RHSA-2024:7972: Critical: Red Hat Build of Apache Camel 4.4 for Quarkus 3.8 update is now available (RHBQ 3.8.6.SP1)
An update for Red Hat Build of Apache Camel 4.4 for Quarkus 3.8 update is now available (RHBQ 3.8.6.SP1).<br>The purpose of this text-only errata is to inform you about the enhancements that improve your developer experience and ensure the security and stability of your products:<br><li> CVE-2024-47561 org.apache.avro/avro: Schema parsing may trigger Remote Code Execution (RCE)</li> <li> CVE-2024-7254 com.google.protobuf/protobuf-java: StackOverflow vulnerability in Protocol Buffers</li>
Other sources
Critical: Red Hat Build of Apache Camel 4.4 for Quarkus 3.8 update is now available (RHBQ 3.8.6.SP1)
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:7972?
The severity of RHSA-2024:7972 is classified as important.
How do I fix RHSA-2024:7972?
To fix RHSA-2024:7972, update to the latest RHBQ 3.8.6.SP1 release.
What products are affected by RHSA-2024:7972?
RHSA-2024:7972 affects the Red Hat Build of Apache Camel.
What enhancements are included in RHSA-2024:7972?
RHSA-2024:7972 includes enhancements that improve the developer experience and ensure security and stability.
Is there a replacement for RHSA-2024:7972?
There is no specific replacement for RHSA-2024:7972, but upgrading to the latest version is recommended.