RHSA-2020:3192: Important: Red Hat Fuse 7.7.0 release and security update
This release of Red Hat Fuse 7.7.0 serves as a replacement for Red Hat Fuse 7.6, and includes bug fixes and enhancements, which are documented in the Release Notes document linked to in the References.Security Fix(es): netty (CVE-2016-4970 CVE-2020-7238 CVE-2019-20444 CVE-2019-20445) dom4j (CVE-2018-1000632) elasticsearch (CVE-2018-3831) pdfbox (CVE-2018-11797) vertx (CVE-2018-12541) spring-data-jpa (CVE-2019-3797) mina-core (CVE-2019-0231) jackson-databind (CVE-2019-12086 CVE-2019-16335 CVE-2019-14540 CVE-2019-17267 CVE-2019-14892 CVE-2019-14893 CVE-2019-16942 CVE-2019-16943 CVE-2019-17531 CVE-2019-20330 CVE-2020-10673 CVE-2020-10672 CVE-2020-8840 CVE-2020-9546 CVE-2020-9547 CVE-2020-9548 CVE-2020-10968 CVE-2020-10969 CVE-2020-11111 CVE-2020-11112 CVE-2020-11113 CVE-2020-11620 CVE-2020-11619 CVE-2020-14195 CVE-2020-14060 CVE-2020-14061 CVE-2020-14062) jackson-mapper-asl (CVE-2019-10172) hawtio (CVE-2019-9827) undertow (CVE-2019-9511 CVE-2020-1757 CVE-2019-14888 CVE-2020-1745) santuario (CVE-2019-12400) apache-commons-beanutils (CVE-2019-10086) cxf (CVE-2019-17573) apache-commons-configuration (CVE-2020-1953) For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:3192?
The severity of RHSA-2020:3192 is categorized as moderate.
How do I fix RHSA-2020:3192?
To fix RHSA-2020:3192, you should update your Red Hat Fuse to version 7.7.0.
What vulnerabilities are addressed in RHSA-2020:3192?
RHSA-2020:3192 addresses multiple vulnerabilities, including CVE-2016-4970, CVE-2020-7238, and CVE-2019-20444.
Is RHSA-2020:3192 relevant for all users of Red Hat Fuse?
Yes, RHSA-2020:3192 is relevant for all users running affected versions of Red Hat Fuse.
What are the release notes for RHSA-2020:3192?
The release notes for RHSA-2020:3192 include details on bug fixes and enhancements, available in the official documentation from Red Hat.