First published: Thu Jan 12 2023(Updated: )
Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime.<br>This asynchronous patch is a security update for Red Hat JBoss Enterprise Application Platform 7.4.<br>Security Fix(es):<br><li> CXF: Apache CXF: SSRF Vulnerability (CVE-2022-46364)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
JBoss Enterprise Application Platform |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2023:0164 is classified as important.
To fix RHSA-2023:0164, apply the asynchronous patch available for Red Hat JBoss Enterprise Application Platform 7.4.
RHSA-2023:0164 addresses a Server-Side Request Forgery (SSRF) vulnerability in Apache CXF.
RHSA-2023:0164 affects Red Hat JBoss Enterprise Application Platform version 7.4.
RHSA-2023:0164 is applicable only to users utilizing Red Hat JBoss Enterprise Application Platform 7.4.