RHSA-2024:7861: Critical: Apicurio Registry (container images) release and security update [ 2.6.5 GA ]
Critical: Apicurio Registry (container images) release and security update [ 2.6.5 GA ]
Other sources
This release of Red Hat build of Apicurio Registry 2.6.5 GA includes the following security fixes.<br>Security Fix(es):<br><li> org.apache.avro/avro: Schema parsing may trigger Remote Code Execution (RCE) [rhint-serv-2] (CVE-2024-47561)</li>
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:7861?
RHSA-2024:7861 has been classified as a critical vulnerability.
How do I fix RHSA-2024:7861?
To fix RHSA-2024:7861, update to Red Hat build of Apicurio Registry 2.6.5 GA or later.
What vulnerabilities are addressed in RHSA-2024:7861?
RHSA-2024:7861 addresses a vulnerability in org.apache.avro/avro that may trigger remote code execution.
Which products are affected by RHSA-2024:7861?
The affected product under RHSA-2024:7861 is the Red Hat Integration - Service Registry.
When was RHSA-2024:7861 released?
RHSA-2024:7861 was released as part of the Apicurio Registry 2.6.5 GA security update.