First published: Mon Apr 22 2024(Updated: )
An update for Red Hat Build of Apache Camel 3.18 for Quarkus 2.13 is now available (updates to RHBQ 2.13.9.SP2).<br>The purpose of this text-only errata is to inform you about the enhancements that improve your developer experience and ensure the security and stability of your products:<br><li> TRIAGE CVE-2024-28752 cxf-core: Apache CXF SSRF Vulnerability using the Aegis databinding</li> <li> TRIAGE CVE-2024-25710 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file</li> <li> TRIAGE CVE-2024-26308 commons-compress: OutOfMemoryError unpacking broken Pack200 file</li>
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Integration |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2024:1948 is classified as important.
To fix RHSA-2024:1948, update to Red Hat Build of Apache Camel 3.18 for Quarkus 2.13.9.SP2.
RHSA-2024:1948 addresses enhancements that improve security and stability for Red Hat Integration.
RHSA-2024:1948 affects Red Hat Integration that includes Red Hat Build of Apache Camel 3.18 for Quarkus 2.13.
Applying RHSA-2024:1948 is essential to ensure the continued security and performance of your applications.