RHSA-2016:1219: Moderate: Red Hat JBoss BRMS security and bug fix update
Red Hat JBoss BRMS is a business rules management system for the management, storage, creation, modification, and deployment of JBoss Rules.Security Fix(es): A denial of service flaw was found in the way Spring processes inline DTD declarations. A remote attacker could submit a specially crafted XML file that would cause out-of-memory errors when parsed. (CVE-2015-3192)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2016:1219?
The severity of RHSA-2016:1219 is classified as moderate.
What vulnerabilities are addressed in RHSA-2016:1219?
RHSA-2016:1219 addresses a denial of service flaw in the way Spring processes inline DTD declarations.
How do I fix RHSA-2016:1219?
To fix RHSA-2016:1219, update to the latest patched version of Red Hat JBoss BRMS.
Who is affected by RHSA-2016:1219?
Users of Red Hat JBoss BRMS are affected by the vulnerabilities addressed in RHSA-2016:1219.
Can RHSA-2016:1219 be exploited remotely?
Yes, a remote attacker could exploit the vulnerability in RHSA-2016:1219 to initiate a denial of service attack.