RHSA-2024:4976
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: Red Hat JBoss Web Server 6.0.3 release and security update
CVSS Metrics
- v3.1•HIGH•Score: 7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Systems
- redhat•jws6-tomcat
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
- redhat•jws6-tomcat-admin-webapps
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
- redhat•jws6-tomcat-docs-webapp
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
- redhat•jws6-tomcat-el-5.0-api
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
- redhat•jws6-tomcat-javadoc
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
- redhat•jws6-tomcat-jsp-3.1-api
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
- redhat•jws6-tomcat-lib
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
- redhat•jws6-tomcat-selinux
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
- redhat•jws6-tomcat-servlet-6.0-api
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
- redhat•jws6-tomcat-webapps
< 0:10.1.8-10.redhat_00018.1.el8jws | < 0:10.1.8-10.redhat_00018.1.el9jws
References (14)
- https://access.redhat.com/errata/RHSA-2024:4976
- https://access.redhat.com/security/updates/classification/#important
- https://docs.redhat.com/en/documentation/red_hat_jboss_web_server/6.0/html-single/red_hat_jboss_web_server_6.0_service_pack_3_release_notes/index
- https://bugzilla.redhat.com/show_bug.cgi?id=2295651
- https://bugzilla.redhat.com/show_bug.cgi?id=2314686
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_4976.json
- https://access.redhat.com/security/cve/CVE-2024-34750
- https://www.cve.org/CVERecord?id=CVE-2024-34750
- https://nvd.nist.gov/vuln/detail/CVE-2024-34750
- https://lists.apache.org/thread/4kqf0bc9gxymjc2x7v3p7dvplnl77y8l
- https://access.redhat.com/security/cve/CVE-2024-38286
- https://www.cve.org/CVERecord?id=CVE-2024-38286
- https://nvd.nist.gov/vuln/detail/CVE-2024-38286
- https://lists.apache.org/thread/wms60cvbsz3fpbz9psxtfx8r41jl6d4s