RHSA-2020:1479HighCVSS 7.6
Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 6.4 security update
🔗 CVE IDs covered (1)
📋 Description
CVE-2020-1938 — tomcat: Apache Tomcat AJP File Read/Inclusion Vulnerability
🎯 Affected products1
- Red Hat JBoss Enterprise Application Platform 6.4
✅ Remediation
Before applying this update, back up your existing Red Hat JBoss Enterprise Application Platform installation and deployed applications. The JBoss server process must be restarted for the update to take effect. The References section of this erratum contains a download link (you must log in to download the update). Workaround: Please refer to the Red Hat knowledgebase article: https://access.redhat.com/solutions/4851251
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2020:1479
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://access.redhat.com/jbossnetwork/restricted/listSoftware.html?product=appplatform&downloadType=securityPatches&version=6.4
- externalhttps://access.redhat.com/documentation/en-us/red_hat_jboss_enterprise_application_platform/6.4/
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1806398
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_1479.json