RHSA-2022:6941HighCVSS 7.5

Red Hat Security Advisory: Red Hat build of Quarkus Platform 2.7.6.SP1 and security update

Published
October 13, 2022
Last Modified
August 4, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2022-25857 — snakeyaml: Denial of Service due to missing nested depth limitation for collections

🎯 Affected products1

  • Red Hat build of Quarkus Platform 2.7.6.SP1

✅ Remediation

Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings, and so on. The References section of this erratum contains a download link for the update. You must be logged in to download the update.

🔗 References (7)