First published: Thu Dec 22 2016(Updated: )
It was found that Red Hat JBoss Core Services incorrectly fixed <a href="https://access.redhat.com/security/cve/CVE-2016-3627">CVE-2016-3627</a> in Apache HTTP 2.4.23 (erratum RHSA-2016:2957), leaving libxml2 vulnerable to a Denial of Service attack via stack consumption.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat JBoss Core Services | ||
Apache HTTP Server | ||
libxml2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1408302 is critical due to its potential for Denial of Service attacks.
To fix REDHAT-BUG-1408302, update your installations of Red Hat JBoss Core Services and libxml2 to the latest patched versions.
REDHAT-BUG-1408302 affects Red Hat JBoss Core Services, Apache HTTP server, and libxml2 without specific version limits stated.
REDHAT-BUG-1408302 is a vulnerability that can lead to Denial of Service via stack consumption.
Currently, the recommended action for REDHAT-BUG-1408302 is to apply the necessary updates rather than seeking workarounds.