RHSA-2017:0517HighCVSS 7.5

Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform security update

Published
March 14, 2017
Last Modified
August 4, 2026

🔗 CVE IDs covered (2)

📋 Description

CVE-2016-6346 — RESTEasy: Abuse of GZIPInterceptor in RESTEasy can lead to denial of service attack CVE-2017-6056 — tomcat: Infinite loop in the processing of https requests

🎯 Affected products1

  • Red Hat JBoss Enterprise Application Platform 6.4

✅ Remediation

Before applying this update, back up your existing Red Hat JBoss Enterprise Application Platform installation and deployed applications. The References section of this erratum contains a download link (you must log in to download the update).

🔗 References (7)