RHSA-2025:3467: Important: Red Hat JBoss Enterprise Application Platform 7.4.21 security update
Important: Red Hat JBoss Enterprise Application Platform 7.4 .21 security update
Other sources
Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime.This asynchronous patch is a security update for Red Hat JBoss Enterprise Application Platform 7.4.Security Fix(es): io.netty/netty: Denial of Service attack on windows app using Netty (CVE-2024-47535) netty-common: Denial of Service attack on windows app using Netty (CVE-2025-25193) io.netty/netty-handler: SslHandler doesn't correctly validate packets which can lead to native crash when using native SSLEngine (CVE-2025-24970) org.wildfly.core/wildfly-server: Wildfly improper RBAC permission (CVE-2025-23367) hornetq-core-client: Arbitrarily overwrite files or access sensitive information Security (CVE-2024-51127) A Red Hat Security Bulletin which addresses further details about this flaw is available in the References section.For more details about the security issue(s), including the impact, a CVSS score, acknowledgements, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:3467?
The severity of RHSA-2025:3467 is classified as important.
How do I fix RHSA-2025:3467?
To fix RHSA-2025:3467, users should apply the latest security update for Red Hat JBoss Enterprise Application Platform 7.4.21.
Which versions of Red Hat JBoss Enterprise Application Platform are affected by RHSA-2025:3467?
Red Hat JBoss Enterprise Application Platform 7.4.21 is affected by RHSA-2025:3467.
What type of vulnerabilities does RHSA-2025:3467 address?
RHSA-2025:3467 addresses security vulnerabilities within the Red Hat JBoss Enterprise Application Platform, specifically related to the application's runtime.
Is RHSA-2025:3467 applicable to all Red Hat products?
No, RHSA-2025:3467 is specifically applicable to Red Hat JBoss Enterprise Application Platform.