First published: Mon Mar 03 2025(Updated: )
An update for Red Hat Build of Apache Camel 4.8 for Quarkus 3.15 update is now available (RHBQ 3.15.3.SP1).<br>The purpose of this text-only errata is to inform you about the enhancements that improve your developer experience and ensure the security and stability of your products:<br><li> quarkus-resteasy: Memory Leak in Quarkus RESTEasy Classic When Client Requests Timeout (CVE-2025-1634)</li> <li> io.quarkus/quarkus-rest: Quarkus REST Endpoint Request Parameter Leakage Due to Shared Instance (CVE-2025-1247)</li> <li> io.netty/netty-handler: SslHandler doesn't correctly validate packets which can lead to native crash when using native SSLEngine (CVE-2025-24970)</li>
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Build of Apache Camel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2025:2067 is classified as a moderate security update.
To address RHSA-2025:2067, you should update your Red Hat Build of Apache Camel to version 4.8 for Quarkus 3.15.3.SP1.
RHSA-2025:2067 addresses various enhancements that improve security and stability for the Apache Camel framework.
RHSA-2025:2067 was released on March 15, 2025.
If you are using Red Hat Build of Apache Camel, you should review RHSA-2025:2067 to determine if your version is affected.