Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:1515 - Security Advisory
Issued:
2025-02-17
Updated:
2025-02-17

RHSA-2025:1515 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: idm:DL1 security update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for the idm:DL1 module is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Red Hat Identity Management (IdM) is a centralized authentication, identity management, and authorization solution for both traditional and cloud-based enterprise environments.

Security Fix(es):

  • jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods (CVE-2020-11023)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - AUS 8.2 x86_64

Fixes

  • BZ - 1850004 - CVE-2020-11023 jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods

CVEs

  • CVE-2020-11023

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - AUS 8.2

SRPM
bind-dyndb-ldap-11.2-3.module+el8.2.0+21753+7109ce90.3.src.rpm SHA-256: ef6c9b71d85b77d3f2407ab6ed68e29189708e6c705d5e8de4a002e6c58a0bfc
custodia-0.6.0-3.module+el8.1.0+4098+f286395e.src.rpm SHA-256: b6100bdac9432491fa4251dd7d842fdd781e144a5e8218dfe4fc2c7b7c82e395
ipa-4.8.4-14.module+el8.2.0+22854+05081d30.5.src.rpm SHA-256: 7e899a80c4b123af43116766ea9f2ad919797f7dd5db2427e53e8f1c59463d6f
ipa-healthcheck-0.4-4.module+el8.2.0+5489+95477d9f.src.rpm SHA-256: 89f0b271c38debacd9e806496fa9a353e8052413b78856b15b4aa1d0782f6da9
ipa-idoverride-memberof-0.0.4-6.module+el8.1.0+4098+f286395e.src.rpm SHA-256: 5886821428f563f2d337678d75a64dec040f37f1611ecbc1203ef42cd6379dc6
opendnssec-1.4.14-1.module+el8.1.0+4098+f286395e.src.rpm SHA-256: e045eb69fb90d38ade7c30a3391de3d455e728c8f27a4e95674993c0ddd2d0eb
python-jwcrypto-0.5.0-1.module+el8.1.0+4098+f286395e.src.rpm SHA-256: bb16a237e70d1ca926e78e44749af20a2a638021634a6577a2975acde7f18b17
python-kdcproxy-0.4-5.module+el8.2.0+4691+a05b2456.src.rpm SHA-256: 9f115ba78e802faaad70ed34c4993fe93800eaf7fe99ec7ccb1ca4455d7b3b85
python-qrcode-5.1-12.module+el8.1.0+4098+f286395e.src.rpm SHA-256: 2bfceb8a4bbb850a9aefc6c4f3ae41aa5ceafd5332de472e7bba7355de784285
python-yubico-1.3.2-9.module+el8.1.0+4098+f286395e.src.rpm SHA-256: 0260dd85e9c42230410a89062e79eb26bea8cd2b9609564d8f880328368ab597
pyusb-1.0.0-9.module+el8.1.0+4098+f286395e.src.rpm SHA-256: ff485d9fb55ced1abc92c78709333b4be6b1b94ac4fd5a0c18385571384511a5
slapi-nis-0.56.3-3.module+el8.2.0+10782+8facb0b2.src.rpm SHA-256: cc391aac31b9ad46a20a89e2240c020151cdbee894f961fecf1dcddf419017cb
softhsm-2.4.0-4.module+el8.2.0+5779+a38c524f.src.rpm SHA-256: 58569bd888c6adae41239ee0a0c5b379d4654b03a436dc80b2f893e67f42835f
x86_64
bind-dyndb-ldap-11.2-3.module+el8.2.0+21753+7109ce90.3.x86_64.rpm SHA-256: 7e8c92f0e0f35c31e7d54f305301e4293318687c9cdd53b5c8270ba49fc1dc99
bind-dyndb-ldap-debuginfo-11.2-3.module+el8.2.0+21753+7109ce90.3.x86_64.rpm SHA-256: f1867d119f8a773193ee6db57466469162d2987a4ab60dc3f98fc427a6fdc756
bind-dyndb-ldap-debugsource-11.2-3.module+el8.2.0+21753+7109ce90.3.x86_64.rpm SHA-256: e7b2db5428fe8e360b53847fd356daab4c476c14d1dbf19e7297a80403d8707b
custodia-0.6.0-3.module+el8.1.0+4098+f286395e.noarch.rpm SHA-256: 0e4a6b39176aec62a46d78dc25190c73e74a13a9cab03c6fb3a01c87a50985c1
ipa-client-4.8.4-14.module+el8.2.0+22854+05081d30.5.x86_64.rpm SHA-256: 014ae5740d6734909382bf31c468376c14897874560ac31db26a00a6ae197ef3
ipa-client-common-4.8.4-14.module+el8.2.0+22854+05081d30.5.noarch.rpm SHA-256: 18cc8772724c1a73a3bf86c5fd4670d6abc094baaeb1c64d57af4486befb6dfe
ipa-client-debuginfo-4.8.4-14.module+el8.2.0+22854+05081d30.5.x86_64.rpm SHA-256: b383e2b0fe157548c22e265663901923522230c9c088f53822ab3d8e7f51eed5
ipa-client-samba-4.8.4-14.module+el8.2.0+22854+05081d30.5.x86_64.rpm SHA-256: 4889c76453e9d754ebad09218b5fd388772c51d483586fc4afb4c44734979bd1
ipa-common-4.8.4-14.module+el8.2.0+22854+05081d30.5.noarch.rpm SHA-256: 43caab1d622afdeb758aa162a4d3f55f0862810ede5ce4e5c1ee6fa7395bf88a
ipa-debuginfo-4.8.4-14.module+el8.2.0+22854+05081d30.5.x86_64.rpm SHA-256: 94d26a7e7ee3549d6562bd3cd4af1fa65d96ede2794a9b07b055b1734daf71af
ipa-debugsource-4.8.4-14.module+el8.2.0+22854+05081d30.5.x86_64.rpm SHA-256: ae515de72ec4c8793bcef6b3a59ca8cd0b3dd9291f60eab8d8deff47a75b4cb2
ipa-healthcheck-0.4-4.module+el8.2.0+5489+95477d9f.noarch.rpm SHA-256: e32a9cd21fe502359ead7cc02b18f1a7cd343d64bb6849f8993b6232d8e4e11a
ipa-healthcheck-core-0.4-4.module+el8.2.0+5489+95477d9f.noarch.rpm SHA-256: f70d8feab6aff70adf93da9ca66543ecba4cb4d205c2feb90f603661a3eff1f9
ipa-idoverride-memberof-plugin-0.0.4-6.module+el8.1.0+4098+f286395e.x86_64.rpm SHA-256: b7ffef204b68de5a12d757d50d1c081bbd3d49781dfe9e0398187dc117ca97a9
ipa-python-compat-4.8.4-14.module+el8.2.0+22854+05081d30.5.noarch.rpm SHA-256: 9e6006be785b6237d80bbc12820859c237fa308445ec0eb498ae74401c668e77
ipa-server-4.8.4-14.module+el8.2.0+22854+05081d30.5.x86_64.rpm SHA-256: 88940ed76c439fb322534124354263dbecd163c8f18cde12f1c77975ecf56800
ipa-server-common-4.8.4-14.module+el8.2.0+22854+05081d30.5.noarch.rpm SHA-256: 4c921253b253cca81331ae86f7a320e54ec4ca4b857291fcba7b95a4559b5621
ipa-server-debuginfo-4.8.4-14.module+el8.2.0+22854+05081d30.5.x86_64.rpm SHA-256: ed53a23414296875314eabbd00a495c3cc59a5f30c0b6febea72de7b7e5e3b2e
ipa-server-dns-4.8.4-14.module+el8.2.0+22854+05081d30.5.noarch.rpm SHA-256: 639d6c69ace1b8a950a0273820945cc68e8406edc05ab7f8de81f7a6f0ae4a67
ipa-server-trust-ad-4.8.4-14.module+el8.2.0+22854+05081d30.5.x86_64.rpm SHA-256: 247563b1563d919e8801e2a9f2bf4a3b908d2d8279a90e2388c27a6861589348
ipa-server-trust-ad-debuginfo-4.8.4-14.module+el8.2.0+22854+05081d30.5.x86_64.rpm SHA-256: 11a16c75860c60d2c816c60c2a81afd38e91bb0ab226f9ffb6f01bb8e719fab0
opendnssec-1.4.14-1.module+el8.1.0+4098+f286395e.x86_64.rpm SHA-256: 28c73e253d4c445f617f5c6b6d40980b427da749765315dbda1563efab11b309
opendnssec-debuginfo-1.4.14-1.module+el8.1.0+4098+f286395e.x86_64.rpm SHA-256: c45a46373074e055a6511e2ebe3b6c0defa7d6c39f31a1aaefb2e69e196f99f0
opendnssec-debugsource-1.4.14-1.module+el8.1.0+4098+f286395e.x86_64.rpm SHA-256: 0a6afbdbd46d7ba2070375fd2afb7a3d826c9c63e16f61e3b0adaf681d2c8040
python3-custodia-0.6.0-3.module+el8.1.0+4098+f286395e.noarch.rpm SHA-256: 2fbace8f9985587a09e887a249b2c30d5a7b13be0af41d9992b8fb33b74856cf
python3-ipaclient-4.8.4-14.module+el8.2.0+22854+05081d30.5.noarch.rpm SHA-256: 95a77a7e13bf219047886116c94b175d8f8ee7f086a367272803b504c56dc01a
python3-ipalib-4.8.4-14.module+el8.2.0+22854+05081d30.5.noarch.rpm SHA-256: 21351716172f3170144c35be405fca032a172c84b32affef028a2e5e76f2ea94
python3-ipaserver-4.8.4-14.module+el8.2.0+22854+05081d30.5.noarch.rpm SHA-256: 2787b9e1ee58c56a4c228520c8ac8bb796d87cf1e4543073d84663ad36a480c5
python3-jwcrypto-0.5.0-1.module+el8.1.0+4098+f286395e.noarch.rpm SHA-256: 6eb7e382f990ab745a4329bf863fdbca79c081744846e60d3c2a095dd513cf39
python3-kdcproxy-0.4-5.module+el8.2.0+4691+a05b2456.noarch.rpm SHA-256: 4b3636274d0f8dcc626a2cd94e867ce82283cf4b4d7cb3fb877941fbd02556d7
python3-pyusb-1.0.0-9.module+el8.1.0+4098+f286395e.noarch.rpm SHA-256: f55b57ab9e903c42846aafd7c836d00f8a1badd1a6077cf8f2434c915cd10e16
python3-qrcode-5.1-12.module+el8.1.0+4098+f286395e.noarch.rpm SHA-256: 6405e36fd8855d158dd2423986e2efc96f6da2add80b2feb225252df19ccc205
python3-qrcode-core-5.1-12.module+el8.1.0+4098+f286395e.noarch.rpm SHA-256: 1c0da67aa395b5bddd167b655713c711e6768f21e7d76c5c9c1533b6b2ac299e
python3-yubico-1.3.2-9.module+el8.1.0+4098+f286395e.noarch.rpm SHA-256: 312f69eeaf58f3b78d691bcc3c381a57a294f2e2e783013935c1111f528e0aaf
slapi-nis-0.56.3-3.module+el8.2.0+10782+8facb0b2.x86_64.rpm SHA-256: 4975dcb06166c26db16f28b3dfa1bcc18165bb10c2d8f07fcb1647798b6099f2
slapi-nis-debuginfo-0.56.3-3.module+el8.2.0+10782+8facb0b2.x86_64.rpm SHA-256: 0ad3ba295bc42fc9e715acad896d8332c3d01fa824fb1a103e9f653350a31879
slapi-nis-debugsource-0.56.3-3.module+el8.2.0+10782+8facb0b2.x86_64.rpm SHA-256: 0799e263c140d29176cbdd85a2c341ca3cef6fa1284e9d87fdce3948a506149a
softhsm-2.4.0-4.module+el8.2.0+5779+a38c524f.x86_64.rpm SHA-256: 3a11f010c185650003a3753461e8eb80a7538741e33221a469b5bb6ff6a5e8c9
softhsm-debuginfo-2.4.0-4.module+el8.2.0+5779+a38c524f.x86_64.rpm SHA-256: d9156e94eac4324b32c0d980280595bc419670e7ee00f3c3ef555cf8fddd1521
softhsm-debugsource-2.4.0-4.module+el8.2.0+5779+a38c524f.x86_64.rpm SHA-256: fe0df40e440970b54f8fe47eea828a8cfb384cbf18a5067304f84c235e1544f8
softhsm-devel-2.4.0-4.module+el8.2.0+5779+a38c524f.x86_64.rpm SHA-256: 8a4aff3af635ce962452d0be7f5c371a3da3ae670f0651de03e0e0dc203caa58

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility