The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a vigilance database and tools to fix them.

Computer vulnerabilities of RedHat JBoss EAP

Apache Tomcat: infinite loop via AbstractInputBuffer.java
An attacker can generate an infinite loop via AbstractInputBuffer.java of Apache Tomcat, in order to trigger a denial of service...
57544, 60578, 851304, CVE-2017-6056, DLA-823-1, DLA-823-2, DSA-3787-1, DSA-3787-2, DSA-3788-1, DSA-3788-2, RHSA-2017:0517-01, RHSA-2017:0826-01, RHSA-2017:0827-01, RHSA-2017:0828-01, RHSA-2017:0829-01, USN-3204-1, VIGILANCE-VUL-21825
Red Hat JBoss EAP: privilege escalation via server.log
An attacker can bypass restrictions via server.log of Red Hat JBoss EAP, in order to escalate his privileges...
CVE-2016-8656, RHSA-2017:0244-01, RHSA-2017:0245-01, RHSA-2017:0246-01, RHSA-2017:0247-01, RHSA-2017:0250-01, RHSA-2017:0830-01, RHSA-2017:0831-01, RHSA-2017:0832-01, RHSA-2017:0834-01, RHSA-2017:3454-01, RHSA-2017:3455-01, RHSA-2017:3456-01, RHSA-2017:3458-01, RHSA-2018:1609-01, VIGILANCE-VUL-21759
Red Hat JBoss EAP: denial of service via Log Files GET Requests
An attacker can generate a fatal error via Log Files GET Requests of Red Hat JBoss EAP, in order to trigger a denial of service...
CVE-2016-8627, RHSA-2017:0170-01, RHSA-2017:0171-01, RHSA-2017:0172-01, RHSA-2017:0173-01, RHSA-2017:0173-2, RHSA-2017:0244-01, RHSA-2017:0245-01, RHSA-2017:0246-01, RHSA-2017:0247-01, RHSA-2017:0250-01, RHSA-2017:3454-01, RHSA-2017:3455-01, RHSA-2017:3456-01, RHSA-2017:3458-01, VIGILANCE-VUL-21623
Red Hat JBoss EAP: information disclosure via Domain Mode
An attacker can bypass access restrictions to data via Domain Mode of Red Hat JBoss EAP, in order to obtain sensitive information...
CVE-2016-7061, JSA10993, RHSA-2017:0170-01, RHSA-2017:0171-01, RHSA-2017:0172-01, RHSA-2017:0173-01, RHSA-2017:0173-2, RHSA-2017:0244-01, RHSA-2017:0245-01, RHSA-2017:0246-01, RHSA-2017:0247-01, RHSA-2017:0250-01, RHSA-2017:3454-01, RHSA-2017:3455-01, RHSA-2017:3456-01, RHSA-2017:3458-01, VIGILANCE-VUL-21622
Apache Tomcat: information disclosure via HTTP Request Line
An attacker can bypass access restrictions to data via HTTP Request Line of Apache Tomcat, in order to obtain sensitive information...
1999395, 1999474, 1999478, 1999479, 1999488, 1999532, 1999671, cpuoct2017, CVE-2016-6816, DLA-728-1, DLA-729-1, DSA-3738-1, DSA-3739-1, FEDORA-2016-98cca07999, FEDORA-2016-9c33466fbb, FEDORA-2016-a98c560116, K50116122, KM03302206, NTAP-20180605-0001, NTAP-20180607-0001, NTAP-20180607-0002, NTAP-20180614-0001, openSUSE-SU-2016:3129-1, openSUSE-SU-2016:3144-1, RHSA-2017:0244-01, RHSA-2017:0245-01, RHSA-2017:0246-01, RHSA-2017:0247-01, RHSA-2017:0250-01, RHSA-2017:0455-01, RHSA-2017:0456-01, RHSA-2017:0457-01, RHSA-2017:0527-01, RHSA-2017:0935-01, SOL50116122, SUSE-SU-2016:3079-1, SUSE-SU-2016:3081-1, SUSE-SU-2017:1632-1, SUSE-SU-2017:1660-1, USN-3177-1, USN-3177-2, USN-4557-1, VIGILANCE-VUL-21173
Apache Tomcat: five vulnerabilities
An attacker can use several vulnerabilities of Apache Tomcat...
1999395, 1999474, 1999478, 1999479, 1999488, 1999532, 1999671, bulletinoct2016, CVE-2016-0762, CVE-2016-5018, CVE-2016-6794, CVE-2016-6796, CVE-2016-6797, DLA-728-1, DLA-729-1, DSA-3720-1, DSA-3721-1, FEDORA-2016-4094bd4ad6, FEDORA-2016-c1b01b9278, NTAP-20180605-0001, NTAP-20180607-0001, NTAP-20180607-0002, NTAP-20180614-0001, openSUSE-SU-2016:3129-1, openSUSE-SU-2016:3144-1, RHSA-2017:0455-01, RHSA-2017:0456-01, RHSA-2017:0457-01, RHSA-2017:1548-01, RHSA-2017:1549-01, RHSA-2017:1550-01, RHSA-2017:1551-01, RHSA-2017:1552-01, RHSA-2017:1658-01, RHSA-2017:1659-01, RHSA-2017:2247-01, SUSE-SU-2016:3079-1, SUSE-SU-2016:3081-1, SUSE-SU-2017:1632-1, SUSE-SU-2017:1660-1, USN-3177-1, USN-3177-2, USN-4557-1, VIGILANCE-VUL-20976
OpenSSL: denial of service via SSL3_AL_WARNING
An attacker can send SSL3_AL_WARNING packets to an SSLv3 application linked to OpenSSL, in order to trigger a denial of service...
1996096, 2000095, 2003480, 2003620, 2003673, 2004940, 2009389, bulletinoct2016, cpujan2020, cpujul2019, cpujul2020, cpuoct2020, CVE-2016-8610, DLA-814-1, DSA-2019-197, DSA-2020-030, DSA-2020-062, DSA-3773-1, FEDORA-2017-3451dbec48, FEDORA-2017-e853b4144f, FreeBSD-SA-16:35.openssl, HPESBHF03897, JSA10808, JSA10809, JSA10810, JSA10811, JSA10813, JSA10814, JSA10816, JSA10817, JSA10818, JSA10820, JSA10821, JSA10822, JSA10825, openSUSE-SU-2017:0386-1, openSUSE-SU-2017:0487-1, openSUSE-SU-2018:4104-1, PAN-SA-2017-0017, pfSense-SA-17_03.webgui, RHSA-2017:0286-01, RHSA-2017:0574-01, RHSA-2017:1548-01, RHSA-2017:1549-01, RHSA-2017:1550-01, RHSA-2017:1551-01, RHSA-2017:1552-01, RHSA-2017:1658-01, RHSA-2017:1659-01, RHSA-2017:2493-01, RHSA-2017:2494-01, SA40886, SP-CAAAPUE, SPL-129207, SUSE-SU-2017:0304-1, SUSE-SU-2017:0348-1, SUSE-SU-2018:0112-1, SUSE-SU-2018:3864-1, SUSE-SU-2018:3864-2, SUSE-SU-2018:3964-1, SUSE-SU-2018:3994-1, SUSE-SU-2018:4068-1, SUSE-SU-2018:4274-1, SUSE-SU-2019:1553-1, USN-3181-1, USN-3183-1, USN-3183-2, VIGILANCE-VUL-20941
Red Hat JBoss EAP: code execution via JMX Servlet
An attacker can use an unserialization via JMX Servlet of Red Hat JBoss EAP, in order to run code...
1382534, CVE-2016-7065, VIGILANCE-VUL-20871
Apache mod_cluster: buffer overflow via JVMRoute
An attacker can generate a buffer overflow via JVMRoute of Apache mod_cluster, in order to trigger a denial of service, and possibly to run code...
1341583, CVE-2016-4459, RHSA-2016:2054-01, RHSA-2016:2055-01, RHSA-2016:2056-01, VIGILANCE-VUL-20859
JBoss Enterprise Application Platform: buffer overflow via Reverse Proxy
An attacker can generate a buffer overflow via Reverse Proxy of JBoss Enterprise Application Platform, in order to trigger a denial of service...
1376646, CVE-2016-7046, RHSA-2016:2640-01, RHSA-2016:2641-01, RHSA-2016:2642-01, RHSA-2016:2657-01, RHSA-2017:3454-01, RHSA-2017:3455-01, RHSA-2017:3456-01, RHSA-2017:3458-01, VIGILANCE-VUL-20757
Our database contains other pages. You can request a free trial to read them.

Display information about RedHat JBoss EAP: