First published: Wed Sep 23 2020(Updated: )
Red Hat AMQ Clients enable connecting, sending, and receiving messages over the AMQP 1.0 wire transport protocol to or from AMQ Broker 6 and 7.<br>This update provides various bug fixes and enhancements in addition to the client package versions previously released on Red Hat Enterprise Linux 6, 7, and 8.<br>Security Fix(es):<br><li> jackson-databind: Serialization gadgets in org.apache.openjpa.ee.WASRegistryManagedRuntime (CVE-2020-11113)</li> <li> wildfly: Some EJB transaction objects may get accumulated causing Denial of Service (CVE-2020-14297)</li> <li> wildfly: EJB SessionOpenInvocations may not be removed properly after a response is received causing Denial of Service (CVE-2020-14307)</li> <li> log4j: improper validation of certificate with host mismatch in SMTP appender (CVE-2020-9488)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/nodejs-rhea | <1.0.24-1.el8 | 1.0.24-1.el8 |
redhat/qpid-proton | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/nodejs-rhea | <1.0.24-1.el8 | 1.0.24-1.el8 |
redhat/python-qpid-proton-docs | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/python3-qpid-proton | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/python3-qpid-proton-debuginfo | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-c | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-c-debuginfo | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-c-devel | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-c-docs | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-cpp | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-cpp-debuginfo | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-cpp-devel | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-cpp-docs | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-debuginfo | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-debugsource | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-proton-tests | <0.32.0-2.el8 | 0.32.0-2.el8 |
redhat/qpid-cpp | <1.36.0-31.el7a | 1.36.0-31.el7a |
redhat/qpid-proton | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/python-qpid-proton | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/python-qpid-proton-docs | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/qpid-cpp-client | <1.36.0-31.el7a | 1.36.0-31.el7a |
redhat/qpid-cpp-client-devel | <1.36.0-31.el7a | 1.36.0-31.el7a |
redhat/qpid-cpp-client-docs | <1.36.0-31.el7a | 1.36.0-31.el7a |
redhat/qpid-cpp-debuginfo | <1.36.0-31.el7a | 1.36.0-31.el7a |
redhat/qpid-proton-c | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/qpid-proton-c-devel | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/qpid-proton-c-docs | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/qpid-proton-cpp | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/qpid-proton-cpp-devel | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/qpid-proton-cpp-docs | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/qpid-proton-debuginfo | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/qpid-proton-tests | <0.32.0-2.el7 | 0.32.0-2.el7 |
redhat/qpid-cpp | <1.36.0-31.el6_10a | 1.36.0-31.el6_10a |
redhat/qpid-proton | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/python-qpid-proton | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/python-qpid-proton-docs | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-cpp-client | <1.36.0-31.el6_10a | 1.36.0-31.el6_10a |
redhat/qpid-cpp-client-devel | <1.36.0-31.el6_10a | 1.36.0-31.el6_10a |
redhat/qpid-cpp-client-docs | <1.36.0-31.el6_10a | 1.36.0-31.el6_10a |
redhat/qpid-cpp-debuginfo | <1.36.0-31.el6_10a | 1.36.0-31.el6_10a |
redhat/qpid-proton-c | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-c-devel | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-c-docs | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-cpp | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-cpp-devel | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-cpp-docs | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-debuginfo | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-tests | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/python-qpid-proton | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-c | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-c-devel | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-cpp | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-cpp-devel | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
redhat/qpid-proton-debuginfo | <0.32.0-1.el6_10 | 0.32.0-1.el6_10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.