RHSA-2024:3560

Source
https://access.redhat.com/errata/RHSA-2024:3560
Import Source
https://security.access.redhat.com/data/osv/RHSA-2024:3560.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2024:3560
Related
Published
2024-09-27T15:04:29Z
Modified
2024-12-24T10:07:34Z
Severity
  • 7.4 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N CVSS Calculator
Summary
Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.4.17 Security update
Details
References

Affected packages

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-apache-cxf

Package

Name
eap7-apache-cxf
Purl
pkg:rpm/redhat/eap7-apache-cxf

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:3.5.8-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-apache-cxf-rt

Package

Name
eap7-apache-cxf-rt
Purl
pkg:rpm/redhat/eap7-apache-cxf-rt

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:3.5.8-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-apache-cxf-services

Package

Name
eap7-apache-cxf-services
Purl
pkg:rpm/redhat/eap7-apache-cxf-services

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:3.5.8-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-apache-cxf-tools

Package

Name
eap7-apache-cxf-tools
Purl
pkg:rpm/redhat/eap7-apache-cxf-tools

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:3.5.8-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-hal-console

Package

Name
eap7-hal-console
Purl
pkg:rpm/redhat/eap7-hal-console

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:3.3.22-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan

Package

Name
eap7-infinispan
Purl
pkg:rpm/redhat/eap7-infinispan

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan-cachestore-jdbc

Package

Name
eap7-infinispan-cachestore-jdbc
Purl
pkg:rpm/redhat/eap7-infinispan-cachestore-jdbc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan-cachestore-remote

Package

Name
eap7-infinispan-cachestore-remote
Purl
pkg:rpm/redhat/eap7-infinispan-cachestore-remote

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan-client-hotrod

Package

Name
eap7-infinispan-client-hotrod
Purl
pkg:rpm/redhat/eap7-infinispan-client-hotrod

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan-commons

Package

Name
eap7-infinispan-commons
Purl
pkg:rpm/redhat/eap7-infinispan-commons

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan-component-annotations

Package

Name
eap7-infinispan-component-annotations
Purl
pkg:rpm/redhat/eap7-infinispan-component-annotations

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan-core

Package

Name
eap7-infinispan-core
Purl
pkg:rpm/redhat/eap7-infinispan-core

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan-hibernate-cache-commons

Package

Name
eap7-infinispan-hibernate-cache-commons
Purl
pkg:rpm/redhat/eap7-infinispan-hibernate-cache-commons

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan-hibernate-cache-spi

Package

Name
eap7-infinispan-hibernate-cache-spi
Purl
pkg:rpm/redhat/eap7-infinispan-hibernate-cache-spi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-infinispan-hibernate-cache-v53

Package

Name
eap7-infinispan-hibernate-cache-v53
Purl
pkg:rpm/redhat/eap7-infinispan-hibernate-cache-v53

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:11.0.19-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-ejb-client

Package

Name
eap7-jboss-ejb-client
Purl
pkg:rpm/redhat/eap7-jboss-ejb-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:4.0.54-3.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-jsf-api_2.3_spec

Package

Name
eap7-jboss-jsf-api_2.3_spec
Purl
pkg:rpm/redhat/eap7-jboss-jsf-api_2.3_spec

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:3.0.0-8.SP08_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-metadata

Package

Name
eap7-jboss-metadata
Purl
pkg:rpm/redhat/eap7-jboss-metadata

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:13.5.0-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-metadata-appclient

Package

Name
eap7-jboss-metadata-appclient
Purl
pkg:rpm/redhat/eap7-jboss-metadata-appclient

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:13.5.0-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-metadata-common

Package

Name
eap7-jboss-metadata-common
Purl
pkg:rpm/redhat/eap7-jboss-metadata-common

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:13.5.0-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-metadata-ear

Package

Name
eap7-jboss-metadata-ear
Purl
pkg:rpm/redhat/eap7-jboss-metadata-ear

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:13.5.0-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-metadata-ejb

Package

Name
eap7-jboss-metadata-ejb
Purl
pkg:rpm/redhat/eap7-jboss-metadata-ejb

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:13.5.0-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-metadata-web

Package

Name
eap7-jboss-metadata-web
Purl
pkg:rpm/redhat/eap7-jboss-metadata-web

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:13.5.0-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-modules

Package

Name
eap7-jboss-modules
Purl
pkg:rpm/redhat/eap7-jboss-modules

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.12.3-3.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-server-migration

Package

Name
eap7-jboss-server-migration
Purl
pkg:rpm/redhat/eap7-jboss-server-migration

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.10.0-36.Final_redhat_00035.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-server-migration-cli

Package

Name
eap7-jboss-server-migration-cli
Purl
pkg:rpm/redhat/eap7-jboss-server-migration-cli

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.10.0-36.Final_redhat_00035.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-jboss-server-migration-core

Package

Name
eap7-jboss-server-migration-core
Purl
pkg:rpm/redhat/eap7-jboss-server-migration-core

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.10.0-36.Final_redhat_00035.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-undertow

Package

Name
eap7-undertow
Purl
pkg:rpm/redhat/eap7-undertow

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:2.2.32-1.SP1_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly

Package

Name
eap7-wildfly
Purl
pkg:rpm/redhat/eap7-wildfly

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.4.17-2.GA_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-discovery

Package

Name
eap7-wildfly-discovery
Purl
pkg:rpm/redhat/eap7-wildfly-discovery

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.2.4-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-discovery-client

Package

Name
eap7-wildfly-discovery-client
Purl
pkg:rpm/redhat/eap7-wildfly-discovery-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.2.4-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-elytron

Package

Name
eap7-wildfly-elytron
Purl
pkg:rpm/redhat/eap7-wildfly-elytron

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.15.23-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-elytron-tool

Package

Name
eap7-wildfly-elytron-tool
Purl
pkg:rpm/redhat/eap7-wildfly-elytron-tool

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.15.23-2.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-http-client

Package

Name
eap7-wildfly-http-client
Purl
pkg:rpm/redhat/eap7-wildfly-http-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1.17-1.Final_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-http-client-common

Package

Name
eap7-wildfly-http-client-common
Purl
pkg:rpm/redhat/eap7-wildfly-http-client-common

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1.17-1.Final_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-http-ejb-client

Package

Name
eap7-wildfly-http-ejb-client
Purl
pkg:rpm/redhat/eap7-wildfly-http-ejb-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1.17-1.Final_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-http-naming-client

Package

Name
eap7-wildfly-http-naming-client
Purl
pkg:rpm/redhat/eap7-wildfly-http-naming-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1.17-1.Final_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-http-transaction-client

Package

Name
eap7-wildfly-http-transaction-client
Purl
pkg:rpm/redhat/eap7-wildfly-http-transaction-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1.17-1.Final_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-java-jdk11

Package

Name
eap7-wildfly-java-jdk11
Purl
pkg:rpm/redhat/eap7-wildfly-java-jdk11

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.4.17-2.GA_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-java-jdk17

Package

Name
eap7-wildfly-java-jdk17
Purl
pkg:rpm/redhat/eap7-wildfly-java-jdk17

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.4.17-2.GA_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-java-jdk8

Package

Name
eap7-wildfly-java-jdk8
Purl
pkg:rpm/redhat/eap7-wildfly-java-jdk8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.4.17-2.GA_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-javadocs

Package

Name
eap7-wildfly-javadocs
Purl
pkg:rpm/redhat/eap7-wildfly-javadocs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.4.17-2.GA_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-modules

Package

Name
eap7-wildfly-modules
Purl
pkg:rpm/redhat/eap7-wildfly-modules

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.4.17-2.GA_redhat_00002.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wildfly-transaction-client

Package

Name
eap7-wildfly-transaction-client
Purl
pkg:rpm/redhat/eap7-wildfly-transaction-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.1.19-1.Final_redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wss4j

Package

Name
eap7-wss4j
Purl
pkg:rpm/redhat/eap7-wss4j

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:2.4.3-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wss4j-bindings

Package

Name
eap7-wss4j-bindings
Purl
pkg:rpm/redhat/eap7-wss4j-bindings

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:2.4.3-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wss4j-policy

Package

Name
eap7-wss4j-policy
Purl
pkg:rpm/redhat/eap7-wss4j-policy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:2.4.3-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wss4j-ws-security-common

Package

Name
eap7-wss4j-ws-security-common
Purl
pkg:rpm/redhat/eap7-wss4j-ws-security-common

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:2.4.3-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wss4j-ws-security-dom

Package

Name
eap7-wss4j-ws-security-dom
Purl
pkg:rpm/redhat/eap7-wss4j-ws-security-dom

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:2.4.3-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wss4j-ws-security-policy-stax

Package

Name
eap7-wss4j-ws-security-policy-stax
Purl
pkg:rpm/redhat/eap7-wss4j-ws-security-policy-stax

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:2.4.3-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-wss4j-ws-security-stax

Package

Name
eap7-wss4j-ws-security-stax
Purl
pkg:rpm/redhat/eap7-wss4j-ws-security-stax

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:2.4.3-1.redhat_00001.1.el8eap

Red Hat:jboss_enterprise_application_platform:7.4::el8 / eap7-xml-security

Package

Name
eap7-xml-security
Purl
pkg:rpm/redhat/eap7-xml-security

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:2.3.4-1.redhat_00002.1.el8eap