Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
RHSA-2025:3989
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2025:3989
Import Source
https://security.access.redhat.com/data/osv/RHSA-2025:3989.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2025:3989
Upstream
CVE-2024-12369
CVE-2025-23367
Published
2025-04-18T10:04:35Z
Modified
2026-01-27T10:40:38.152122Z
Severity
6.5 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 8.0.7 security update
Details
References
https://access.redhat.com/errata/RHSA-2025:3989
https://access.redhat.com/security/updates/classification/#moderate
https://docs.redhat.com/en/documentation/red_hat_jboss_enterprise_application_platform/8.0
https://access.redhat.com/articles/7114917
https://bugzilla.redhat.com/show_bug.cgi?id=2331178
https://bugzilla.redhat.com/show_bug.cgi?id=2337620
https://issues.redhat.com/browse/JBEAP-28382
https://issues.redhat.com/browse/JBEAP-28663
https://issues.redhat.com/browse/JBEAP-28842
https://issues.redhat.com/browse/JBEAP-28846
https://issues.redhat.com/browse/JBEAP-28847
https://issues.redhat.com/browse/JBEAP-28900
https://issues.redhat.com/browse/JBEAP-28902
https://issues.redhat.com/browse/JBEAP-28961
https://issues.redhat.com/browse/JBEAP-28990
https://issues.redhat.com/browse/JBEAP-29232
https://issues.redhat.com/browse/JBEAP-29439
https://issues.redhat.com/browse/JBEAP-29445
https://issues.redhat.com/browse/JBEAP-29483
https://issues.redhat.com/browse/JBEAP-29555
https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_3989.json
https://access.redhat.com/security/cve/CVE-2024-12369
https://www.cve.org/CVERecord?id=CVE-2024-12369
https://nvd.nist.gov/vuln/detail/CVE-2024-12369
https://github.com/wildfly-security/wildfly-elytron/commit/5ac5e6bbcba58883b3cebb2ddbcec4de140c5ceb
https://github.com/wildfly-security/wildfly-elytron/commit/d7754f5a6a91ceb0f4dbbbfe301991f6a55404cb
https://github.com/wildfly-security/wildfly-elytron/pull/2253
https://github.com/wildfly-security/wildfly-elytron/pull/2261
https://access.redhat.com/security/cve/CVE-2025-23367
https://www.cve.org/CVERecord?id=CVE-2025-23367
https://nvd.nist.gov/vuln/detail/CVE-2025-23367
https://github.com/advisories/GHSA-qr6x-62gq-4ccp
Affected packages
Red Hat:jboss_enterprise_application_platform:8.0::el8
eap8-wildfly-elytron
Package
Name
eap8-wildfly-elytron
Purl
pkg:rpm/redhat/eap8-wildfly-elytron
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.2.9-1.Final_redhat_00001.1.el8eap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2025:3989.json"
eap8-wildfly-elytron-tool
Package
Name
eap8-wildfly-elytron-tool
Purl
pkg:rpm/redhat/eap8-wildfly-elytron-tool
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.2.9-1.Final_redhat_00001.1.el8eap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2025:3989.json"
eap8-wildfly
Package
Name
eap8-wildfly
Purl
pkg:rpm/redhat/eap8-wildfly
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.7-3.GA_redhat_00004.1.el8eap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2025:3989.json"
eap8-wildfly-java-jdk11
Package
Name
eap8-wildfly-java-jdk11
Purl
pkg:rpm/redhat/eap8-wildfly-java-jdk11
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.7-3.GA_redhat_00004.1.el8eap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2025:3989.json"
eap8-wildfly-java-jdk17
Package
Name
eap8-wildfly-java-jdk17
Purl
pkg:rpm/redhat/eap8-wildfly-java-jdk17
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.7-3.GA_redhat_00004.1.el8eap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2025:3989.json"
eap8-wildfly-java-jdk21
Package
Name
eap8-wildfly-java-jdk21
Purl
pkg:rpm/redhat/eap8-wildfly-java-jdk21
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.7-3.GA_redhat_00004.1.el8eap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2025:3989.json"
eap8-wildfly-modules
Package
Name
eap8-wildfly-modules
Purl
pkg:rpm/redhat/eap8-wildfly-modules
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.7-3.GA_redhat_00004.1.el8eap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2025:3989.json"
RHSA-2025:3989 - OSV