RHEL 8/9:Satellite 6.16.14 の非同期更新プログラム(重要度最高)(RHSA-2026:74506)

high Nessus プラグイン ID 362468

概要

リモートの Red Hat ホストに 1 つ以上のセキュリティ更新プログラムがありません。

説明

リモート Redhat Enterprise Linux 8 / 9 ホストに、RHSA-2026:74506 アドバイザリに記載されている複数の脆弱性の影響を受けるパッケージがインストールされています。

Red Hat Satellite はシステム管理ソリューションです。これを使用することで組織は、組織のサーバーやその他クライアントシステムにパブリックインターネットアクセスを提供することなく、システムの設定や維持を行うことができるようになります。また、このソリューションは、事前に定義された標準のオペレーティング環境のプロビジョニングや設定管理も行います。

セキュリティ修正:

* python-dynaconf:Dynaconf:サーバー側のテンプレートインジェクションによる任意のコードの実行 [rhn_satellite_6.16](CVE-2026-33154)

* foreman:プレビューのビューアーロールに対する過剰な権限 [rhn_satellite_6.16](CVE-2026-96659)

* foreman:RCE につながるセーフモードバイパス [rhn_satellite_6.16] (CVE-2026-96658)

* satellite:el8/python-sqlparse:sqlparse:非効率的な SQL 解析によるサービス拒否 [rhn_satellite_6.16](CVE-2026-59893)

* python-sqlparse: sqlparse:非効率的な SQL 解析によるサービス拒否 [rhn_satellite_6.16](CVE-2026-59893)

* satellite:el8/python-sqlparse:sqlparse:SQL 解析における二次 CPU 消費によるサービス拒否 [rhn_satellite_6.16](CVE-2026-54284)

* python-sqlparse:sqlparse:SQL 解析における二次 CPU 消費によるサービス拒否 [rhn_satellite_6.16](CVE-2026-54284)

* satellite:el8/yggdrasil-worker-forwarder:Golang crypto/tls:無限の KeyUpdate メッセージによるサービス拒否 [rhn_satellite_6.16](CVE-2026-56862)

* satellite:el8/yggdrasil-worker-forwarder:go html/template:異常な入力によるクロスサイトスクリプティング [rhn_satellite_6.16](CVE-2026-56858)

* satellite:el8/yggdrasil-worker-forwarder:golang net/url:パス解決における二次複雑度によるサービス拒否 [rhn_satellite_6.16](CVE-2026-56860)

* satellite:el8/yggdrasil-worker-forwarder:Go encoding/asn1:Unmarshal での過剰な再帰によるサービス拒否 [rhn_satellite_6.16](CVE-2026-33818)

* satellite:el8/rubygem-katello:Katello Content View History API の組織を越えた承認バイパス [rhn_satellite_6.16](CVE-2026-79654)

* python-gitpython:GitPython:TagReference.create() を通じた任意のファイルの読み取り [rhn_satellite_6.16](CVE-2026-78679)

* python-gitpython:GitPython:Git ディレクトリのなりすましによるリモートコードの実行 [rhn_satellite_6.16](CVE-2026-87817)

* satellite-capsule:el8/python-lxml:lxml:xlink:href の欠落による Cleaner での URL バイパスの脆弱性 [rhn_satellite_6.16](CVE-2026-49825)

* yggdrasil-worker-forwarder:Golang MIME:悪意を持って細工された MIME ヘッダーによるサービス拒否 [rhn_satellite_6.16](CVE-2026-42504)

* satellite:el8/yggdrasil-worker-forwarder:Golang MIME:悪意を持って細工された MIME ヘッダーによるサービス拒否 [rhn_satellite_6.16](CVE-2026-42504)

* rubygem-katello:Katello Content View History API の組織を越えた承認バイパス [rhn_satellite_6.16](CVE-2026-79654)

* yggdrasil-worker-forwarder:Go encoding/asn1:Unmarshal での過剰な再帰によるサービス拒否 [rhn_satellite_6.16](CVE-2026-33818)

* yggdrasil-worker-forwarder:Golang crypto/tls:無限の KeyUpdate メッセージによるサービス拒否 [rhn_satellite_6.16](CVE-2026-56862)

* yggdrasil-worker-forwarder:html/テンプレートに移動:異常な入力によるクロスサイトスクリプティング [rhn_satellite_6.16](CVE-2026-56858)

* yggdrasil-worker-forwarder:golang net/url:パス解決での二次複雑性によるサービス拒否 [rhn_satellite_6.16](CVE-2026-56860)

* satellite:el8/rubygem-katello:不適切な認証ロジックにより、リソース列挙が可能になります [rhn_satellite_6.16](CVE-2026-56098)

* rubygem-katello:不適切な承認ロジックにより、リソース列挙が可能になります [rhn_satellite_6.16](CVE-2026-56098)

* rubygem-katello:ラベルを通じた Registry Proxy における SQL インジェクション [rhn_satellite_6.16](CVE-2026-56097)

* satellite:el8/rubygem-katello:ラベルによる Registry Proxy における SQL インジェクション [rhn_satellite_6.16](CVE-2026-56097)

* satellite-utils:el8/rubygem-hammer_cli:安全でないエディター呼び出しからのコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12545)

* rubygem-hammer_cli:安全でないエディター呼び出しからのコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12545)

* foreman:foreman-rake 構成での SSTI および安全でない逆シリアル化 [rhn_satellite_6.16](CVE-2026-12544)

* satellite:el8/foreman:foreman-rake 構成の SSTI および安全でない逆シリアル化 [rhn_satellite_6.16](CVE-2026-12544)

* satellite:el8/foreman:foreman-tail でのコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12542)

* foreman:foreman-tail でのコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12542)

* satellite:el8/foreman:foreman-rake データベースタスクでのコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12541)

* foreman:Foreman-rake データベースタスクでのコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12541)

* satellite:el8/foreman:request_id パラメーター経由の foreman-rake errors:fetch_log におけるコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12540)

* foreman:request_id パラメーター経由の foreman-rake errors:fetch_log でのコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12540)

* satellite:el8/foreman:プロビジョニングトークン検証の欠陥による認証されていない情報漏洩 [rhn_satellite_6.16](CVE-2026-12423)

* foreman:プロビジョニングトークン検証の欠陥による認証されていない情報漏洩[rhn_satellite_6.16](CVE-2026-12423)

* satellite:el8/rubygem-foreman_remote_execution:effective_user パラメーターを介したジョブ呼び出しでのコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12405)

* rubygem-foreman_remote_execution:effective_user パラメーター経由のジョブ呼び出しにおけるコマンドインジェクション [rhn_satellite_6.16](CVE-2026-12405)

Tenable は、前述の記述ブロックを Red Hat Enterprise Linux セキュリティアドバイザリから直接抽出しています。

Nessus はこれらの問題をテストしておらず、代わりにアプリケーションが自己報告するバージョン番号にのみ依存していることに注意してください。

ソリューション

影響を受けるパッケージを更新してください。

参考資料

https://access.redhat.com/errata/RHSA-2026:74506

https://access.redhat.com/security/updates/classification/#critical

https://bugzilla.redhat.com/show_bug.cgi?id=2449774

https://bugzilla.redhat.com/show_bug.cgi?id=2467800

https://bugzilla.redhat.com/show_bug.cgi?id=2467802

https://bugzilla.redhat.com/show_bug.cgi?id=2484204

https://bugzilla.redhat.com/show_bug.cgi?id=2488952

https://bugzilla.redhat.com/show_bug.cgi?id=2488956

https://bugzilla.redhat.com/show_bug.cgi?id=2489969

https://bugzilla.redhat.com/show_bug.cgi?id=2489970

https://bugzilla.redhat.com/show_bug.cgi?id=2489971

https://bugzilla.redhat.com/show_bug.cgi?id=2489992

https://bugzilla.redhat.com/show_bug.cgi?id=2489993

https://bugzilla.redhat.com/show_bug.cgi?id=2490542

https://bugzilla.redhat.com/show_bug.cgi?id=2490543

https://bugzilla.redhat.com/show_bug.cgi?id=2515243

https://bugzilla.redhat.com/show_bug.cgi?id=2515261

https://bugzilla.redhat.com/show_bug.cgi?id=2515269

https://bugzilla.redhat.com/show_bug.cgi?id=2515272

https://bugzilla.redhat.com/show_bug.cgi?id=2515275

https://bugzilla.redhat.com/show_bug.cgi?id=2515815

https://bugzilla.redhat.com/show_bug.cgi?id=2515820

https://bugzilla.redhat.com/show_bug.cgi?id=2515827

https://bugzilla.redhat.com/show_bug.cgi?id=2515838

https://bugzilla.redhat.com/show_bug.cgi?id=2515839

https://bugzilla.redhat.com/show_bug.cgi?id=2517523

https://bugzilla.redhat.com/show_bug.cgi?id=2517527

https://bugzilla.redhat.com/show_bug.cgi?id=2520368

https://bugzilla.redhat.com/show_bug.cgi?id=2523205

https://bugzilla.redhat.com/show_bug.cgi?id=2523348

https://bugzilla.redhat.com/show_bug.cgi?id=2530744

https://bugzilla.redhat.com/show_bug.cgi?id=2534185

https://bugzilla.redhat.com/show_bug.cgi?id=2536844

http://www.nessus.org/u?20708153

プラグインの詳細

深刻度: High

ID: 362468

ファイル名: redhat-RHSA-2026-74506.nasl

バージョン: 1.2

タイプ: Local

エージェント: unix

公開日: 2026/10/1

更新日: 2026/10/5

サポートされているセンサー: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

リスク情報

VPR

リスクファクター: High

スコア: 7

パーセンタイル: 98.05

Vendor

Vendor Severity: Critical

CVSS v2

リスクファクター: Critical

基本値: 10

現状値: 7.8

ベクトル: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS スコアのソース: CVE-2026-42284

CVSS v3

リスクファクター: Critical

基本値: 9.8

現状値: 8.8

ベクトル: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

現状ベクトル: CVSS:3.0/E:P/RL:O/RC:C

CVSS v4

リスクファクター: High

Base Score: 8.7

Threat Score: 7.4

Threat Vector: CVSS:4.0/E:P

Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

CVSS スコアのソース: CVE-2026-87817

脆弱性情報

CPE: cpe:/o:redhat:enterprise_linux:8, cpe:/o:redhat:enterprise_linux:9, p-cpe:/a:redhat:enterprise_linux:foreman-cli, p-cpe:/a:redhat:enterprise_linux:foreman-debug, p-cpe:/a:redhat:enterprise_linux:foreman-dynflow-sidekiq, p-cpe:/a:redhat:enterprise_linux:foreman-ec2, p-cpe:/a:redhat:enterprise_linux:foreman-journald, p-cpe:/a:redhat:enterprise_linux:foreman-libvirt, p-cpe:/a:redhat:enterprise_linux:foreman-openstack, p-cpe:/a:redhat:enterprise_linux:foreman-ovirt, p-cpe:/a:redhat:enterprise_linux:foreman-pcp, p-cpe:/a:redhat:enterprise_linux:foreman-postgresql, p-cpe:/a:redhat:enterprise_linux:foreman-redis, p-cpe:/a:redhat:enterprise_linux:foreman-service, p-cpe:/a:redhat:enterprise_linux:foreman-telemetry, p-cpe:/a:redhat:enterprise_linux:foreman-vmware, p-cpe:/a:redhat:enterprise_linux:foreman, p-cpe:/a:redhat:enterprise_linux:python-dynaconf, p-cpe:/a:redhat:enterprise_linux:python-gitpython, p-cpe:/a:redhat:enterprise_linux:python-lxml, p-cpe:/a:redhat:enterprise_linux:python-pulpcore, p-cpe:/a:redhat:enterprise_linux:python-sqlparse, p-cpe:/a:redhat:enterprise_linux:python3.11-dynaconf, p-cpe:/a:redhat:enterprise_linux:python3.11-gitpython, p-cpe:/a:redhat:enterprise_linux:python3.11-lxml, p-cpe:/a:redhat:enterprise_linux:python3.11-pulpcore, p-cpe:/a:redhat:enterprise_linux:python3.11-sqlparse, p-cpe:/a:redhat:enterprise_linux:rubygem-foreman_remote_execution-cockpit, p-cpe:/a:redhat:enterprise_linux:rubygem-foreman_remote_execution, p-cpe:/a:redhat:enterprise_linux:rubygem-hammer_cli, p-cpe:/a:redhat:enterprise_linux:rubygem-katello, p-cpe:/a:redhat:enterprise_linux:rubygem-safemode, p-cpe:/a:redhat:enterprise_linux:satellite-capsule, p-cpe:/a:redhat:enterprise_linux:satellite-cli, p-cpe:/a:redhat:enterprise_linux:satellite-common, p-cpe:/a:redhat:enterprise_linux:satellite, p-cpe:/a:redhat:enterprise_linux:yggdrasil-worker-forwarder

必要な KB アイテム: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu

エクスプロイトが利用可能: true

エクスプロイトの容易さ: Exploits are available

パッチ公開日: 2026/10/1

脆弱性公開日: 2026/3/18

参照情報

CVE: CVE-2026-12405, CVE-2026-12423, CVE-2026-12540, CVE-2026-12541, CVE-2026-12542, CVE-2026-12544, CVE-2026-12545, CVE-2026-33154, CVE-2026-33818, CVE-2026-42215, CVE-2026-42284, CVE-2026-42504, CVE-2026-49825, CVE-2026-54284, CVE-2026-56097, CVE-2026-56098, CVE-2026-56853, CVE-2026-56858, CVE-2026-56860, CVE-2026-56862, CVE-2026-59893, CVE-2026-73620, CVE-2026-73622, CVE-2026-73623, CVE-2026-73624, CVE-2026-73625, CVE-2026-78679, CVE-2026-79654, CVE-2026-87817, CVE-2026-96658, CVE-2026-96659

CWE: 1050, 1333, 166, 203, 22, 267, 306, 502, 639, 770, 776, 78, 79, 88, 89, 914, 917

RHSA: 2026:74506