RHSA-2024:2834: Important: Red Hat Build of Apache Camel 4.4 for Quarkus 3.8 update is now available (RHBQ 3.8.4.SP1)
An update for Red Hat Build of Apache Camel 4.4 for Quarkus 3.8 update is now available (RHBQ 3.8.4.SP1).The purpose of this text-only errata is to inform you about the enhancements that improve your developer experience and ensure the security and stability of your products: CVE-2024-29025 netty-codec-http: Allocation of Resources Without Limits or Throttling CVE-2024-28752 cxf-core: Apache CXF SSRF Vulnerability using the Aegis databinding CVE-2024-22371 camel-core: Exposure of sensitive data by crafting a malicious EventFactory
Other sources
Important: Red Hat Build of Apache Camel 4.4 for Quarkus 3.8 update is now available (RHBQ 3.8.4.SP1)
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:2834?
The severity of RHSA-2024:2834 is classified as important.
How do I fix RHSA-2024:2834?
To resolve RHSA-2024:2834, update to Red Hat Build of Apache Camel 4.4 for Quarkus 3.8 to the version 3.8.4.SP1.
What software is affected by RHSA-2024:2834?
RHSA-2024:2834 affects Red Hat Integration - Camel Extensions for Quarkus.
What enhancements are included in RHSA-2024:2834?
RHSA-2024:2834 includes enhancements that improve the developer experience and enhance security and stability.
Is there a specific CVE associated with RHSA-2024:2834?
Yes, RHSA-2024:2834 is associated with CVE-2024-29025.