Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:1061 - Security Advisory
Issued:
2024-02-29
Updated:
2024-02-29

RHSA-2024:1061 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: Red Hat Satellite 6 security and bug fix update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update is now available for Red Hat Satellite 6.13 for RHEL 8.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Red Hat Satellite is a system management solution that allows organizations to
configure and maintain their systems without the necessity to provide public
Internet access to their servers or other client systems. It performs
provisioning and configuration management of predefined standard operating
environments.

Security Fix(es):

  • satellite: Blind SSRF via Referer header (CVE-2022-4130)
  • mosquitto: memory leak leads to unresponsive broker (CVE-2023-0809, CVE-2023-28366, CVE-2023-3592)
  • foreman: World readable file containing secrets (CVE-2023-4886)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • Long running postgres threads during content-export (BZ#2257299)
  • After upstream repo switched to zst compression, Satellite 6.12.5.1 unable to sync (BZ#2257300)
  • Actions::ForemanLeapp::PreupgradeJob fails with null value in column "preupgrade_report_id" violates not-null constraint when run with non-admin user (BZ#2257302)
  • Puppet reports without any messages don't get an origin (BZ#2257314)
  • Provisioning vm host fails with error "Failed to attach ISO image to CDROM drive of instance client.example.com: InvalidPowerState: The attempted operation cannot be performed in the current state (Powered on)". (BZ#2257316)
  • [Improvement] RefreshRepos step in Capsule Sync to refresh just repos to sync (BZ#2260526)
  • Support Satellite Clone running on Python 3.12 (BZ#2264354)
  • Support Satellite Ansible Collection running on Python 3.12 (BZ#2264918)
  • Unable to sync library/busybox from gcr.io (BZ#2265149)

Solution

Before applying this update, make sure all previously released errata relevant to your system have been applied.

For detailed instructions how to apply this update, refer to:

https://access.redhat.com/documentation/en-us/red_hat_satellite/6.6/html/upgrading_and_updating_red_hat_satellite/updating_satellite_server_capsule_server_and_content_hosts

Affected Products

  • Red Hat Satellite 6.13 x86_64
  • Red Hat Satellite Capsule 6.13 x86_64
  • Red Hat Enterprise Linux for x86_64 8 x86_64

Fixes

  • BZ - 2145254 - CVE-2022-4130 satellite: Blind SSRF via Referer header
  • BZ - 2230135 - CVE-2023-4886 foreman: World readable file containing secrets
  • BZ - 2236882 - CVE-2023-0809 CVE-2023-28366 CVE-2023-3592 mosquitto: memory leak leads to unresponsive broker
  • BZ - 2257299 - Long running postgres threads during content-export
  • BZ - 2257300 - After upstream repo switched to zst compression, Satellite 6.12.5.1 unable to sync
  • BZ - 2257302 - Actions::ForemanLeapp::PreupgradeJob fails with null value in column "preupgrade_report_id" violates not-null constraint when run with non-admin user
  • BZ - 2257314 - Puppet reports without any messages don't get an origin
  • BZ - 2257316 - Provisioning vm host fails with error "Failed to attach ISO image to CDROM drive of instance client.example.com: InvalidPowerState: The attempted operation cannot be performed in the current state (Powered on)".
  • BZ - 2260526 - [Improvement] RefreshRepos step in Capsule Sync to refresh just repos to sync
  • BZ - 2264354 - Support Satellite Clone running on Python 3.12
  • BZ - 2264918 - Support Satellite Ansible Collection running on Python 3.12
  • BZ - 2265149 - Unable to sync library/busybox from gcr.io

CVEs

  • CVE-2022-4130
  • CVE-2023-0809
  • CVE-2023-3592
  • CVE-2023-4886
  • CVE-2023-28366

References

  • https://access.redhat.com/security/updates/classification/#moderate
  • https://access.redhat.com/documentation/en-us/red_hat_satellite/6.13/html/upgrading_and_updating_red_hat_satellite/index
  • https://access.redhat.com/security/vulnerabilities/RHSB-2023-003
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Satellite 6.13

SRPM
ansible-collection-redhat-satellite-3.9.0-3.el8sat.src.rpm SHA-256: 76275821451f4da035b867148268c28a6c3e75905de4558e01fc175a4112d369
createrepo_c-1.0.2-2.el8pc.src.rpm SHA-256: 56f04b78638b6d5389958625e692920ac4a342e1b4408d12a372bae2a5a82acc
foreman-3.5.1.24-1.el8sat.src.rpm SHA-256: e18ee36a42b753795f0f5ab6b060692062df88ca0411defbeb4a50ffe2ee0e2d
foreman-installer-3.5.2.7-1.el8sat.src.rpm SHA-256: a7e0ad9cc025623ca55eb25840643e42b5305725266b6ce3354c1dc9e2000572
mosquitto-2.0.17-1.el8sat.src.rpm SHA-256: cfb0dd1bf29148bb00cc8da317c187f5418d0edbe24e256750d54dc05599d487
python-pulp-container-2.14.11-1.el8pc.src.rpm SHA-256: 7c7f90d1a52f4357098491d86916223f86b88a1f229fc117d57c982a0ed5639a
python-pulp-rpm-3.18.19-2.el8pc.src.rpm SHA-256: 1d3b4ab9ad01e254a244c4412ac07df095eaf5b6c09e84b1350c7fb8f7a19825
rubygem-foreman_bootdisk-21.0.5-1.el8sat.src.rpm SHA-256: f1f3d2ea8ef269386be79c1f2bef3e854ed795370c1e41ccb7650b4467e966eb
rubygem-foreman_leapp-0.1.13-2.el8sat.src.rpm SHA-256: 608285ce62e29866f993b1bff5b86d8573ed5c1829e51936d4000e87821db142
rubygem-katello-4.7.0.36-1.el8sat.src.rpm SHA-256: 67078b31a00c699c847f8fa386c2804563b295d317ded120a46085a87935ea40
satellite-6.13.7-1.el8sat.src.rpm SHA-256: 3efd1971a4cf7b651c785c5affe0ab976d1cdfaaf8e68b8a5241b86230700d10
x86_64
ansible-collection-redhat-satellite-3.9.0-3.el8sat.noarch.rpm SHA-256: ae02b92c2c71fd865d3cc10e3114504d41f89c3e93f9fecf491476205f56f615
createrepo_c-1.0.2-2.el8pc.x86_64.rpm SHA-256: 0e16bf1c3396e5ee489dbc05f4c1ac1d68c8ea4fece2efdfd3311f5c6eba0520
createrepo_c-debuginfo-1.0.2-2.el8pc.x86_64.rpm SHA-256: 260b3b349e6282a79a9a2597f7f0682b90ecc1bab7e389ed631473eb262c403d
createrepo_c-debugsource-1.0.2-2.el8pc.x86_64.rpm SHA-256: 8792748b2fd9abe26c43164542eb80100c2e882ae6e23d484af7ca4cd157ba2d
createrepo_c-libs-1.0.2-2.el8pc.x86_64.rpm SHA-256: 49c14c83e9aedd825bd61de4b4f778ac6866d0fb268dc025ecc6495228238bc1
createrepo_c-libs-debuginfo-1.0.2-2.el8pc.x86_64.rpm SHA-256: 4e2d2e59afbd118b268a8be92bbe0420fd3fbf03d4cdd03197deb0dc9a699151
foreman-3.5.1.24-1.el8sat.noarch.rpm SHA-256: a3252fe2829881f328f1b1eaa94259a86be58b7a94358c959486fdaaa738cb9a
foreman-cli-3.5.1.24-1.el8sat.noarch.rpm SHA-256: b1459e7005659866984c191cef94dcbb1d2439605f908946a17fd617c11987a6
foreman-debug-3.5.1.24-1.el8sat.noarch.rpm SHA-256: bbab7692fa5a41768e17a4d68917a3688187dec500b4b2b2b9af2fe04bf455d9
foreman-dynflow-sidekiq-3.5.1.24-1.el8sat.noarch.rpm SHA-256: bab605f734b57d8e02a904a8d538952b80e2c3e6b5cc4061c48003b42cc43969
foreman-ec2-3.5.1.24-1.el8sat.noarch.rpm SHA-256: d920fadaca9d71f3b30cc75c461f7cd4d98f97506d75e6183e8133cd7cea5d6e
foreman-installer-3.5.2.7-1.el8sat.noarch.rpm SHA-256: 95795caef00a8d83aa63875f666df059abb77c7788808d49f9b5f16ec22cb1f9
foreman-installer-katello-3.5.2.7-1.el8sat.noarch.rpm SHA-256: fe3a28027e8ea717694c2f14382dd4c20cc2b8b4d66c1f09a56713ecf6328fff
foreman-journald-3.5.1.24-1.el8sat.noarch.rpm SHA-256: 05b1ea533ea9884e9d3a710b4c1b38538bc456954a7f8dcea67a5d512cfc5896
foreman-libvirt-3.5.1.24-1.el8sat.noarch.rpm SHA-256: 0aecffd4d49fc138b6386d01430d516b12a3d8699125ddad7aa01262be7d9523
foreman-openstack-3.5.1.24-1.el8sat.noarch.rpm SHA-256: 991149a565523ed2579ca758cbbb4c09c261d34dbdedb178c09925ccc261240e
foreman-ovirt-3.5.1.24-1.el8sat.noarch.rpm SHA-256: c7d74dac2f325270123597946fff19c218e464785e8caee5dc9087f6f5084664
foreman-postgresql-3.5.1.24-1.el8sat.noarch.rpm SHA-256: a4806a36a6e8eec10cefbc0bea38d343b76f914d6e56c934ba41eeb188cf2e03
foreman-service-3.5.1.24-1.el8sat.noarch.rpm SHA-256: 3ce1bb143c109fb534538b48326591b86ff43e7a3c96cc4412b1a2d27c839760
foreman-telemetry-3.5.1.24-1.el8sat.noarch.rpm SHA-256: c2199b1fa33469d4710fdacf08f80d133cc9607e329e46860bd99de28dafbb68
foreman-vmware-3.5.1.24-1.el8sat.noarch.rpm SHA-256: fb7bf2d75e848046cb9d5068df2ade661b49468560503e7dd8d86978ebea418a
mosquitto-2.0.17-1.el8sat.x86_64.rpm SHA-256: c46d1d6641b4df7b75d57741b7d45d4c2d608cc3178458fce8cb36ac1e219e88
mosquitto-debuginfo-2.0.17-1.el8sat.x86_64.rpm SHA-256: b0b83a4c221083c113470c8bb19ee457fa6b16d38460309fb98f2f2f97645659
mosquitto-debugsource-2.0.17-1.el8sat.x86_64.rpm SHA-256: 33a98179a3eae6c4f523f824013174d7313d698058ae2c40498469442610388a
python3-createrepo_c-1.0.2-2.el8pc.x86_64.rpm SHA-256: 63af0fffef3b906c3c654b4181304721a7bd7b2a39f8df7a1ff46ce68862fc05
python3-createrepo_c-debuginfo-1.0.2-2.el8pc.x86_64.rpm SHA-256: 12aeefd44fee62e397003049b98e2fdc036de28b82d849c3cbc7d6f7ac071673
python39-createrepo_c-1.0.2-2.el8pc.x86_64.rpm SHA-256: 78ebbc796d90d40a4b964afec52ad4c03c233b6b52819214a84f1715d566aadf
python39-createrepo_c-debuginfo-1.0.2-2.el8pc.x86_64.rpm SHA-256: 41c19457b16ea272161416e0ac6dff5a57ec6217b825c997ffde0aee5df9ae4c
python39-pulp-container-2.14.11-1.el8pc.noarch.rpm SHA-256: 6297ed7a0ef1a815327192e16575e6124ec8c448c358f24a2e14f021c53e177c
python39-pulp-rpm-3.18.19-2.el8pc.noarch.rpm SHA-256: 56d6ff218e7b04b74e9cb08b523c06d8eb87979c82b150d00592f2d4893278cd
rubygem-foreman_bootdisk-21.0.5-1.el8sat.noarch.rpm SHA-256: 1e97ef0933bf01f9b392d0bf45ad83363a8870770ff5b64835eec66cac7b3484
rubygem-foreman_leapp-0.1.13-2.el8sat.noarch.rpm SHA-256: 2f8ac4d1c8d53f682ee8a8ed0c9b983db9620bb4f82b587e575584398ff05725
rubygem-katello-4.7.0.36-1.el8sat.noarch.rpm SHA-256: 21c49ec004ba6bd6713469e46dca44c7e0cb964aa90185ec4e59f79d1e68aea9
satellite-6.13.7-1.el8sat.noarch.rpm SHA-256: 11cb4a2daf7c6206d2ec6fcf4b4a33fe361b79a8577d7769f9572479fb2669c2
satellite-cli-6.13.7-1.el8sat.noarch.rpm SHA-256: ddab13a6590f429e20a0b1c00c729cdeba6d8d231be1e98e8db883a7a9a54913
satellite-common-6.13.7-1.el8sat.noarch.rpm SHA-256: 0ab0f675a0d86479f0d02c5b4a00e1d747cc7bb877a9ddaa7c4374166372db4d

Red Hat Satellite Capsule 6.13

SRPM
ansible-collection-redhat-satellite-3.9.0-3.el8sat.src.rpm SHA-256: 76275821451f4da035b867148268c28a6c3e75905de4558e01fc175a4112d369
createrepo_c-1.0.2-2.el8pc.src.rpm SHA-256: 56f04b78638b6d5389958625e692920ac4a342e1b4408d12a372bae2a5a82acc
foreman-3.5.1.24-1.el8sat.src.rpm SHA-256: e18ee36a42b753795f0f5ab6b060692062df88ca0411defbeb4a50ffe2ee0e2d
foreman-installer-3.5.2.7-1.el8sat.src.rpm SHA-256: a7e0ad9cc025623ca55eb25840643e42b5305725266b6ce3354c1dc9e2000572
mosquitto-2.0.17-1.el8sat.src.rpm SHA-256: cfb0dd1bf29148bb00cc8da317c187f5418d0edbe24e256750d54dc05599d487
python-pulp-container-2.14.11-1.el8pc.src.rpm SHA-256: 7c7f90d1a52f4357098491d86916223f86b88a1f229fc117d57c982a0ed5639a
python-pulp-rpm-3.18.19-2.el8pc.src.rpm SHA-256: 1d3b4ab9ad01e254a244c4412ac07df095eaf5b6c09e84b1350c7fb8f7a19825
satellite-6.13.7-1.el8sat.src.rpm SHA-256: 3efd1971a4cf7b651c785c5affe0ab976d1cdfaaf8e68b8a5241b86230700d10
x86_64
ansible-collection-redhat-satellite-3.9.0-3.el8sat.noarch.rpm SHA-256: ae02b92c2c71fd865d3cc10e3114504d41f89c3e93f9fecf491476205f56f615
createrepo_c-1.0.2-2.el8pc.x86_64.rpm SHA-256: 0e16bf1c3396e5ee489dbc05f4c1ac1d68c8ea4fece2efdfd3311f5c6eba0520
createrepo_c-debuginfo-1.0.2-2.el8pc.x86_64.rpm SHA-256: 260b3b349e6282a79a9a2597f7f0682b90ecc1bab7e389ed631473eb262c403d
createrepo_c-debugsource-1.0.2-2.el8pc.x86_64.rpm SHA-256: 8792748b2fd9abe26c43164542eb80100c2e882ae6e23d484af7ca4cd157ba2d
createrepo_c-libs-1.0.2-2.el8pc.x86_64.rpm SHA-256: 49c14c83e9aedd825bd61de4b4f778ac6866d0fb268dc025ecc6495228238bc1
createrepo_c-libs-debuginfo-1.0.2-2.el8pc.x86_64.rpm SHA-256: 4e2d2e59afbd118b268a8be92bbe0420fd3fbf03d4cdd03197deb0dc9a699151
foreman-debug-3.5.1.24-1.el8sat.noarch.rpm SHA-256: bbab7692fa5a41768e17a4d68917a3688187dec500b4b2b2b9af2fe04bf455d9
foreman-installer-3.5.2.7-1.el8sat.noarch.rpm SHA-256: 95795caef00a8d83aa63875f666df059abb77c7788808d49f9b5f16ec22cb1f9
foreman-installer-katello-3.5.2.7-1.el8sat.noarch.rpm SHA-256: fe3a28027e8ea717694c2f14382dd4c20cc2b8b4d66c1f09a56713ecf6328fff
mosquitto-2.0.17-1.el8sat.x86_64.rpm SHA-256: c46d1d6641b4df7b75d57741b7d45d4c2d608cc3178458fce8cb36ac1e219e88
mosquitto-debuginfo-2.0.17-1.el8sat.x86_64.rpm SHA-256: b0b83a4c221083c113470c8bb19ee457fa6b16d38460309fb98f2f2f97645659
mosquitto-debugsource-2.0.17-1.el8sat.x86_64.rpm SHA-256: 33a98179a3eae6c4f523f824013174d7313d698058ae2c40498469442610388a
python3-createrepo_c-1.0.2-2.el8pc.x86_64.rpm SHA-256: 63af0fffef3b906c3c654b4181304721a7bd7b2a39f8df7a1ff46ce68862fc05
python3-createrepo_c-debuginfo-1.0.2-2.el8pc.x86_64.rpm SHA-256: 12aeefd44fee62e397003049b98e2fdc036de28b82d849c3cbc7d6f7ac071673
python39-createrepo_c-1.0.2-2.el8pc.x86_64.rpm SHA-256: 78ebbc796d90d40a4b964afec52ad4c03c233b6b52819214a84f1715d566aadf
python39-createrepo_c-debuginfo-1.0.2-2.el8pc.x86_64.rpm SHA-256: 41c19457b16ea272161416e0ac6dff5a57ec6217b825c997ffde0aee5df9ae4c
python39-pulp-container-2.14.11-1.el8pc.noarch.rpm SHA-256: 6297ed7a0ef1a815327192e16575e6124ec8c448c358f24a2e14f021c53e177c
python39-pulp-rpm-3.18.19-2.el8pc.noarch.rpm SHA-256: 56d6ff218e7b04b74e9cb08b523c06d8eb87979c82b150d00592f2d4893278cd
satellite-capsule-6.13.7-1.el8sat.noarch.rpm SHA-256: d25bf450ddf8b3d9b877ac938ba6b0c9e2edc630779cfabdddd92fcb06b312d9
satellite-common-6.13.7-1.el8sat.noarch.rpm SHA-256: 0ab0f675a0d86479f0d02c5b4a00e1d747cc7bb877a9ddaa7c4374166372db4d

Red Hat Enterprise Linux for x86_64 8

SRPM
foreman-3.5.1.24-1.el8sat.src.rpm SHA-256: e18ee36a42b753795f0f5ab6b060692062df88ca0411defbeb4a50ffe2ee0e2d
satellite-6.13.7-1.el8sat.src.rpm SHA-256: 3efd1971a4cf7b651c785c5affe0ab976d1cdfaaf8e68b8a5241b86230700d10
satellite-clone-3.5.0-1.el8sat.src.rpm SHA-256: 263874ae2742749d0ab9793bea2e72ad5b8ab8ab5eea8f7cc40121f67c41ea35
x86_64
foreman-cli-3.5.1.24-1.el8sat.noarch.rpm SHA-256: b1459e7005659866984c191cef94dcbb1d2439605f908946a17fd617c11987a6
satellite-cli-6.13.7-1.el8sat.noarch.rpm SHA-256: ddab13a6590f429e20a0b1c00c729cdeba6d8d231be1e98e8db883a7a9a54913
satellite-clone-3.5.0-1.el8sat.noarch.rpm SHA-256: 1c2d07f144702acb36f43d1fd3d73f3159306ce025d5aeb2aca359263de90494

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility