{
  "document": {
    "aggregate_severity": {
      "namespace": "https://access.redhat.com/security/updates/classification/",
      "text": "Important"
    },
    "category": "csaf_security_advisory",
    "csaf_version": "2.0",
    "distribution": {
      "text": "Copyright © Red Hat, Inc. All rights reserved.",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "summary",
        "text": "Updated ipa packages that fix one security issue are now available for\nRed Hat Enterprise Linux 6.\n\nThe Red Hat Security Response Team has rated this update as having\nimportant security impact. A Common Vulnerability Scoring System (CVSS)\nbase score, which gives a detailed severity rating, is available from the\nCVE link in the References section.",
        "title": "Topic"
      },
      {
        "category": "general",
        "text": "Red Hat Identity Management is a centralized authentication, identity\nmanagement and authorization solution for both traditional and cloud-based\nenterprise environments.\n\nA weakness was found in the way IPA clients communicated with IPA servers\nwhen initially attempting to join IPA domains. As there was no secure way\nto provide the IPA server's Certificate Authority (CA) certificate to the\nclient during a join, the IPA client enrollment process was susceptible to\nman-in-the-middle attacks. This flaw could allow an attacker to obtain\naccess to the IPA server using the credentials provided by an IPA client,\nincluding administrative access to the entire domain if the join was\nperformed using an administrator's credentials. (CVE-2012-5484)\n\nNote: This weakness was only exposed during the initial client join to the\nrealm, because the IPA client did not yet have the CA certificate of the\nserver. Once an IPA client has joined the realm and has obtained the CA\ncertificate of the IPA server, all further communication is secure. If a\nclient were using the OTP (one-time password) method to join to the realm,\nan attacker could only obtain unprivileged access to the server (enough to\nonly join the realm).\n\nRed Hat would like to thank Petr Menšík for reporting this issue.\n\nThis update must be installed on both the IPA client and IPA server. When\nthis update has been applied to the client but not the server,\nipa-client-install, in unattended mode, will fail if you do not have the\ncorrect CA certificate locally, noting that you must use the \"--force\"\noption to insecurely obtain the certificate. In interactive mode, the\ncertificate will try to be obtained securely from LDAP. If this fails, you\nwill be prompted to insecurely download the certificate via HTTP. In the\nsame situation when using OTP, LDAP will not be queried and you will be\nprompted to insecurely download the certificate via HTTP.\n\nUsers of ipa are advised to upgrade to these updated packages, which\ncorrect this issue. After installing the update, changes in LDAP are\nhandled by ipa-ldap-updater automatically and are effective immediately.",
        "title": "Details"
      },
      {
        "category": "legal_disclaimer",
        "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.",
        "title": "Terms of Use"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://access.redhat.com/security/team/contact/",
      "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.",
      "name": "Red Hat Product Security",
      "namespace": "https://www.redhat.com"
    },
    "references": [
      {
        "category": "self",
        "summary": "https://access.redhat.com/errata/RHSA-2013:0188",
        "url": "https://access.redhat.com/errata/RHSA-2013:0188"
      },
      {
        "category": "external",
        "summary": "https://access.redhat.com/security/updates/classification/#important",
        "url": "https://access.redhat.com/security/updates/classification/#important"
      },
      {
        "category": "external",
        "summary": "876307",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=876307"
      },
      {
        "category": "self",
        "summary": "Canonical URL",
        "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2013/rhsa-2013_0188.json"
      }
    ],
    "title": "Red Hat Security Advisory: ipa security update",
    "tracking": {
      "current_release_date": "2026-06-25T10:38:57+00:00",
      "generator": {
        "date": "2026-06-25T10:38:57+00:00",
        "engine": {
          "name": "Red Hat SDEngine",
          "version": "5.1.0"
        }
      },
      "id": "RHSA-2013:0188",
      "initial_release_date": "2013-01-23T21:33:00+00:00",
      "revision_history": [
        {
          "date": "2013-01-23T21:33:00+00:00",
          "number": "1",
          "summary": "Initial version"
        },
        {
          "date": "2013-01-23T21:36:22+00:00",
          "number": "2",
          "summary": "Last updated version"
        },
        {
          "date": "2026-06-25T10:38:57+00:00",
          "number": "3",
          "summary": "Last generated version"
        }
      ],
      "status": "final",
      "version": "3"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat Enterprise Linux Desktop (v. 6)",
                "product": {
                  "name": "Red Hat Enterprise Linux Desktop (v. 6)",
                  "product_id": "6Client-6.3.z",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:redhat:enterprise_linux:6::client"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "Red Hat Enterprise Linux Desktop Optional (v. 6)",
                "product": {
                  "name": "Red Hat Enterprise Linux Desktop Optional (v. 6)",
                  "product_id": "6Client-optional-6.3.z",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:redhat:enterprise_linux:6::client"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "Red Hat Enterprise Linux HPC Node (v. 6)",
                "product": {
                  "name": "Red Hat Enterprise Linux HPC Node (v. 6)",
                  "product_id": "6ComputeNode-6.3.z",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:redhat:enterprise_linux:6::computenode"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "Red Hat Enterprise Linux HPC Node Optional (v. 6)",
                "product": {
                  "name": "Red Hat Enterprise Linux HPC Node Optional (v. 6)",
                  "product_id": "6ComputeNode-optional-6.3.z",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:redhat:enterprise_linux:6::computenode"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "Red Hat Enterprise Linux Server (v. 6)",
                "product": {
                  "name": "Red Hat Enterprise Linux Server (v. 6)",
                  "product_id": "6Server-6.3.z",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:redhat:enterprise_linux:6::server"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "Red Hat Enterprise Linux Workstation (v. 6)",
                "product": {
                  "name": "Red Hat Enterprise Linux Workstation (v. 6)",
                  "product_id": "6Workstation-6.3.z",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:redhat:enterprise_linux:6::workstation"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat Enterprise Linux"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "ipa-0:2.2.0-17.el6_3.1.src",
                "product": {
                  "name": "ipa-0:2.2.0-17.el6_3.1.src",
                  "product_id": "ipa-0:2.2.0-17.el6_3.1.src",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa@2.2.0-17.el6_3.1?arch=src"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "src"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "ipa-client-0:2.2.0-17.el6_3.1.x86_64",
                "product": {
                  "name": "ipa-client-0:2.2.0-17.el6_3.1.x86_64",
                  "product_id": "ipa-client-0:2.2.0-17.el6_3.1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-client@2.2.0-17.el6_3.1?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
                "product": {
                  "name": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
                  "product_id": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-admintools@2.2.0-17.el6_3.1?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-python-0:2.2.0-17.el6_3.1.x86_64",
                "product": {
                  "name": "ipa-python-0:2.2.0-17.el6_3.1.x86_64",
                  "product_id": "ipa-python-0:2.2.0-17.el6_3.1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-python@2.2.0-17.el6_3.1?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
                "product": {
                  "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
                  "product_id": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-server-selinux@2.2.0-17.el6_3.1?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
                "product": {
                  "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
                  "product_id": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-debuginfo@2.2.0-17.el6_3.1?arch=x86_64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-server-0:2.2.0-17.el6_3.1.x86_64",
                "product": {
                  "name": "ipa-server-0:2.2.0-17.el6_3.1.x86_64",
                  "product_id": "ipa-server-0:2.2.0-17.el6_3.1.x86_64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-server@2.2.0-17.el6_3.1?arch=x86_64"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "x86_64"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "ipa-client-0:2.2.0-17.el6_3.1.i686",
                "product": {
                  "name": "ipa-client-0:2.2.0-17.el6_3.1.i686",
                  "product_id": "ipa-client-0:2.2.0-17.el6_3.1.i686",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-client@2.2.0-17.el6_3.1?arch=i686"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-admintools-0:2.2.0-17.el6_3.1.i686",
                "product": {
                  "name": "ipa-admintools-0:2.2.0-17.el6_3.1.i686",
                  "product_id": "ipa-admintools-0:2.2.0-17.el6_3.1.i686",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-admintools@2.2.0-17.el6_3.1?arch=i686"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-python-0:2.2.0-17.el6_3.1.i686",
                "product": {
                  "name": "ipa-python-0:2.2.0-17.el6_3.1.i686",
                  "product_id": "ipa-python-0:2.2.0-17.el6_3.1.i686",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-python@2.2.0-17.el6_3.1?arch=i686"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
                "product": {
                  "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
                  "product_id": "ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-server-selinux@2.2.0-17.el6_3.1?arch=i686"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
                "product": {
                  "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
                  "product_id": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-debuginfo@2.2.0-17.el6_3.1?arch=i686"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-server-0:2.2.0-17.el6_3.1.i686",
                "product": {
                  "name": "ipa-server-0:2.2.0-17.el6_3.1.i686",
                  "product_id": "ipa-server-0:2.2.0-17.el6_3.1.i686",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-server@2.2.0-17.el6_3.1?arch=i686"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "i686"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "ipa-client-0:2.2.0-17.el6_3.1.ppc64",
                "product": {
                  "name": "ipa-client-0:2.2.0-17.el6_3.1.ppc64",
                  "product_id": "ipa-client-0:2.2.0-17.el6_3.1.ppc64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-client@2.2.0-17.el6_3.1?arch=ppc64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-admintools-0:2.2.0-17.el6_3.1.ppc64",
                "product": {
                  "name": "ipa-admintools-0:2.2.0-17.el6_3.1.ppc64",
                  "product_id": "ipa-admintools-0:2.2.0-17.el6_3.1.ppc64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-admintools@2.2.0-17.el6_3.1?arch=ppc64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-python-0:2.2.0-17.el6_3.1.ppc64",
                "product": {
                  "name": "ipa-python-0:2.2.0-17.el6_3.1.ppc64",
                  "product_id": "ipa-python-0:2.2.0-17.el6_3.1.ppc64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-python@2.2.0-17.el6_3.1?arch=ppc64"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.ppc64",
                "product": {
                  "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.ppc64",
                  "product_id": "ipa-debuginfo-0:2.2.0-17.el6_3.1.ppc64",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-debuginfo@2.2.0-17.el6_3.1?arch=ppc64"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "ppc64"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "ipa-client-0:2.2.0-17.el6_3.1.s390x",
                "product": {
                  "name": "ipa-client-0:2.2.0-17.el6_3.1.s390x",
                  "product_id": "ipa-client-0:2.2.0-17.el6_3.1.s390x",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-client@2.2.0-17.el6_3.1?arch=s390x"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-admintools-0:2.2.0-17.el6_3.1.s390x",
                "product": {
                  "name": "ipa-admintools-0:2.2.0-17.el6_3.1.s390x",
                  "product_id": "ipa-admintools-0:2.2.0-17.el6_3.1.s390x",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-admintools@2.2.0-17.el6_3.1?arch=s390x"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-python-0:2.2.0-17.el6_3.1.s390x",
                "product": {
                  "name": "ipa-python-0:2.2.0-17.el6_3.1.s390x",
                  "product_id": "ipa-python-0:2.2.0-17.el6_3.1.s390x",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-python@2.2.0-17.el6_3.1?arch=s390x"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.s390x",
                "product": {
                  "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.s390x",
                  "product_id": "ipa-debuginfo-0:2.2.0-17.el6_3.1.s390x",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/ipa-debuginfo@2.2.0-17.el6_3.1?arch=s390x"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "s390x"
          }
        ],
        "category": "vendor",
        "name": "Red Hat"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-0:2.2.0-17.el6_3.1.src as a component of Red Hat Enterprise Linux Desktop (v. 6)",
          "product_id": "6Client-6.3.z:ipa-0:2.2.0-17.el6_3.1.src"
        },
        "product_reference": "ipa-0:2.2.0-17.el6_3.1.src",
        "relates_to_product_reference": "6Client-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-client-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)",
          "product_id": "6Client-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-client-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Client-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-client-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)",
          "product_id": "6Client-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-client-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Client-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)",
          "product_id": "6Client-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Client-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)",
          "product_id": "6Client-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Client-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-python-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Desktop (v. 6)",
          "product_id": "6Client-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-python-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Client-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-python-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Desktop (v. 6)",
          "product_id": "6Client-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-python-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Client-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-0:2.2.0-17.el6_3.1.src as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)",
          "product_id": "6Client-optional-6.3.z:ipa-0:2.2.0-17.el6_3.1.src"
        },
        "product_reference": "ipa-0:2.2.0-17.el6_3.1.src",
        "relates_to_product_reference": "6Client-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-admintools-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)",
          "product_id": "6Client-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-admintools-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Client-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)",
          "product_id": "6Client-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Client-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)",
          "product_id": "6Client-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Client-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)",
          "product_id": "6Client-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Client-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)",
          "product_id": "6Client-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-server-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Client-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)",
          "product_id": "6Client-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-server-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Client-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)",
          "product_id": "6Client-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Client-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Desktop Optional (v. 6)",
          "product_id": "6Client-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Client-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-0:2.2.0-17.el6_3.1.src as a component of Red Hat Enterprise Linux HPC Node (v. 6)",
          "product_id": "6ComputeNode-6.3.z:ipa-0:2.2.0-17.el6_3.1.src"
        },
        "product_reference": "ipa-0:2.2.0-17.el6_3.1.src",
        "relates_to_product_reference": "6ComputeNode-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-client-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)",
          "product_id": "6ComputeNode-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-client-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6ComputeNode-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)",
          "product_id": "6ComputeNode-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6ComputeNode-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-python-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux HPC Node (v. 6)",
          "product_id": "6ComputeNode-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-python-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6ComputeNode-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-0:2.2.0-17.el6_3.1.src as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)",
          "product_id": "6ComputeNode-optional-6.3.z:ipa-0:2.2.0-17.el6_3.1.src"
        },
        "product_reference": "ipa-0:2.2.0-17.el6_3.1.src",
        "relates_to_product_reference": "6ComputeNode-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)",
          "product_id": "6ComputeNode-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6ComputeNode-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)",
          "product_id": "6ComputeNode-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6ComputeNode-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)",
          "product_id": "6ComputeNode-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-server-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6ComputeNode-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux HPC Node Optional (v. 6)",
          "product_id": "6ComputeNode-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6ComputeNode-optional-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-0:2.2.0-17.el6_3.1.src as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-0:2.2.0-17.el6_3.1.src"
        },
        "product_reference": "ipa-0:2.2.0-17.el6_3.1.src",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-admintools-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-admintools-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-admintools-0:2.2.0-17.el6_3.1.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.ppc64"
        },
        "product_reference": "ipa-admintools-0:2.2.0-17.el6_3.1.ppc64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-admintools-0:2.2.0-17.el6_3.1.s390x as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.s390x"
        },
        "product_reference": "ipa-admintools-0:2.2.0-17.el6_3.1.s390x",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-client-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-client-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-client-0:2.2.0-17.el6_3.1.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.ppc64"
        },
        "product_reference": "ipa-client-0:2.2.0-17.el6_3.1.ppc64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-client-0:2.2.0-17.el6_3.1.s390x as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.s390x"
        },
        "product_reference": "ipa-client-0:2.2.0-17.el6_3.1.s390x",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-client-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-client-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.ppc64"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.ppc64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.s390x as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.s390x"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.s390x",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-python-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-python-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-python-0:2.2.0-17.el6_3.1.ppc64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.ppc64"
        },
        "product_reference": "ipa-python-0:2.2.0-17.el6_3.1.ppc64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-python-0:2.2.0-17.el6_3.1.s390x as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.s390x"
        },
        "product_reference": "ipa-python-0:2.2.0-17.el6_3.1.s390x",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-python-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-python-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-server-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-server-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Server (v. 6)",
          "product_id": "6Server-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Server-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-0:2.2.0-17.el6_3.1.src as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-0:2.2.0-17.el6_3.1.src"
        },
        "product_reference": "ipa-0:2.2.0-17.el6_3.1.src",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-admintools-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-admintools-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-client-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-client-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-client-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-client-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-python-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-python-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-python-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-python-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-server-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-server-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.i686 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686"
        },
        "product_reference": "ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
        "relates_to_product_reference": "6Workstation-6.3.z"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64 as a component of Red Hat Enterprise Linux Workstation (v. 6)",
          "product_id": "6Workstation-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64"
        },
        "product_reference": "ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
        "relates_to_product_reference": "6Workstation-6.3.z"
      }
    ]
  },
  "vulnerabilities": [
    {
      "acknowledgments": [
        {
          "names": [
            "Petr Menšík"
          ]
        }
      ],
      "cve": "CVE-2012-5484",
      "discovery_date": "2012-11-09T00:00:00+00:00",
      "ids": [
        {
          "system_name": "Red Hat Bugzilla ID",
          "text": "876307"
        }
      ],
      "notes": [
        {
          "category": "description",
          "text": "The client in FreeIPA 2.x and 3.x before 3.1.2 does not properly obtain the Certification Authority (CA) certificate from the server, which allows man-in-the-middle attackers to spoof a join procedure via a crafted certificate.",
          "title": "Vulnerability description"
        },
        {
          "category": "summary",
          "text": "ipa: weakness when initiating join from IPA client can potentially compromise IPA domain",
          "title": "Vulnerability summary"
        },
        {
          "category": "general",
          "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product's status, and are included for informational purposes to better understand the severity of this vulnerability.",
          "title": "CVSS score applicability"
        }
      ],
      "product_status": {
        "fixed": [
          "6Client-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
          "6Client-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686",
          "6Client-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
          "6Client-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
          "6Client-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
          "6Client-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686",
          "6Client-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
          "6Client-optional-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
          "6Client-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686",
          "6Client-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
          "6Client-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
          "6Client-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
          "6Client-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686",
          "6Client-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
          "6Client-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
          "6Client-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
          "6ComputeNode-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
          "6ComputeNode-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
          "6ComputeNode-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
          "6ComputeNode-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
          "6ComputeNode-optional-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
          "6ComputeNode-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
          "6ComputeNode-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
          "6ComputeNode-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
          "6ComputeNode-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
          "6Server-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
          "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686",
          "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.ppc64",
          "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.s390x",
          "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
          "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686",
          "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.ppc64",
          "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.s390x",
          "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
          "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
          "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.ppc64",
          "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.s390x",
          "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
          "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686",
          "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.ppc64",
          "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.s390x",
          "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
          "6Server-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686",
          "6Server-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
          "6Server-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
          "6Server-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
          "6Workstation-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
          "6Workstation-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686",
          "6Workstation-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
          "6Workstation-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686",
          "6Workstation-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
          "6Workstation-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
          "6Workstation-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
          "6Workstation-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686",
          "6Workstation-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
          "6Workstation-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686",
          "6Workstation-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
          "6Workstation-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
          "6Workstation-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64"
        ]
      },
      "references": [
        {
          "category": "self",
          "summary": "Canonical URL",
          "url": "https://access.redhat.com/security/cve/CVE-2012-5484"
        },
        {
          "category": "external",
          "summary": "RHBZ#876307",
          "url": "https://bugzilla.redhat.com/show_bug.cgi?id=876307"
        },
        {
          "category": "external",
          "summary": "https://www.cve.org/CVERecord?id=CVE-2012-5484",
          "url": "https://www.cve.org/CVERecord?id=CVE-2012-5484"
        },
        {
          "category": "external",
          "summary": "https://nvd.nist.gov/vuln/detail/CVE-2012-5484",
          "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-5484"
        },
        {
          "category": "external",
          "summary": "http://www.freeipa.org/page/CVE-2012-5484",
          "url": "http://www.freeipa.org/page/CVE-2012-5484"
        }
      ],
      "release_date": "2013-01-23T00:00:00+00:00",
      "remediations": [
        {
          "category": "vendor_fix",
          "date": "2013-01-23T21:33:00+00:00",
          "details": "Before applying this update, make sure all previously-released errata\nrelevant to your system have been applied.\n\nThis update is available via the Red Hat Network. Details on how to\nuse the Red Hat Network to apply this update are available at\nhttps://access.redhat.com/knowledge/articles/11258",
          "product_ids": [
            "6Client-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6Client-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686",
            "6Client-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
            "6Client-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686",
            "6Client-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-optional-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6Client-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686",
            "6Client-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
            "6Client-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686",
            "6Client-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
            "6Client-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6ComputeNode-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-optional-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6ComputeNode-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.ppc64",
            "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.s390x",
            "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.ppc64",
            "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.s390x",
            "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.ppc64",
            "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.s390x",
            "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.ppc64",
            "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.s390x",
            "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6Workstation-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64"
          ],
          "restart_required": {
            "category": "none"
          },
          "url": "https://access.redhat.com/errata/RHSA-2013:0188"
        }
      ],
      "scores": [
        {
          "cvss_v2": {
            "accessComplexity": "HIGH",
            "accessVector": "ADJACENT_NETWORK",
            "authentication": "NONE",
            "availabilityImpact": "COMPLETE",
            "baseScore": 6.8,
            "confidentialityImpact": "COMPLETE",
            "integrityImpact": "COMPLETE",
            "vectorString": "AV:A/AC:H/Au:N/C:C/I:C/A:C",
            "version": "2.0"
          },
          "products": [
            "6Client-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6Client-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686",
            "6Client-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
            "6Client-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686",
            "6Client-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-optional-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6Client-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686",
            "6Client-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
            "6Client-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686",
            "6Client-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
            "6Client-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
            "6Client-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6ComputeNode-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-optional-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6ComputeNode-optional-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-optional-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-optional-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
            "6ComputeNode-optional-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.ppc64",
            "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.s390x",
            "6Server-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.ppc64",
            "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.s390x",
            "6Server-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.ppc64",
            "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.s390x",
            "6Server-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.ppc64",
            "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.s390x",
            "6Server-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
            "6Server-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
            "6Server-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-0:2.2.0-17.el6_3.1.src",
            "6Workstation-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-admintools-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-client-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-debuginfo-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-python-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-server-0:2.2.0-17.el6_3.1.x86_64",
            "6Workstation-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.i686",
            "6Workstation-6.3.z:ipa-server-selinux-0:2.2.0-17.el6_3.1.x86_64"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "details": "Important"
        }
      ],
      "title": "ipa: weakness when initiating join from IPA client can potentially compromise IPA domain"
    }
  ]
}