RHSA-2026:4915

Advisory lineage Upstream: 9 Downstream: 0
Published: 19 Mar 2026, 10:20
Last modified:03 Jun 2026, 10:22

Vulnerability Summary

Overall Risk (default)
high
70/100
CVSS Score
9.6 CRITICAL
3.1 (osv_red_hat)
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

19 Mar 2026, 10:20
Published
Vulnerability first disclosed
03 Jun 2026, 10:22
Last Modified
Vulnerability information updated

Description

Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.4.24 security update

CVSS Metrics

  • v3.1CRITICALScore: 9.6CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:L

Affected Systems

  • redhateap7-apache-cxf

    < 0:3.5.11-1.SP1_redhat_00001.1.el7eap

  • redhateap7-apache-cxf-rt

    < 0:3.5.11-1.SP1_redhat_00001.1.el7eap

  • redhateap7-apache-cxf-services

    < 0:3.5.11-1.SP1_redhat_00001.1.el7eap

  • redhateap7-apache-cxf-tools

    < 0:3.5.11-1.SP1_redhat_00001.1.el7eap

  • redhateap7-eclipse-jgit

    < 0:5.13.5.202508271544-2.r_redhat_00001.1.el7eap

  • redhateap7-hibernate

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-hibernate-core

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-hibernate-entitymanager

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-hibernate-envers

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-hibernate-java8

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-jboss-marshalling

    < 0:2.0.16-1.Final_redhat_00001.1.el7eap

  • redhateap7-jboss-marshalling-river

    < 0:2.0.16-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-all

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-buffer

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-dns

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-haproxy

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-http

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-http2

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-memcache

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-mqtt

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-redis

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-smtp

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-socks

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-stomp

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-codec-xml

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-common

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-handler

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-handler-proxy

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-resolver

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-resolver-dns

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-resolver-dns-classes-macos

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-transport

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-transport-classes-epoll

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-transport-classes-kqueue

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-transport-native-epoll

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-transport-native-epoll-debuginfo

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-transport-native-unix-common

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-netty-transport-sctp

    < 0:4.1.124-1.Final_redhat_00001.1.el7eap

  • redhateap7-undertow

    < 0:2.2.39-1.Final_redhat_00001.1.el7eap

  • redhateap7-wildfly

    < 0:7.4.24-4.GA_redhat_00002.1.el7eap

  • redhateap7-wildfly-java-jdk11

    < 0:7.4.24-4.GA_redhat_00002.1.el7eap

  • redhateap7-wildfly-java-jdk8

    < 0:7.4.24-4.GA_redhat_00002.1.el7eap

  • redhateap7-wildfly-javadocs

    < 0:7.4.24-4.GA_redhat_00002.1.el7eap

  • redhateap7-wildfly-modules

    < 0:7.4.24-4.GA_redhat_00002.1.el7eap

References (54)