RHSA-2014:2019HighCVSS 4.8
Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 6.3.2 security update
🔗 CVE IDs covered (3)
📋 Description
CVE-2012-6153 — CXF: SSL hostname verification bypass, incomplete CVE-2012-5783 fix CVE-2014-3577 — CXF: SSL hostname verification bypass, incomplete CVE-2012-6153 fix CVE-2014-3623 — CXF: Improper security semantics enforcement of SAML SubjectConfirmation methods
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2014:2019
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1129074
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1129916
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1157304
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2014/rhsa-2014_2019.json