RHSA-2022:4932: Important: Red Hat Fuse 7.10.2.P1 security update
This release of Red Hat Fuse 7.10.1 serves as a replacement for Red Hat Fuse 7.10 and includes bug fixes and enhancements, which are documented in the Release Notes document linked in the References.Security Fix(es): google-oauth-client: Token signature not verified [fuse-7] (CVE-2021-22573) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:4932?
The severity of RHSA-2022:4932 is classified as important.
What vulnerabilities are addressed in RHSA-2022:4932?
RHSA-2022:4932 addresses the vulnerability where the token signature is not verified in the google-oauth-client.
How do I fix RHSA-2022:4932?
To fix RHSA-2022:4932, you should update to Red Hat Fuse version 7.10.2 or later.
What software is affected by RHSA-2022:4932?
RHSA-2022:4932 affects Red Hat Fuse versions up to 7.10.
Is there a release note available for RHSA-2022:4932?
Yes, release notes are available that document the bug fixes and enhancements included in RHSA-2022:4932.