RHSA-2024:1706: Important: Red Hat Build of Apache Camel 4.0 for Quarkus 3.2 is now available (updates to RHBQ 3.2.11)
An update for Red Hat Build of Apache Camel 4.0 for Quarkus 3.2 is now available (updates to RHBQ 3.2.11).<br>The purpose of this text-only errata is to inform you about the enhancements that improve your developer experience and ensure the security and stability of your products:<br><li> TRIAGE CVE-2024-25710 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file</li> <li> TRIAGE CVE-2024-26308 commons-compress: OutOfMemoryError unpacking broken Pack200 file</li> <li> TRIAGE CVE-2024-1300 vertx-core: io.vertx:vertx-core: memory leak when a TCP server is configured with TLS and SNI support</li> <li> TRIAGE CVE-2024-1023 vert.x: io.vertx/vertx-core: memory leak due to the use of Netty FastThreadLocal data structures in Vertx</li>
Other sources
Important: Red Hat Build of Apache Camel 4.0 for Quarkus 3.2 is now available (updates to RHBQ 3.2.11)
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1706?
The severity of RHSA-2024:1706 is classified as important.
How do I fix RHSA-2024:1706?
To fix RHSA-2024:1706, update the Red Hat Build of Apache Camel to version 4.0 for Quarkus 3.2.11.
What products are affected by RHSA-2024:1706?
RHSA-2024:1706 affects the Red Hat Integration - Camel Extensions for Quarkus.
What enhancements are included in RHSA-2024:1706?
RHSA-2024:1706 includes enhancements that improve developer experience, security, and stability.
Is there a known CVE associated with RHSA-2024:1706?
Yes, RHSA-2024:1706 is associated with CVE-2024-25710.