Red Hat Updates
3103Warning Date
Severity Level
Warning Number
Target Sector
15 October, 2019
● High
2019-521
All
Description:
Red Hat has released security updates to address vulnerabilities in the following products:
- Red Hat OpenShift Container Platform 3.10 x86_64
- Red Hat OpenShift Container Platform for Power 3.10 ppc64le
- Red Hat OpenShift Service Mesh 1.0 for RHEL 7 x86_64, RHEL 8 x86_64
- #Red Hat Single Sign-On 7.3 for RHEL 6 x86_64, RHEL 7 x86_64, RHEL 8 x86_64
- JBoss Enterprise Application Platform 6.4 for RHEL 6 x86_64, RHEL 7 x86_64
- JBoss Enterprise Application Platform 6 for RHEL 6 x86_64, RHEL 7 x86_64
- JBoss Enterprise Application Platform 7.2 for RHEL 6 x86_64, RHEL 7 x86_64, RHEL 8 x86_64
- Red Hat Single Sign-On Text-Only Advisories x86_64
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Unauthorized modification.
- Man in the middle attack.
- Denial of service attack (DoS).
- Unauthorized disclosure of information.
- Execute arbitrary code-remotely.
Best practice and Recommendations:
The CERT team encourages users to review Red Hat security advisory and apply the necessary updates: https://access.redhat.com/security/security-updates/#/