RHSA-2023:5147: Important: Red Hat Integration Camel for Spring Boot 3.18.3.2 release and security update
A security update for Camel for Spring Boot 3.18.3.2 is now available. The purpose of this text-only errata is to inform you about the security issues fixed in this release. spring-boot: Security Bypass With Wildcard Pattern Matching on Cloud Foundry (CVE-2023-20873) jackson-databind: Possible DoS if using JDK serialization to serialize JsonNode (CVE-2021-46877) bouncycastle: potential blind LDAP injection attack using a self-signed certificate (CVE-2023-33201) snappy-java: Unchecked chunk length leads to DoS (CVE-2023-34455) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Important: Red Hat Integration Camel for Spring Boot 3.18.3.2 release and security update
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:5147?
The severity of RHSA-2023:5147 is high.
How does RHSA-2023:5147 affect Red Hat Integration - Camel for Spring Boot?
RHSA-2023:5147 affects Red Hat Integration - Camel for Spring Boot.
Is there a security update available for RHSA-2023:5147?
Yes, a security update is available for RHSA-2023:5147.
Where can I find more information about RHSA-2023:5147?
More information about RHSA-2023:5147 can be found on the Red Hat Customer Portal.