First published: Mon Jun 10 2024(Updated: )
AMQ Broker is a high-performance messaging implementation based on ActiveMQ Artemis. It uses an asynchronous journal for fast message persistence, and supports multiple languages, protocols, and platforms.<br>This release of Red Hat AMQ Broker 7.11.7 includes security and bug fixes, and enhancements. For further information, refer to the release notes linked to in the References section.<br>Security Fix(es):<br><li> (CVE-2023-5072) JSON-java: parser confusion leads to OOM</li> <li> (CVE-2024-1132) keycloak: path transversal in redirection validation</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Red Hat JBoss Middleware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2024:3762 is classified as significant due to the potential impacts on security and functionality.
To fix RHSA-2024:3762, update to Red Hat AMQ Broker 7.11.7 or later as recommended by the advisory.
RHSA-2024:3762 affects Red Hat JBoss Middleware and its AMQ Broker implementation.
The security implications of RHSA-2024:3762 may include vulnerabilities that could be exploited if not addressed promptly.
RHSA-2024:3762 was released to address security and bug fixes affecting Red Hat AMQ Broker.