First published: Fri Jul 22 2016(Updated: )
Escalation of priveleges can occur when a Domain Controller process is managing slave Host Controllers running EAP 6.2, 6.3 or 6.4. The domain controller will not propagate its administrative RBAC configuration to those slaves, resulting in the slaves (and the servers they manage) granting administrators full administrative privileges.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat JBoss Enterprise Application Platform (EAP) | >=6.2<6.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1359014 is classified as critical due to the potential escalation of privileges.
To fix REDHAT-BUG-1359014, you should upgrade your Red Hat EAP installations to a version later than 6.4.
REDHAT-BUG-1359014 affects Red Hat EAP versions 6.2, 6.3, and 6.4.
The impact of REDHAT-BUG-1359014 on security includes unauthorized administrative access to managed servers.
Currently, there are no recommended workarounds for REDHAT-BUG-1359014 other than upgrading to an unaffected version.