REDHAT-BUG-2488298: High severity Apache CXF vulnerability
The JwtAccessTokenValidator class in Apache CXF fails to validate the 'aud' (Audience) claims of incoming JWT access tokens. This allows a JWT issued for one Resource Server to be successfully replayed against a completely different Resource Server, leading to Token Confusion/Routing attacks. Users are recommended to upgrade to versions 4.2.2 or 4.1.7, which fixes this issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache CXFto a version that resolves this vulnerability.Fixed in 4.2.2 - Upgrade
Upgrade
Apache CXFto a version that resolves this vulnerability.Fixed in 4.1.7
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2488298?
The severity of REDHAT-BUG-2488298 is classified as high with a score of 7.
What does REDHAT-BUG-2488298 describe?
REDHAT-BUG-2488298 describes a vulnerability in the JwtAccessTokenValidator class of Apache CXF that fails to validate audience claims in JWT access tokens.
How do I fix REDHAT-BUG-2488298?
To fix REDHAT-BUG-2488298, ensure that the JwtAccessTokenValidator properly validates the 'aud' claims of incoming JWT access tokens.
What type of attacks can REDHAT-BUG-2488298 lead to?
REDHAT-BUG-2488298 can lead to Token Confusion or Routing attacks due to improper validation of JWT access tokens.
Which software is affected by REDHAT-BUG-2488298?
REDHAT-BUG-2488298 affects the Apache CXF software.