Red Hat Security Advisories · April 2003 — Red Hat Security Advisories
22 RHSAs 50 CVEs 3 EXPLOITED

Red Hat Security Response Team errata for 2003-04. Mirrored into Vulnetix VDB with downloadable CSAF.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). Each row also links to the raw CSAF document stored on the Vulnetix artefact mirror. 3 are already weaponised in the wild: see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

RHSA-2003:137

ExploitedVulnCheck KEV listedCRITICAL2003-04-08

Red Hat Security Advisory: : New samba packages fix security vulnerability

CVEs:CVE-2003-0196CVE-2003-0201GSD-2003-0201VAR-200305-0049

Affected products

ProductStatusVendorPackage
Red Hat Linux 7.1 fixed Red Hat Red Hat Linux 7.1
Red Hat Linux 7.2 fixed Red Hat Red Hat Linux 7.2
Red Hat Linux 7.3 fixed Red Hat Red Hat Linux 7.3
Red Hat Linux 8.0 fixed Red Hat Red Hat Linux 8.0
Red Hat Linux 9 fixed Red Hat Red Hat Linux 9
CSAF Red Hat errata

RHSA-2003:138

ExploitedVulnCheck KEV listedCRITICAL2003-04-07

Red Hat Security Advisory: samba security update

CVEs:CVE-2003-0196CVE-2003-0201GSD-2003-0201VAR-200305-0049

Affected products

ProductStatusVendorPackage
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 fixed Red Hat Red Hat Enterprise Linux AS (Advanced Server) version 2.1
Red Hat Enterprise Linux ES version 2.1 fixed Red Hat Red Hat Enterprise Linux ES version 2.1
Red Hat Enterprise Linux WS version 2.1 fixed Red Hat Red Hat Enterprise Linux WS version 2.1
Red Hat Linux Advanced Workstation 2.1 fixed Red Hat Red Hat Linux Advanced Workstation 2.1
CSAF Red Hat errata

RHSA-2003:093

Weaponized exploitCRITICAL2003-04-29

Red Hat Security Advisory: : Updated MySQL packages fix vulnerabilities

CVEs:CVE-2003-0073CVE-2003-0150

Affected products

ProductStatusVendorPackage
Red Hat Linux 7.1 fixed Red Hat Red Hat Linux 7.1
Red Hat Linux 7.2 fixed Red Hat Red Hat Linux 7.2
Red Hat Linux 7.3 fixed Red Hat Red Hat Linux 7.3
Red Hat Linux 8.0 fixed Red Hat Red Hat Linux 8.0
Red Hat Linux 9 fixed Red Hat Red Hat Linux 9
CSAF Red Hat errata

RHSA-2003:094

Weaponized exploitCRITICAL2003-04-28

Red Hat Security Advisory: mysql security update

CVEs:CVE-2003-0073CVE-2003-0150

Affected products

ProductStatusVendorPackage
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 fixed Red Hat Red Hat Enterprise Linux AS (Advanced Server) version 2.1
Red Hat Enterprise Linux ES version 2.1 fixed Red Hat Red Hat Enterprise Linux ES version 2.1
Red Hat Enterprise Linux WS version 2.1 fixed Red Hat Red Hat Enterprise Linux WS version 2.1
Red Hat Linux Advanced Workstation 2.1 fixed Red Hat Red Hat Linux Advanced Workstation 2.1
CSAF Red Hat errata

RHSA-2003:079

PoC exploitCRITICAL2003-04-29

Red Hat Security Advisory: : Updated zlib packages fix gzprintf buffer overflow vulnerability

CVEs:CVE-2003-0107

Affected products

ProductStatusVendorPackage
Red Hat Linux 7.1 fixed Red Hat Red Hat Linux 7.1
Red Hat Linux 7.2 fixed Red Hat Red Hat Linux 7.2
Red Hat Linux 7.3 fixed Red Hat Red Hat Linux 7.3
Red Hat Linux 8.0 fixed Red Hat Red Hat Linux 8.0
CSAF Red Hat errata

RHSA-2003:032

PoC exploitHIGH2003-04-23

Red Hat Security Advisory: : Updated tcpdump packages fix various vulnerabilities

CVEs:CVE-2002-1350CVE-2003-0093CVE-2003-0108CVE-2003-0145

Affected products

ProductStatusVendorPackage
Red Hat Linux 7.1 fixed Red Hat Red Hat Linux 7.1
Red Hat Linux 7.2 fixed Red Hat Red Hat Linux 7.2
Red Hat Linux 7.3 fixed Red Hat Red Hat Linux 7.3
Red Hat Linux 8.0 fixed Red Hat Red Hat Linux 8.0
CSAF Red Hat errata

RHSA-2003:101

PoC exploitNONE2003-04-01

Red Hat Security Advisory: : Updated OpenSSL packages fix vulnerabilities

CVEs:CVE-2003-0131CVE-2003-0147

Affected products

ProductStatusVendorPackage
Red Hat Linux 6.2 fixed Red Hat Red Hat Linux 6.2
Red Hat Linux 7.0 fixed Red Hat Red Hat Linux 7.0
Red Hat Linux 7.1 fixed Red Hat Red Hat Linux 7.1
Red Hat Linux 7.2 fixed Red Hat Red Hat Linux 7.2
Red Hat Linux 7.3 fixed Red Hat Red Hat Linux 7.3
Red Hat Linux 8.0 fixed Red Hat Red Hat Linux 8.0
Red Hat Linux 9 fixed Red Hat Red Hat Linux 9
CSAF Red Hat errata

RHSA-2003:060

EPSS <= 49%CRITICAL2003-04-03

Red Hat Security Advisory: : Updated NetPBM packages fix multiple vulnerabilities

CVEs:CVE-2003-0146

Affected products

ProductStatusVendorPackage
Red Hat Linux 7.0 fixed Red Hat Red Hat Linux 7.0
Red Hat Linux 7.1 fixed Red Hat Red Hat Linux 7.1
Red Hat Linux 7.2 fixed Red Hat Red Hat Linux 7.2
Red Hat Linux 7.3 fixed Red Hat Red Hat Linux 7.3
Red Hat Linux 8.0 fixed Red Hat Red Hat Linux 8.0
CSAF Red Hat errata

RHSA-2003:076

EPSS <= 49%CRITICAL2003-04-23

Red Hat Security Advisory: : Updated ethereal packages fix security vulnerabilities

CVEs:CVE-2003-0081CVE-2003-0159

Affected products

ProductStatusVendorPackage
Red Hat Linux 7.2 fixed Red Hat Red Hat Linux 7.2
Red Hat Linux 7.3 fixed Red Hat Red Hat Linux 7.3
Red Hat Linux 8.0 fixed Red Hat Red Hat Linux 8.0
Red Hat Linux 9 fixed Red Hat Red Hat Linux 9
CSAF Red Hat errata

RHSA-2003:075

EPSS <= 49%CRITICAL2003-04-09

Red Hat Security Advisory: tomcat security update for Stronghold

CVEs:CVE-2002-1394

Affected products

ProductStatusVendorPackage
Stronghold 4 for Red Hat Enterprise Linux fixed Red Hat Stronghold 4 for Red Hat Enterprise Linux
CSAF Red Hat errata

RHSA-2003:109

EPSS <= 49%CRITICAL2003-04-03

Red Hat Security Advisory: : Updated balsa and mutt packages fix vulnerabilities

CVEs:CVE-2002-1090CVE-2003-0140

Affected products

ProductStatusVendorPackage
Red Hat Linux 7.2 fixed Red Hat Red Hat Linux 7.2
Red Hat Linux 7.3 fixed Red Hat Red Hat Linux 7.3
Red Hat Linux 8.0 fixed Red Hat Red Hat Linux 8.0
Red Hat Linux 9 fixed Red Hat Red Hat Linux 9
CSAF Red Hat errata

RHSA-2003:036

EPSS <= 49%HIGH2003-04-08

Red Hat Security Advisory: : : : Updated mgetty packages available

CVEs:CVE-2002-1391CVE-2002-1392

Affected products

ProductStatusVendorPackage
Red Hat Linux 7.1 fixed Red Hat Red Hat Linux 7.1
Red Hat Linux 7.2 fixed Red Hat Red Hat Linux 7.2
Red Hat Linux 7.3 fixed Red Hat Red Hat Linux 7.3
Red Hat Linux 8.0 fixed Red Hat Red Hat Linux 8.0
CSAF Red Hat errata

RHSA-2003:114

EPSS <= 49%CRITICAL2003-04-28

Red Hat Security Advisory: mod_auth_any security update

CVEs:CVE-2003-0084

Affected products

ProductStatusVendorPackage
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 fixed Red Hat Red Hat Enterprise Linux AS (Advanced Server) version 2.1
Red Hat Enterprise Linux ES version 2.1 fixed Red Hat Red Hat Enterprise Linux ES version 2.1
Red Hat Enterprise Linux WS version 2.1 fixed Red Hat Red Hat Enterprise Linux WS version 2.1
Red Hat Linux Advanced Workstation 2.1 fixed Red Hat Red Hat Linux Advanced Workstation 2.1
CSAF Red Hat errata

RHSA-2003:119

EPSS <= 49%HIGH2003-04-28

Red Hat Security Advisory: micq security update

CVEs:CVE-2002-1362

Affected products

ProductStatusVendorPackage
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 fixed Red Hat Red Hat Enterprise Linux AS (Advanced Server) version 2.1
Red Hat Enterprise Linux ES version 2.1 fixed Red Hat Red Hat Enterprise Linux ES version 2.1
Red Hat Enterprise Linux WS version 2.1 fixed Red Hat Red Hat Enterprise Linux WS version 2.1
Red Hat Linux Advanced Workstation 2.1 fixed Red Hat Red Hat Linux Advanced Workstation 2.1
CSAF Red Hat errata

RHSA-2003:134

EPSS <= 49%CRITICAL2003-04-28

Red Hat Security Advisory: man security update

CVEs:CVE-2003-0124

Affected products

ProductStatusVendorPackage
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 fixed Red Hat Red Hat Enterprise Linux AS (Advanced Server) version 2.1
Red Hat Enterprise Linux ES version 2.1 fixed Red Hat Red Hat Enterprise Linux ES version 2.1
Red Hat Enterprise Linux WS version 2.1 fixed Red Hat Red Hat Enterprise Linux WS version 2.1
Red Hat Linux Advanced Workstation 2.1 fixed Red Hat Red Hat Linux Advanced Workstation 2.1
CSAF Red Hat errata

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.