RHSA-2026:42098: Moderate: Red Hat JBoss Enterprise Application Platform 8.1.7 XP 6.0.5.GA release
Moderate: Red Hat JBoss Enterprise Application Platform 8.1.7 XP 6.0.5.GA release
Other sources
This is a cumulative patch release zip for the JBoss EAP XP 6.0.5 runtime distribution for use with EAP 8.1.7.Security Fix(es): kafka-clients: Apache Kafka Clients: Information disclosure and data corruption due to race condition in producer buffer management (CVE-2026-35554) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Red Hat JBoss Enterprise Application Platform EAP 8.1.7 (EAP XP 6.0.5.GA runtime distribution)to a version that resolves this vulnerability.Fixed in 8.1.7 XP 6.0.5.GA - Operational
Back up the existing JBoss EAP installation, including all applications, configuration files, databases, and database settings, before applying the update.
- Operational
Before applying the cumulative patch release, ensure all previously released errata relevant to your system have been applied.
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:42098?
The severity of RHSA-2026:42098 is rated as medium, with a score of 4.
How do I fix RHSA-2026:42098?
To fix RHSA-2026:42098, you should update your Red Hat JBoss Enterprise Application Platform to the latest version available.
What software is affected by RHSA-2026:42098?
RHSA-2026:42098 affects the Red Hat JBoss Enterprise Application Platform, specifically version 8.1.7 and XP 6.0.5.GA.
When was RHSA-2026:42098 published?
RHSA-2026:42098 was published on July 20, 2026.
What is the description of RHSA-2026:42098?
RHSA-2026:42098 describes a moderate vulnerability in the Red Hat JBoss Enterprise Application Platform that requires attention.