RHSA-2017:3113HighCVSS 8.1

Red Hat Security Advisory: Red Hat JBoss Web Server security and bug fix update

Published
November 2, 2017
Last Modified
May 29, 2026

🔗 CVE IDs covered (5)

📋 Description

CVE-2016-2183 — SSL/TLS: Birthday attack against 64-bit block ciphers (SWEET32) CVE-2017-9788 — httpd: Uninitialized memory reflection in mod_auth_digest CVE-2017-9798 — httpd: Use-after-free by limiting unregistered HTTP method (Optionsbleed) CVE-2017-12615 — tomcat: Remote Code Execution via JSP Upload CVE-2017-12617 — tomcat: Remote Code Execution bypass for CVE-2017-12615

🔗 References (10)