RHEA-2018:2188
Vulnerability Summary
Timeline
Description
Red Hat Enhancement Advisory: Red Hat JBoss Web Server 5.0.0 enhancement update
CVSS Metrics
- v3.0•HIGH•Score: 7.5CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Systems
- redhat•jws5
< 0:1-5.el7jws
- redhat•jws5-ecj
< 0:4.6.1-5.redhat_1.1.el7jws
- redhat•jws5-javapackages-tools
< 0:3.4.1-5.15.7.el7jws
- redhat•jws5-jboss-logging
< 0:3.3.1-4.Final_redhat_1.1.el7jws
- redhat•jws5-mod_cluster
< 0:1.4.0-8.Final_redhat_1.1.el7jws
- redhat•jws5-mod_cluster-tomcat
< 0:1.4.0-8.Final_redhat_1.1.el7jws
- redhat•jws5-python-javapackages
< 0:3.4.1-5.15.7.el7jws
- redhat•jws5-runtime
< 0:1-5.el7jws
- redhat•jws5-tomcat
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-admin-webapps
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-docs-webapp
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-el-3.0-api
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-javadoc
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-jsp-2.3-api
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-jsvc
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-lib
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-native
< 0:1.2.17-20.redhat_20.el7jws
- redhat•jws5-tomcat-native-debuginfo
< 0:1.2.17-20.redhat_20.el7jws
- redhat•jws5-tomcat-selinux
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-servlet-4.0-api
< 0:9.0.7-10.redhat_10.1.el7jws
- redhat•jws5-tomcat-vault
< 0:1.1.7-3.Final_redhat_1.1.el7jws
- redhat•jws5-tomcat-vault-javadoc
< 0:1.1.7-3.Final_redhat_1.1.el7jws
- redhat•jws5-tomcat-webapps
< 0:9.0.7-10.redhat_10.1.el7jws
References (7)
- https://access.redhat.com/errata/RHEA-2018:2188
- https://access.redhat.com/documentation/en-us/red_hat_jboss_web_server/5.0/html-single/red_hat_jboss_web_server_5.0_release_notes/
- https://security.access.redhat.com/data/csaf/v2/advisories/2018/rhea-2018_2188.json
- https://access.redhat.com/security/cve/CVE-2018-1336
- https://bugzilla.redhat.com/show_bug.cgi?id=1607591
- https://www.cve.org/CVERecord?id=CVE-2018-1336
- https://nvd.nist.gov/vuln/detail/CVE-2018-1336