[ALSA-2023:4706] Important: subscription-manager security update
Type:
security
Severity:
important
Release date:
2023-08-31
Description:
The subscription-manager packages provide programs and libraries to allow users to manage subscriptions and yum repositories from the AlmaLinux entitlement platform. Security Fix(es): * subscription-manager: inadequate authorization of com.AlmaLinux.RHSM1 D-Bus interface allows local users to modify configuration (CVE-2023-3899) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 dnf-plugin-subscription-manager-1.28.36-3.el8_8.alma.1.aarch64.rpm 1cc24b727c135b746057f0d49f619b659d2298dc689d0179d38aff056ead803b
aarch64 subscription-manager-migration-1.28.36-3.el8_8.alma.1.aarch64.rpm 255f3ff17a65805ece860f4af97f25c0bd7054804472d051f70ab19fe2409ed4
aarch64 subscription-manager-1.28.36-3.el8_8.alma.1.aarch64.rpm 2e572f01706cf31bd4fcb01c12b182be416bdc6952c772a1436f2dafec108739
aarch64 subscription-manager-plugin-ostree-1.28.36-3.el8_8.alma.1.aarch64.rpm 3d853e71eb59fcbc8be73dd0f7250b8a8132fe392e85ab974f67995992f0d83d
aarch64 subscription-manager-rhsm-certificates-1.28.36-3.el8_8.alma.1.aarch64.rpm 5122ce1ff6cd8fba71e41c1186a16a973121bdf23b405c1e6e42097b74413ec3
aarch64 python3-syspurpose-1.28.36-3.el8_8.alma.1.aarch64.rpm 57d5431e00c0c9eda4060fd44a61973cbbf4f4b2a5a3e594b6a3cd8a65c4f736
aarch64 python3-cloud-what-1.28.36-3.el8_8.alma.1.aarch64.rpm 9164308e803f0029e2fcc6aac581f307fb67ed4f1a0c4400da4e8178691062f8
aarch64 python3-subscription-manager-rhsm-1.28.36-3.el8_8.alma.1.aarch64.rpm b8369c5a307864c70b1d12c32680ecdf24657fa03e52ad90e0021d093c98c9ec
ppc64le python3-cloud-what-1.28.36-3.el8_8.alma.1.ppc64le.rpm 4068dee4ba923059b29f3baf0e676ceffa6ebccebc17e0f82a32728d158c9f70
ppc64le dnf-plugin-subscription-manager-1.28.36-3.el8_8.alma.1.ppc64le.rpm 763d3b917fbce459dc6433cea6044f700156fabf50f56516144dad7f4e547fca
ppc64le subscription-manager-rhsm-certificates-1.28.36-3.el8_8.alma.1.ppc64le.rpm 9c7beea74762f553d98d90383dac2f190d3eee824ef82a06b2798f0e6aff8aa4
ppc64le subscription-manager-plugin-ostree-1.28.36-3.el8_8.alma.1.ppc64le.rpm a8db1ba5c1a6342f5ca0538f83c183edd31adb644436b27d13cfed5c28e6782d
ppc64le python3-subscription-manager-rhsm-1.28.36-3.el8_8.alma.1.ppc64le.rpm ab3db12bfef3e84a1be7226d1bf01d8f0b2f9594e966e740b1214fcc91fe465a
ppc64le subscription-manager-1.28.36-3.el8_8.alma.1.ppc64le.rpm ae181e9cd2dec96106ad6738169d97a7eb038c2423c214395716f9fb3bbdf3e8
ppc64le python3-syspurpose-1.28.36-3.el8_8.alma.1.ppc64le.rpm d371e4c35dc351148a4c45d906a6125c10ca93506b6495d7156a2a88ec0c9c70
ppc64le subscription-manager-migration-1.28.36-3.el8_8.alma.1.ppc64le.rpm e2c92d70ddb5a14a9cda64992a5a8cdfaa65e35bc6bfd3909bedbbdbc6de1061
s390x python3-cloud-what-1.28.36-3.el8_8.alma.1.s390x.rpm 0c24415ae7da0f732325c4cd222dc3c6f93a9fcae66d0b3c3fc0e8871fa8ab9f
s390x subscription-manager-plugin-ostree-1.28.36-3.el8_8.alma.1.s390x.rpm 15ee0315087e6e365502bc21b6ca97fd49996402696a0df79d42440df25723ca
s390x dnf-plugin-subscription-manager-1.28.36-3.el8_8.alma.1.s390x.rpm 167eb87ed9832e0a94c945dc02403770b11855ef6dfdbd21ac3380d42815d4b2
s390x python3-syspurpose-1.28.36-3.el8_8.alma.1.s390x.rpm 21fbcb73879f7201ae8a30f04f929eafd08d315027230480002da22d6f32b5b1
s390x subscription-manager-rhsm-certificates-1.28.36-3.el8_8.alma.1.s390x.rpm 6ff45cacf01aeb2dfd089067182897b25a20ecf27763e313deb13ec6e7c9eb38
s390x python3-subscription-manager-rhsm-1.28.36-3.el8_8.alma.1.s390x.rpm 7413595729c558c078192898d24ba2846592b01aa5b6c365f3f49df24b8297df
s390x subscription-manager-1.28.36-3.el8_8.alma.1.s390x.rpm dc4977b2ace1839b9e610864bcb7aa69ce0f98719ba2d0558d7f4610302e513e
s390x subscription-manager-migration-1.28.36-3.el8_8.alma.1.s390x.rpm f7c1939ea9ab7f7f9dc2ada883cdbfbf21a0c4881552fb598682de36878803cd
x86_64 python3-cloud-what-1.28.36-3.el8_8.alma.1.x86_64.rpm 02e9faaac58c134b68ecd02c1431eaaca9da034d5e3b397ca6940863f939c8b5
x86_64 dnf-plugin-subscription-manager-1.28.36-3.el8_8.alma.1.x86_64.rpm 51733372180a42b20667d233a2485b4b4937bf03cd9706113e5e1d387fbe502a
x86_64 python3-syspurpose-1.28.36-3.el8_8.alma.1.x86_64.rpm 52465f2dd9da36f7caabf91443a0197f8a1f3d66d7f398a034409a7f77287edd
x86_64 subscription-manager-rhsm-certificates-1.28.36-3.el8_8.alma.1.x86_64.rpm 7a8439139ef1dbfc4177c7976519b58bb2a8bc1e8e6a3438f9438fb8524973fa
x86_64 subscription-manager-migration-1.28.36-3.el8_8.alma.1.x86_64.rpm a57a8cdea724b5186a6ab19ff869df4cc464c6d52cce4f161bf2e4b1e3860782
x86_64 python3-subscription-manager-rhsm-1.28.36-3.el8_8.alma.1.x86_64.rpm c2c978901ae449d938984d67503966e9bb8662bb334c4b835295c276b594249b
x86_64 subscription-manager-plugin-ostree-1.28.36-3.el8_8.alma.1.x86_64.rpm e3b72ae117e8f5226cd704836f505231cf6d4bb7a41bc2aa742f8b23be45dcd7
x86_64 subscription-manager-1.28.36-3.el8_8.alma.1.x86_64.rpm ef0a580674ee1d07ddad6aba42e559502f26d4cf8cd976fe19a30127098c1dd2
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.