Red Hat Alert
2592Warning Date
Severity Level
Warning Number
Target Sector
15 February, 2022
● High
2022-4391
All
Red Hat has released security updates to address several vulnerabilities in the following products:
- firefox
- Red Hat Enterprise Linux for x86_64
- Red Hat Enterprise Linux Server - TUS
- Red Hat Enterprise Linux Server - Update Services for SAP Solutions
- Red Hat Enterprise Linux Workstation
- Red Hat Enterprise Linux Server
- Red Hat Data Grid 8.3.0
- Red Hat JBoss Data Grid
- Red Hat JBoss Web Server 3.1 Service Pack 14
- JBoss Enterprise Web Server
An attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code –remotely
- SQL injection
- Server-side request forgery (SSRF)
- Denial of service attack (DoS)
- Bypass of a protection mechanism
The CERT team encourages users to review Red Hat security advisory and apply the necessary updates:
- https://access.redhat.com/errata/RHSA-2022:0510
- https://access.redhat.com/errata/RHSA-2022:0511
- https://access.redhat.com/errata/RHSA-2022:0512
- https://access.redhat.com/errata/RHSA-2022:0513
- https://access.redhat.com/errata/RHSA-2022:0514
- https://access.redhat.com/errata/RHSA-2022:0520
- https://access.redhat.com/errata/RHSA-2022:0524
- https://access.redhat.com/errata/RHSA-2022:0527