First published: Mon Jun 04 2018(Updated: )
Red Hat Openshift Application Runtimes provides an application platform<br>that reduces the complexity of developing and operating applications<br>(monoliths and microservices) for OpenShift as a containerized platform.<br>The RHOAR Eclipse Vert.x 3.5.1 release serves as a replacement for RHOAR Eclipse Vert.x 3.4.2, and includes bug fixes and enhancements. For a detailed list of issues resolved in the community Eclipse Vert.x 3.5.1 release, see the release notes in the References section.<br>Security Fix(es):<br><li> jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries (CVE-2018-7489)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Openshift Application Runtimes | >=3.4.2<=3.5.1 | |
Eclipse Vert.x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2018:1786 is classified as moderate.
The potential impacts of RHSA-2018:1786 include vulnerabilities in the application platform that could allow unauthorized access or exploitation.
To fix RHSA-2018:1786, you should update to the latest version of the affected software as recommended in the advisory.
RHSA-2018:1786 affects the RHOAR Eclipse Vert.x version 3.5.1.
The software related to RHSA-2018:1786 is Red Hat Openshift Application Runtimes.