixman-debugsource-0.38.4-3.el8_8.x86_64.rpm SHA-256: 1a50a8fa8dc9d9d88c5a1bb30c2f8b69a2fdb57bb00e89f76615dfd128acd8c7
pixman-devel-0.38.4-3.el8_8.i686.rpm SHA-256: b84fbf82b729e378d7c60432ffee00ae5ba649397f23155a6ddda2c2d52f467f
pixman-devel-0.38.4-3.el8_8.x86_64.rpm SHA-256: ec55e470f5589cbafb2fe4e259a1d609f94f0ade3dc807879d6cfac839e1ae94

Red Hat Enterprise Linux for x86_64 - Extended Update Support Extension 8.8

SRPM
pixman-0.38.4-3.el8_8.src.rpm SHA-256: 752c94dd906be1dd7e74c0a55d2f8aab9326826031d2b8cd3d295093dc68ce2a
x86_64
pixman-0.38.4-3.el8_8.i686.rpm SHA-256: 3cff2b4c7a87711bce53c01b08a4aad088b7a14706f6ba238a35111730fc184b
pixman-0.38.4-3.el8_8.x86_64.rpm SHA-256: af580d07d563a40bf4980c075d3a746e30fbf654477f52f6001af1960ec482ed
pixman-debuginfo-0.38.4-3.el8_8.i686.rpm SHA-256: 8ccd8992731fbcae713bd940f642483cb78a8a990f0eb2f91f3efb0c1dfd6b88
pixman-debuginfo-0.38.4-3.el8_8.x86_64.rpm SHA-256: 8cacc6cd60d57d6a29c375e064057fea58674005854e1db57a9df03491d81bf1
pixman-debugsource-0.38.4-3.el8_8.i686.rpm SHA-256: 761f843721f2b71aaff2cad7aff723863f341fb72a94c8ba5c788f9ef42f8fce
pixman-debugsource-0.38.4-3.el8_8.x86_64.rpm SHA-256: 1a50a8fa8dc9d9d88c5a1bb30c2f8b69a2fdb57bb00e89f76615dfd128acd8c7
pixman-devel-0.38.4-3.el8_8.i686.rpm SHA-256: b84fbf82b729e378d7c60432ffee00ae5ba649397f23155a6ddda2c2d52f467f
pixman-devel-0.38.4-3.el8_8.x86_64.rpm SHA-256: ec55e470f5589cbafb2fe4e259a1d609f94f0ade3dc807879d6cfac839e1ae94

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.8

SRPM
pixman-0.38.4-3.el8_8.src.rpm SHA-256: 752c94dd906be1dd7e74c0a55d2f8aab9326826031d2b8cd3d295093dc68ce2a
s390x
pixman-0.38.4-3.el8_8.s390x.rpm SHA-256: 2f1099bceca1bd0c5782281dc018f177f7e47fe3485ba5717262b58e84494604
pixman-debuginfo-0.38.4-3.el8_8.s390x.rpm SHA-256: 36e485f03678bdd0b63a3f2e93a0fed0f46617b937ef1a9937d49d3b43a461d4
pixman-debugsource-0.38.4-3.el8_8.s390x.rpm SHA-256: 72f26fc4103bf384aa3bb1f14e37a541b42b3dbb47e84bb9ba2bb5ec0d96628d
pixman-devel-0.38.4-3.el8_8.s390x.rpm SHA-256: de0075864f7c14b5484c5ca49a164357f78d007e69f9073aefe259d1b9331001

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.8

SRPM
pixman-0.38.4-3.el8_8.src.rpm SHA-256: 752c94dd906be1dd7e74c0a55d2f8aab9326826031d2b8cd3d295093dc68ce2a
ppc64le
pixman-0.38.4-3.el8_8.ppc64le.rpm SHA-256: 53839d417468b0831f5af31be23d088a391b410483f27d9c27da5fedd99fdd1e
pixman-debuginfo-0.38.4-3.el8_8.ppc64le.rpm SHA-256: 8045cd80e1bf7d880f24bf4039ce0fca8369119a548466bc0f2a04a4b8944acf
pixman-debugsource-0.38.4-3.el8_8.ppc64le.rpm SHA-256: ba13aeaf26c24a2adc78ece9a0259f3de00b199dafd3bd99844b8e00ce4b9398
pixman-devel-0.38.4-3.el8_8.ppc64le.rpm SHA-256: 5cbed26fc2d10813cdb4190b7a29261a482b0c854d07b03d5f2785c329558ed2

Red Hat Enterprise Linux Server - TUS 8.8

SRPM
pixman-0.38.4-3.el8_8.src.rpm SHA-256: 752c94dd906be1dd7e74c0a55d2f8aab9326826031d2b8cd3d295093dc68ce2a
x86_64
pixman-0.38.4-3.el8_8.i686.rpm SHA-256: 3cff2b4c7a87711bce53c01b08a4aad088b7a14706f6ba238a35111730fc184b
pixman-0.38.4-3.el8_8.x86_64.rpm SHA-256: af580d07d563a40bf4980c075d3a746e30fbf654477f52f6001af1960ec482ed
pixman-debuginfo-0.38.4-3.el8_8.i686.rpm SHA-256: 8ccd8992731fbcae713bd940f642483cb78a8a990f0eb2f91f3efb0c1dfd6b88
pixman-debuginfo-0.38.4-3.el8_8.x86_64.rpm SHA-256: 8cacc6cd60d57d6a29c375e064057fea58674005854e1db57a9df03491d81bf1
pixman-debugsource-0.38.4-3.el8_8.i686.rpm SHA-256: 761f843721f2b71aaff2cad7aff723863f341fb72a94c8ba5c788f9ef42f8fce
pixman-debugsource-0.38.4-3.el8_8.x86_64.rpm SHA-256: 1a50a8fa8dc9d9d88c5a1bb30c2f8b69a2fdb57bb00e89f76615dfd128acd8c7
pixman-devel-0.38.4-3.el8_8.i686.rpm SHA-256: b84fbf82b729e378d7c60432ffee00ae5ba649397f23155a6ddda2c2d52f467f
pixman-devel-0.38.4-3.el8_8.x86_64.rpm SHA-256: ec55e470f5589cbafb2fe4e259a1d609f94f0ade3dc807879d6cfac839e1ae94

Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.8

SRPM
pixman-0.38.4-3.el8_8.src.rpm SHA-256: 752c94dd906be1dd7e74c0a55d2f8aab9326826031d2b8cd3d295093dc68ce2a
aarch64
pixman-0.38.4-3.el8_8.aarch64.rpm SHA-256: 7f49fc4e1293243168f49fe14582bec632b1c728d097ce413d566209eeafd6de
pixman-debuginfo-0.38.4-3.el8_8.aarch64.rpm SHA-256: 91c74ff86b36feb0f3782d10a6c80d0b4ca8ac60b51383fe35db7ce0a493899e
pixman-debugsource-0.38.4-3.el8_8.aarch64.rpm SHA-256: 5de4360a28429a2c06633ef66cc7317c2998632f91e5f409cb6ff89511842121
pixman-devel-0.38.4-3.el8_8.aarch64.rpm SHA-256: 536027ecd93d56ce8290ccbe48e9a10641ea804c7da39f71acbe713e589f88da

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8

SRPM
pixman-0.38.4-3.el8_8.src.rpm SHA-256: 752c94dd906be1dd7e74c0a55d2f8aab9326826031d2b8cd3d295093dc68ce2a
ppc64le
pixman-0.38.4-3.el8_8.ppc64le.rpm SHA-256: 53839d417468b0831f5af31be23d088a391b410483f27d9c27da5fedd99fdd1e
pixman-debuginfo-0.38.4-3.el8_8.ppc64le.rpm SHA-256: 8045cd80e1bf7d880f24bf4039ce0fca8369119a548466bc0f2a04a4b8944acf
pixman-debugsource-0.38.4-3.el8_8.ppc64le.rpm SHA-256: ba13aeaf26c24a2adc78ece9a0259f3de00b199dafd3bd99844b8e00ce4b9398
pixman-devel-0.38.4-3.el8_8.ppc64le.rpm SHA-256: 5cbed26fc2d10813cdb4190b7a29261a482b0c854d07b03d5f2785c329558ed2

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8

SRPM
pixman-0.38.4-3.el8_8.src.rpm SHA-256: 752c94dd906be1dd7e74c0a55d2f8aab9326826031d2b8cd3d295093dc68ce2a
x86_64
pixman-0.38.4-3.el8_8.i686.rpm SHA-256: 3cff2b4c7a87711bce53c01b08a4aad088b7a14706f6ba238a35111730fc184b
pixman-0.38.4-3.el8_8.x86_64.rpm SHA-256: af580d07d563a40bf4980c075d3a746e30fbf654477f52f6001af1960ec482ed
pixman-debuginfo-0.38.4-3.el8_8.i686.rpm SHA-256: 8ccd8992731fbcae713bd940f642483cb78a8a990f0eb2f91f3efb0c1dfd6b88
pixman-debuginfo-0.38.4-3.el8_8.x86_64.rpm SHA-256: 8cacc6cd60d57d6a29c375e064057fea58674005854e1db57a9df03491d81bf1
pixman-debugsource-0.38.4-3.el8_8.i686.rpm SHA-256: 761f843721f2b71aaff2cad7aff723863f341fb72a94c8ba5c788f9ef42f8fce
pixman-debugsource-0.38.4-3.el8_8.x86_64.rpm SHA-256: 1a50a8fa8dc9d9d88c5a1bb30c2f8b69a2fdb57bb00e89f76615dfd128acd8c7
pixman-devel-0.38.4-3.el8_8.i686.rpm SHA-256: b84fbf82b729e378d7c60432ffee00ae5ba649397f23155a6ddda2c2d52f467f
pixman-devel-0.38.4-3.el8_8.x86_64.rpm SHA-256: ec55e470f5589cbafb2fe4e259a1d609f94f0ade3dc807879d6cfac839e1ae94

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility