RHSA-2020:0606: Important: Red Hat JBoss Enterprise Application Platform 7.2 security update
Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime.This asynchronous patch is a security update for the wildfly-security-manager package in Red Hat JBoss Enterprise Application Platform 7.2.Security Fix(es): netty: HTTP Request Smuggling due to Transfer-Encoding whitespace mishandling (CVE-2020-7238) For more details about the security issue(s), including the impact, a CVSS score, and other related information, see the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:0606?
The severity of RHSA-2020:0606 is classified as important.
How do I fix RHSA-2020:0606?
To fix RHSA-2020:0606, update your WildFly security manager package to the latest version provided in the advisory.
Which versions of Red Hat JBoss are affected by RHSA-2020:0606?
RHSA-2020:0606 affects Red Hat JBoss Enterprise Application Platform 7.2.
What does RHSA-2020:0606 address?
RHSA-2020:0606 addresses a security vulnerability in the wildfly-security-manager package.
Is there a workaround for RHSA-2020:0606?
There are no specific workarounds recommended for RHSA-2020:0606; the advised action is to apply the security update.