RHSA-2017:1801

Source
https://access.redhat.com/errata/RHSA-2017:1801
Import Source
https://security.access.redhat.com/data/osv/RHSA-2017:1801.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2017:1801
Related
Published
2024-09-20T13:49:59Z
Modified
2024-10-27T17:55:11Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Red Hat Security Advisory: Red Hat JBoss Web Server 3.1.0 Service Pack 1 security update
Details
References

Affected packages

Red Hat:jboss_enterprise_web_server:3.1::el6 / log4j-eap6

Package

Name
log4j-eap6
Purl
pkg:rpm/redhat/log4j-eap6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.2.16-12.redhat_3.1.ep6.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat-native

Package

Name
tomcat-native
Purl
pkg:rpm/redhat/tomcat-native

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.2.8-10.redhat_10.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat-native-debuginfo

Package

Name
tomcat-native-debuginfo
Purl
pkg:rpm/redhat/tomcat-native-debuginfo

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.2.8-10.redhat_10.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7

Package

Name
tomcat7
Purl
pkg:rpm/redhat/tomcat7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-admin-webapps

Package

Name
tomcat7-admin-webapps
Purl
pkg:rpm/redhat/tomcat7-admin-webapps

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-docs-webapp

Package

Name
tomcat7-docs-webapp
Purl
pkg:rpm/redhat/tomcat7-docs-webapp

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-el-2.2-api

Package

Name
tomcat7-el-2.2-api
Purl
pkg:rpm/redhat/tomcat7-el-2.2-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-javadoc

Package

Name
tomcat7-javadoc
Purl
pkg:rpm/redhat/tomcat7-javadoc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-jsp-2.2-api

Package

Name
tomcat7-jsp-2.2-api
Purl
pkg:rpm/redhat/tomcat7-jsp-2.2-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-jsvc

Package

Name
tomcat7-jsvc
Purl
pkg:rpm/redhat/tomcat7-jsvc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-lib

Package

Name
tomcat7-lib
Purl
pkg:rpm/redhat/tomcat7-lib

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-log4j

Package

Name
tomcat7-log4j
Purl
pkg:rpm/redhat/tomcat7-log4j

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-selinux

Package

Name
tomcat7-selinux
Purl
pkg:rpm/redhat/tomcat7-selinux

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-servlet-3.0-api

Package

Name
tomcat7-servlet-3.0-api
Purl
pkg:rpm/redhat/tomcat7-servlet-3.0-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat7-webapps

Package

Name
tomcat7-webapps
Purl
pkg:rpm/redhat/tomcat7-webapps

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8

Package

Name
tomcat8
Purl
pkg:rpm/redhat/tomcat8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-admin-webapps

Package

Name
tomcat8-admin-webapps
Purl
pkg:rpm/redhat/tomcat8-admin-webapps

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-docs-webapp

Package

Name
tomcat8-docs-webapp
Purl
pkg:rpm/redhat/tomcat8-docs-webapp

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-el-2.2-api

Package

Name
tomcat8-el-2.2-api
Purl
pkg:rpm/redhat/tomcat8-el-2.2-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-javadoc

Package

Name
tomcat8-javadoc
Purl
pkg:rpm/redhat/tomcat8-javadoc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-jsp-2.3-api

Package

Name
tomcat8-jsp-2.3-api
Purl
pkg:rpm/redhat/tomcat8-jsp-2.3-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-jsvc

Package

Name
tomcat8-jsvc
Purl
pkg:rpm/redhat/tomcat8-jsvc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-lib

Package

Name
tomcat8-lib
Purl
pkg:rpm/redhat/tomcat8-lib

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-log4j

Package

Name
tomcat8-log4j
Purl
pkg:rpm/redhat/tomcat8-log4j

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-selinux

Package

Name
tomcat8-selinux
Purl
pkg:rpm/redhat/tomcat8-selinux

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-servlet-3.1-api

Package

Name
tomcat8-servlet-3.1-api
Purl
pkg:rpm/redhat/tomcat8-servlet-3.1-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el6 / tomcat8-webapps

Package

Name
tomcat8-webapps
Purl
pkg:rpm/redhat/tomcat8-webapps

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el6

Red Hat:jboss_enterprise_web_server:3.1::el7 / log4j-eap6

Package

Name
log4j-eap6
Purl
pkg:rpm/redhat/log4j-eap6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.2.16-12.redhat_3.1.ep6.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat-native

Package

Name
tomcat-native
Purl
pkg:rpm/redhat/tomcat-native

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.2.8-10.redhat_10.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat-native-debuginfo

Package

Name
tomcat-native-debuginfo
Purl
pkg:rpm/redhat/tomcat-native-debuginfo

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:1.2.8-10.redhat_10.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7

Package

Name
tomcat7
Purl
pkg:rpm/redhat/tomcat7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-admin-webapps

Package

Name
tomcat7-admin-webapps
Purl
pkg:rpm/redhat/tomcat7-admin-webapps

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-docs-webapp

Package

Name
tomcat7-docs-webapp
Purl
pkg:rpm/redhat/tomcat7-docs-webapp

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-el-2.2-api

Package

Name
tomcat7-el-2.2-api
Purl
pkg:rpm/redhat/tomcat7-el-2.2-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-javadoc

Package

Name
tomcat7-javadoc
Purl
pkg:rpm/redhat/tomcat7-javadoc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-jsp-2.2-api

Package

Name
tomcat7-jsp-2.2-api
Purl
pkg:rpm/redhat/tomcat7-jsp-2.2-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-jsvc

Package

Name
tomcat7-jsvc
Purl
pkg:rpm/redhat/tomcat7-jsvc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-lib

Package

Name
tomcat7-lib
Purl
pkg:rpm/redhat/tomcat7-lib

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-log4j

Package

Name
tomcat7-log4j
Purl
pkg:rpm/redhat/tomcat7-log4j

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-selinux

Package

Name
tomcat7-selinux
Purl
pkg:rpm/redhat/tomcat7-selinux

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-servlet-3.0-api

Package

Name
tomcat7-servlet-3.0-api
Purl
pkg:rpm/redhat/tomcat7-servlet-3.0-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat7-webapps

Package

Name
tomcat7-webapps
Purl
pkg:rpm/redhat/tomcat7-webapps

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:7.0.70-22.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8

Package

Name
tomcat8
Purl
pkg:rpm/redhat/tomcat8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-admin-webapps

Package

Name
tomcat8-admin-webapps
Purl
pkg:rpm/redhat/tomcat8-admin-webapps

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-docs-webapp

Package

Name
tomcat8-docs-webapp
Purl
pkg:rpm/redhat/tomcat8-docs-webapp

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-el-2.2-api

Package

Name
tomcat8-el-2.2-api
Purl
pkg:rpm/redhat/tomcat8-el-2.2-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-javadoc

Package

Name
tomcat8-javadoc
Purl
pkg:rpm/redhat/tomcat8-javadoc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-jsp-2.3-api

Package

Name
tomcat8-jsp-2.3-api
Purl
pkg:rpm/redhat/tomcat8-jsp-2.3-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-jsvc

Package

Name
tomcat8-jsvc
Purl
pkg:rpm/redhat/tomcat8-jsvc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-lib

Package

Name
tomcat8-lib
Purl
pkg:rpm/redhat/tomcat8-lib

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-log4j

Package

Name
tomcat8-log4j
Purl
pkg:rpm/redhat/tomcat8-log4j

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-selinux

Package

Name
tomcat8-selinux
Purl
pkg:rpm/redhat/tomcat8-selinux

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-servlet-3.1-api

Package

Name
tomcat8-servlet-3.1-api
Purl
pkg:rpm/redhat/tomcat8-servlet-3.1-api

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7

Red Hat:jboss_enterprise_web_server:3.1::el7 / tomcat8-webapps

Package

Name
tomcat8-webapps
Purl
pkg:rpm/redhat/tomcat8-webapps

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0:8.0.36-24.ep7.el7