Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2023:7730 - Security Advisory
Issued:
2023-12-12
Updated:
2023-12-12

RHSA-2023:7730 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: tracker-miners security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for tracker-miners is now available for Red Hat Enterprise Linux 8.8 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Tracker is a powerful desktop-neutral first class object database, tag/metadata database and search tool. This package contains various miners and metadata extractors for tracker.

Security Fix(es):

  • tracker-miners: sandbox escape (CVE-2023-5557)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.8 x86_64
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.8 s390x
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.8 ppc64le
  • Red Hat Enterprise Linux Server - TUS 8.8 x86_64
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.8 aarch64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 x86_64

Fixes

  • BZ - 2243096 - CVE-2023-5557 tracker-miners: sandbox escape

CVEs

  • CVE-2023-5557

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.8

SRPM
tracker-miners-2.1.5-2.el8_8.1.src.rpm SHA-256: 23cecf8c811d9a355cc4c615604179a379f9fc0f766269a538956a091d385c34
x86_64
tracker-miners-2.1.5-2.el8_8.1.i686.rpm SHA-256: 35ee692a794909e0171a8b1c21c63bb5445ceba845325a3b5fc7e4560797c41f
tracker-miners-2.1.5-2.el8_8.1.x86_64.rpm SHA-256: 8e8b322fdd2b54d26cc72e59e917ceb72d2740db980d7f09b1e3235a99e21860
tracker-miners-debuginfo-2.1.5-2.el8_8.1.i686.rpm SHA-256: 74cf5d3a241e455b5048da5aaf25fa16b93df8038bb598b4065d58ce9aff4090
tracker-miners-debuginfo-2.1.5-2.el8_8.1.x86_64.rpm SHA-256: 4a0d7f35710c8553d6857aa2b1fa2a29192d0282b05a39bffa1abb7aedce0041
tracker-miners-debugsource-2.1.5-2.el8_8.1.i686.rpm SHA-256: 7f1bc582b26f267735945e98a0b8be0f4263f1c7dff2b07dbb9406974ed0b5cf
tracker-miners-debugsource-2.1.5-2.el8_8.1.x86_64.rpm SHA-256: 9ab8c36eb75f932b97b0012834149e79f9abc8d3f14174e3dba0fb0059021314

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.8

SRPM
tracker-miners-2.1.5-2.el8_8.1.src.rpm SHA-256: 23cecf8c811d9a355cc4c615604179a379f9fc0f766269a538956a091d385c34
s390x
tracker-miners-2.1.5-2.el8_8.1.s390x.rpm SHA-256: 25902991b2356e47fa547e3a6ae4c750b043130093fb089f167558598fd0bc91
tracker-miners-debuginfo-2.1.5-2.el8_8.1.s390x.rpm SHA-256: 704ac703384f893120a829ee22576a9973a065a1c920b878f64b5061d1944c97
tracker-miners-debugsource-2.1.5-2.el8_8.1.s390x.rpm SHA-256: 9762c009f6d96ef943c33a1807d82ae6ef6a0d10243b6bc30e58a7e954fc1ed8

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.8

SRPM
tracker-miners-2.1.5-2.el8_8.1.src.rpm SHA-256: 23cecf8c811d9a355cc4c615604179a379f9fc0f766269a538956a091d385c34
ppc64le
tracker-miners-2.1.5-2.el8_8.1.ppc64le.rpm SHA-256: 6ec8c04f3f05ee8f6b860487d73c1c1e8fde317708fe8ec72041002edc69b1a4
tracker-miners-debuginfo-2.1.5-2.el8_8.1.ppc64le.rpm SHA-256: a446409497b1a9793f815c2366b9d4a030ac8c4fbfdec94335e0999ef1c0c97d
tracker-miners-debugsource-2.1.5-2.el8_8.1.ppc64le.rpm SHA-256: 6c8086004cab593a8184ca7aa0d4da388ee9eede578aad8ade6f6ffd654139a9

Red Hat Enterprise Linux Server - TUS 8.8

SRPM
tracker-miners-2.1.5-2.el8_8.1.src.rpm SHA-256: 23cecf8c811d9a355cc4c615604179a379f9fc0f766269a538956a091d385c34
x86_64
tracker-miners-2.1.5-2.el8_8.1.i686.rpm SHA-256: 35ee692a794909e0171a8b1c21c63bb5445ceba845325a3b5fc7e4560797c41f
tracker-miners-2.1.5-2.el8_8.1.x86_64.rpm SHA-256: 8e8b322fdd2b54d26cc72e59e917ceb72d2740db980d7f09b1e3235a99e21860
tracker-miners-debuginfo-2.1.5-2.el8_8.1.i686.rpm SHA-256: 74cf5d3a241e455b5048da5aaf25fa16b93df8038bb598b4065d58ce9aff4090
tracker-miners-debuginfo-2.1.5-2.el8_8.1.x86_64.rpm SHA-256: 4a0d7f35710c8553d6857aa2b1fa2a29192d0282b05a39bffa1abb7aedce0041
tracker-miners-debugsource-2.1.5-2.el8_8.1.i686.rpm SHA-256: 7f1bc582b26f267735945e98a0b8be0f4263f1c7dff2b07dbb9406974ed0b5cf
tracker-miners-debugsource-2.1.5-2.el8_8.1.x86_64.rpm SHA-256: 9ab8c36eb75f932b97b0012834149e79f9abc8d3f14174e3dba0fb0059021314

Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.8

SRPM
tracker-miners-2.1.5-2.el8_8.1.src.rpm SHA-256: 23cecf8c811d9a355cc4c615604179a379f9fc0f766269a538956a091d385c34
aarch64
tracker-miners-2.1.5-2.el8_8.1.aarch64.rpm SHA-256: 054faf815793c532e1ee342795bf44269b6dbb93f8c83a464108ddb3a1b7486d
tracker-miners-debuginfo-2.1.5-2.el8_8.1.aarch64.rpm SHA-256: 6d235f60da942b678322cc06d9e5a7a2e69a262a2112aa2ffd41277b0bbccea5
tracker-miners-debugsource-2.1.5-2.el8_8.1.aarch64.rpm SHA-256: 31368ffad7a869282aa609402dd196f99eb9ff601d1c5857303c10e744c33ea8

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.8

SRPM
tracker-miners-2.1.5-2.el8_8.1.src.rpm SHA-256: 23cecf8c811d9a355cc4c615604179a379f9fc0f766269a538956a091d385c34
ppc64le
tracker-miners-2.1.5-2.el8_8.1.ppc64le.rpm SHA-256: 6ec8c04f3f05ee8f6b860487d73c1c1e8fde317708fe8ec72041002edc69b1a4
tracker-miners-debuginfo-2.1.5-2.el8_8.1.ppc64le.rpm SHA-256: a446409497b1a9793f815c2366b9d4a030ac8c4fbfdec94335e0999ef1c0c97d
tracker-miners-debugsource-2.1.5-2.el8_8.1.ppc64le.rpm SHA-256: 6c8086004cab593a8184ca7aa0d4da388ee9eede578aad8ade6f6ffd654139a9

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8

SRPM
tracker-miners-2.1.5-2.el8_8.1.src.rpm SHA-256: 23cecf8c811d9a355cc4c615604179a379f9fc0f766269a538956a091d385c34
x86_64
tracker-miners-2.1.5-2.el8_8.1.i686.rpm SHA-256: 35ee692a794909e0171a8b1c21c63bb5445ceba845325a3b5fc7e4560797c41f
tracker-miners-2.1.5-2.el8_8.1.x86_64.rpm SHA-256: 8e8b322fdd2b54d26cc72e59e917ceb72d2740db980d7f09b1e3235a99e21860
tracker-miners-debuginfo-2.1.5-2.el8_8.1.i686.rpm SHA-256: 74cf5d3a241e455b5048da5aaf25fa16b93df8038bb598b4065d58ce9aff4090
tracker-miners-debuginfo-2.1.5-2.el8_8.1.x86_64.rpm SHA-256: 4a0d7f35710c8553d6857aa2b1fa2a29192d0282b05a39bffa1abb7aedce0041
tracker-miners-debugsource-2.1.5-2.el8_8.1.i686.rpm SHA-256: 7f1bc582b26f267735945e98a0b8be0f4263f1c7dff2b07dbb9406974ed0b5cf
tracker-miners-debugsource-2.1.5-2.el8_8.1.x86_64.rpm SHA-256: 9ab8c36eb75f932b97b0012834149e79f9abc8d3f14174e3dba0fb0059021314

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility