Red Hat, Inc.

Short Name: Red Hat
Previous Names: [None Entered]
URL: https://www.redhat.com/ [visit link]
Email: [None Entered]
Security URL: https://www.redhat.com/security/ [visit link]
Security Email: secalertredhat.com
Knowledge Base: https://www.redhat.com/apps/support/knowledgebase/ [visit link]
Notes: [No Notes]

Vulnerabilities by Vendor Product

Red Hat, Inc.

Red Hat, Inc.
JBoss Enterprise Application Platform Watch-list
4.3.0
OSVDB ID: 70267 JBoss Enterprise Multiple Products JBoss Remoting org.jboss.remoting.transport.bisocket.BisocketServerInvoker$SecondaryServerSocketThread.run Method Remote DoS
OSVDB ID: 70268 JBoss Enterprise Application Platform JMX Console WAR File Deployment CSRF
5.1.0
OSVDB ID: 70267 JBoss Enterprise Multiple Products JBoss Remoting org.jboss.remoting.transport.bisocket.BisocketServerInvoker$SecondaryServerSocketThread.run Method Remote DoS
5.1.1
OSVDB ID: 83110 JBoss Multiple Products WebPermissionMapping Permission Creation Access Restriction Bypass
5.1.2
OSVDB ID: 83112 JBoss Multiple Products mod_cluster Server Root Context Exposure Access Restriction Bypass
5.1.2
OSVDB ID: 83181 JBoss Multiple Product Java Naming and Directory Interface (JNDI) Service Access Restriction Bypass
4.3.0 CP10
OSVDB ID: 83181 JBoss Multiple Product Java Naming and Directory Interface (JNDI) Service Access Restriction Bypass
4.3.0 EL4
OSVDB ID: 83181 JBoss Multiple Product Java Naming and Directory Interface (JNDI) Service Access Restriction Bypass
4.3.0 EL5
OSVDB ID: 83181 JBoss Multiple Product Java Naming and Directory Interface (JNDI) Service Access Restriction Bypass
5 EL4
OSVDB ID: 83181 JBoss Multiple Product Java Naming and Directory Interface (JNDI) Service Access Restriction Bypass
5 EL5
OSVDB ID: 83181 JBoss Multiple Product Java Naming and Directory Interface (JNDI) Service Access Restriction Bypass
5 EL6
OSVDB ID: 83181 JBoss Multiple Product Java Naming and Directory Interface (JNDI) Service Access Restriction Bypass
5 EL6
OSVDB ID: 86409 JBoss Enterprise Application Platform /var/cache/jboss-ec2-eap Permission Weakness Local Information Disclosure
6 EL4
OSVDB ID: 88523 JBoss Enterprise Application Platform Enterprise Java Beans (EJB) Role-Based Authorization Handling JACC Authorization Bypass
6 EL4
OSVDB ID: 88524 JBoss Enterprise Application Platform org.jboss.as.ejb3.security.AuthorizationInterceptor processInvocation() Method Empty Allowed Role List Handling Arbitrary Method Invocation
5.1.9
OSVDB ID: 89578 JBoss Enterprise Application Platform / JBoss Enterprise Web Platform JMX Console Unspecified XSS
OSVDB ID: 89582 JBoss Enterprise Application Platform / JBoss Enterprise Web Platform CallerIdentityLoginModule Password Retention Remote Session Hijacking
5.1.9
OSVDB ID: 89579 JBoss Enterprise Application Platform / JBoss Enterprise Web Platform Remote Plaintext Symmetric Key Disclosure
5.1.9
OSVDB ID: 89580 JBoss Enterprise Application Platform / JBoss Enterprise Web Platform JMX Invoker Roll Restriction Weakness
5.1.9
OSVDB ID: 89581 JBoss Enterprise Application Platform / JBoss Enterprise Web Platform SecurityAssociation.getCredential() Function Previous Session Credential Disclosure
5.1.9
5.1.9
OSVDB ID: 89583 JBoss Enterprise Application Platform / JBoss Enterprise Web Platform Multiple Servlet Initial Authentication Bypass
5.2.0
OSVDB ID: 89698 JBoss Enterprise Application Platform / JBoss Enterprise Web Platform Insecure Auto-install XML File Admin Password Local Disclosure
5.2.0
OSVDB ID: 91263 JBoss Enterprise Application Platform (EAP) LdapLoginModule / LdapExtLoginModule Module Null Password Authentication Bypass
4.3.0 CP10
OSVDB ID: 91263 JBoss Enterprise Application Platform (EAP) LdapLoginModule / LdapExtLoginModule Module Null Password Authentication Bypass
6.0.1
OSVDB ID: 91263 JBoss Enterprise Application Platform (EAP) LdapLoginModule / LdapExtLoginModule Module Null Password Authentication Bypass
JBoss Enterprise Application Platform for RHEL 5 Watch-list
4.3.0
OSVDB ID: 70266 JBoss Enterprise Multiple Products JBoss Drools Deserialization Static Initializer Remote Code Execution
OSVDB ID: 70267 JBoss Enterprise Multiple Products JBoss Remoting org.jboss.remoting.transport.bisocket.BisocketServerInvoker$SecondaryServerSocketThread.run Method Remote DoS
OSVDB ID: 70268 JBoss Enterprise Application Platform JMX Console WAR File Deployment CSRF
5
OSVDB ID: 70267 JBoss Enterprise Multiple Products JBoss Remoting org.jboss.remoting.transport.bisocket.BisocketServerInvoker$SecondaryServerSocketThread.run Method Remote DoS
IcedTea Watch-list
1.9.1
OSVDB ID: 69675 IcedTea Multiple Variable Public Declaration Remote Information Disclosure
JBoss Enterprise Application Platform for RHEL 4 Watch-list
4.3.0
OSVDB ID: 70266 JBoss Enterprise Multiple Products JBoss Drools Deserialization Static Initializer Remote Code Execution
OSVDB ID: 70267 JBoss Enterprise Multiple Products JBoss Remoting org.jboss.remoting.transport.bisocket.BisocketServerInvoker$SecondaryServerSocketThread.run Method Remote DoS
OSVDB ID: 70268 JBoss Enterprise Application Platform JMX Console WAR File Deployment CSRF
5
OSVDB ID: 70267 JBoss Enterprise Multiple Products JBoss Remoting org.jboss.remoting.transport.bisocket.BisocketServerInvoker$SecondaryServerSocketThread.run Method Remote DoS
JBoss Communications Platform Watch-list
5.1.3
OSVDB ID: 83112 JBoss Multiple Products mod_cluster Server Root Context Exposure Access Restriction Bypass
Jboss Watch-list
3.2.4
OSVDB ID: 30767 JBoss Application Server (jbossas) JMX Console DeploymentFileRepository Traversal Arbitrary File Manipulation
4.0.5
OSVDB ID: 30767 JBoss Application Server (jbossas) JMX Console DeploymentFileRepository Traversal Arbitrary File Manipulation
5.0
OSVDB ID: 84730 JBoss twiddle.sh Credential Command-line Argument Local Credential Disclosure
java-1.6.0-openjdk Watch-list
1.6.0.0-18.b16
OSVDB ID: 56972 OpenJDK IcedTea Java Web Start Framework JAR File Trust Weakness Privilege Escalation
1.6.0.0-22.b16
OSVDB ID: 56972 OpenJDK IcedTea Java Web Start Framework JAR File Trust Weakness Privilege Escalation
iptables Watch-list
1.2.2
OSVDB ID: 6062 Red Hat Linux iptables -m Rate Limit Bypass
1.2.3
OSVDB ID: 6062 Red Hat Linux iptables -m Rate Limit Bypass
GdkPixbuf Watch-list
0.22.0-11
OSVDB ID: 9997 GdkPixbuf pixbuf_create_from_xpm Local Overflow
JBoss Application Server Watch-list
6.1.0.Final
OSVDB ID: 85439 JBoss Application Server Multiple Remote Code Execution
6.1.0.Final
OSVDB ID: 85440 JBoss Application Server Remote Authentication Bypass



The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2013 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use