First published: Thu Dec 14 2023(Updated: )
A security update for 3.20.4 is now available.<br>The purpose of this text-only errata is to inform you about the security issues fixed.<br>Security Fix(es):<br><li> JSON-java: parser confusion leads to OOM (CVE-2023-5072)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Integration - Camel for Spring Boot |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2023:7845 is classified as important.
To fix RHSA-2023:7845, update Red Hat Integration Camel for Spring Boot to version 3.20.4 or later.
RHSA-2023:7845 addresses security vulnerabilities related to parser confusion in JSON-java.
Red Hat Integration Camel for Spring Boot versions prior to 3.20.4 are affected by RHSA-2023:7845.
There are no specific workarounds mentioned for RHSA-2023:7845; the recommended action is to apply the security update.