Advisory Published
Updated

REDHAT-BUG-1052783

First published: Tue Jan 14 2014(Updated: )

IssueDescription: In Red Hat JBoss Enterprise Application Platform, when running under a security manager, it was possible for deployed code to get access to the Modular Service Container (MSC) service registry without any permission checks. This could allow malicious deployments to modify the internal state of the server in various ways.

Affected SoftwareAffected VersionHow to fix
JBoss Enterprise Application Platform

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of REDHAT-BUG-1052783?

    The severity of REDHAT-BUG-1052783 is considered critical due to the potential for unauthorized access to the Modular Service Container.

  • How do I fix REDHAT-BUG-1052783?

    To fix REDHAT-BUG-1052783, ensure to apply the latest patches provided by Red Hat for JBoss Enterprise Application Platform.

  • Which versions of JBoss are affected by REDHAT-BUG-1052783?

    REDHAT-BUG-1052783 affects multiple versions of Red Hat JBoss Enterprise Application Platform that run under a security manager.

  • What are the risks associated with REDHAT-BUG-1052783?

    The risks associated with REDHAT-BUG-1052783 include potential modification of the service registry by malicious code, leading to service disruptions or security breaches.

  • Is there a workaround for REDHAT-BUG-1052783?

    Currently, the best practice is to apply security updates rather than relying on workarounds for REDHAT-BUG-1052783.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203