Red Hat Alert
3036Warning Date
Severity Level
Warning Number
Target Sector
6 February, 2022
● Critical
2022-4336
All
Description:
Red Hat has released security updates to address several vulnerabilities in the following products:
- crh-maven36-log4j12
- Red Hat Software Collections (for RHEL Server) 1 for RHEL 7 x86_64
- Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7 s390x
- Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7 ppc64le
- Red Hat Software Collections (for RHEL Workstation) 1 for RHEL 7 x86_64
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Denial of service attack (DoS) - Remotely
- Execute arbitrary code
Best practice and Recommendations:
The CERT team encourages users to review Red Hat security advisory and apply the necessary updates: