Vulnerability Database
Blog
FAQ
Docs
RHSA-2025:2025
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2025:2025
Import Source
https://security.access.redhat.com/data/osv/RHSA-2025:2025.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2025:2025
Published
2025-03-04T10:07:51Z
Modified
2025-06-12T10:02:14Z
Upstream
CVE-2024-10234
Severity
6.1 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:N
CVSS Calculator
Summary
Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 8.0.6 security update
Details
References
https://access.redhat.com/errata/RHSA-2025:2025
https://access.redhat.com/security/updates/classification/#moderate
https://docs.redhat.com/en/documentation/red_hat_jboss_enterprise_application_platform/8.0
https://access.redhat.com/articles/7100706
https://bugzilla.redhat.com/show_bug.cgi?id=2320848
https://issues.redhat.com/browse/JBEAP-27764
https://issues.redhat.com/browse/JBEAP-28389
https://issues.redhat.com/browse/JBEAP-28402
https://issues.redhat.com/browse/JBEAP-28774
https://issues.redhat.com/browse/JBEAP-28836
https://issues.redhat.com/browse/JBEAP-28845
https://issues.redhat.com/browse/JBEAP-28880
https://issues.redhat.com/browse/JBEAP-29009
https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_2025.json
https://access.redhat.com/security/cve/CVE-2024-10234
https://www.cve.org/CVERecord?id=CVE-2024-10234
https://nvd.nist.gov/vuln/detail/CVE-2024-10234
Affected packages
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-artemis-wildfly-integration
Package
Name
eap8-artemis-wildfly-integration
Purl
pkg:rpm/redhat/eap8-artemis-wildfly-integration
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.0.3-1.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-azure-storage
Package
Name
eap8-azure-storage
Purl
pkg:rpm/redhat/eap8-azure-storage
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.6.6-5.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-eap-product-conf-parent
Package
Name
eap8-eap-product-conf-parent
Purl
pkg:rpm/redhat/eap8-eap-product-conf-parent
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:800.6.0-2.GA_redhat_00002.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-eap-product-conf-wildfly-ee-feature-pack
Package
Name
eap8-eap-product-conf-wildfly-ee-feature-pack
Purl
pkg:rpm/redhat/eap8-eap-product-conf-wildfly-ee-feature-pack
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:800.6.0-2.GA_redhat_00002.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-gnu-getopt
Package
Name
eap8-gnu-getopt
Purl
pkg:rpm/redhat/eap8-gnu-getopt
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.13-2.redhat_5.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-h2database
Package
Name
eap8-h2database
Purl
pkg:rpm/redhat/eap8-h2database
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.1.214-2.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-hal-console
Package
Name
eap8-hal-console
Purl
pkg:rpm/redhat/eap8-hal-console
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.6.23-1.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-hibernate-commons-annotations
Package
Name
eap8-hibernate-commons-annotations
Purl
pkg:rpm/redhat/eap8-hibernate-commons-annotations
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.6-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jackson-coreutils
Package
Name
eap8-jackson-coreutils
Purl
pkg:rpm/redhat/eap8-jackson-coreutils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.8.0-2.redhat_00002.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jakarta-authentication-api
Package
Name
eap8-jakarta-authentication-api
Purl
pkg:rpm/redhat/eap8-jakarta-authentication-api
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.0-3.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jakarta-authorization-api
Package
Name
eap8-jakarta-authorization-api
Purl
pkg:rpm/redhat/eap8-jakarta-authorization-api
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.1.0-3.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jakarta-enterprise-cdi-api
Package
Name
eap8-jakarta-enterprise-cdi-api
Purl
pkg:rpm/redhat/eap8-jakarta-enterprise-cdi-api
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.0.1-2.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jakarta-enterprise-concurrent
Package
Name
eap8-jakarta-enterprise-concurrent
Purl
pkg:rpm/redhat/eap8-jakarta-enterprise-concurrent
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.0-4.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jakarta-enterprise-concurrent-api
Package
Name
eap8-jakarta-enterprise-concurrent-api
Purl
pkg:rpm/redhat/eap8-jakarta-enterprise-concurrent-api
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.2-2.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jakarta-enterprise-lang-model
Package
Name
eap8-jakarta-enterprise-lang-model
Purl
pkg:rpm/redhat/eap8-jakarta-enterprise-lang-model
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.0.1-2.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jakarta-security-enterprise-api
Package
Name
eap8-jakarta-security-enterprise-api
Purl
pkg:rpm/redhat/eap8-jakarta-security-enterprise-api
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.0-2.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jakarta-servlet-jsp-api
Package
Name
eap8-jakarta-servlet-jsp-api
Purl
pkg:rpm/redhat/eap8-jakarta-servlet-jsp-api
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.1.0-3.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-javaewah
Package
Name
eap8-javaewah
Purl
pkg:rpm/redhat/eap8-javaewah
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.13-2.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-aesh
Package
Name
eap8-jboss-aesh
Purl
pkg:rpm/redhat/eap8-jboss-aesh
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.4.0-2.redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-common-beans
Package
Name
eap8-jboss-common-beans
Purl
pkg:rpm/redhat/eap8-jboss-common-beans
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.0.1-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-dmr
Package
Name
eap8-jboss-dmr
Purl
pkg:rpm/redhat/eap8-jboss-dmr
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6.1-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-ejb3-ext-api
Package
Name
eap8-jboss-ejb3-ext-api
Purl
pkg:rpm/redhat/eap8-jboss-ejb3-ext-api
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.3.0-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-el-api_5.0_spec
Package
Name
eap8-jboss-el-api_5.0_spec
Purl
pkg:rpm/redhat/eap8-jboss-el-api_5.0_spec
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.0.1-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-genericjms
Package
Name
eap8-jboss-genericjms
Purl
pkg:rpm/redhat/eap8-jboss-genericjms
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.0-3.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-iiop-client
Package
Name
eap8-jboss-iiop-client
Purl
pkg:rpm/redhat/eap8-jboss-iiop-client
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.0.1-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-invocation
Package
Name
eap8-jboss-invocation
Purl
pkg:rpm/redhat/eap8-jboss-invocation
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.0.0-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-logmanager
Package
Name
eap8-jboss-logmanager
Purl
pkg:rpm/redhat/eap8-jboss-logmanager
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.1.19-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-msc
Package
Name
eap8-jboss-msc
Purl
pkg:rpm/redhat/eap8-jboss-msc
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.1-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-remoting-jmx
Package
Name
eap8-jboss-remoting-jmx
Purl
pkg:rpm/redhat/eap8-jboss-remoting-jmx
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.4-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-stdio
Package
Name
eap8-jboss-stdio
Purl
pkg:rpm/redhat/eap8-jboss-stdio
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.0-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-threads
Package
Name
eap8-jboss-threads
Purl
pkg:rpm/redhat/eap8-jboss-threads
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.4.0-3.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-transaction-spi
Package
Name
eap8-jboss-transaction-spi
Purl
pkg:rpm/redhat/eap8-jboss-transaction-spi
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.0-3.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jboss-vfs
Package
Name
eap8-jboss-vfs
Purl
pkg:rpm/redhat/eap8-jboss-vfs
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.3.0-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jbossws-api
Package
Name
eap8-jbossws-api
Purl
pkg:rpm/redhat/eap8-jbossws-api
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.0.0-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jbossws-common
Package
Name
eap8-jbossws-common
Purl
pkg:rpm/redhat/eap8-jbossws-common
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:5.1.0-1.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jbossws-cxf
Package
Name
eap8-jbossws-cxf
Purl
pkg:rpm/redhat/eap8-jbossws-cxf
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:7.3.1-1.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jbossws-spi
Package
Name
eap8-jbossws-spi
Purl
pkg:rpm/redhat/eap8-jbossws-spi
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:5.0.0-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jcip-annotations
Package
Name
eap8-jcip-annotations
Purl
pkg:rpm/redhat/eap8-jcip-annotations
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.0-2.redhat_8.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-json-patch
Package
Name
eap8-json-patch
Purl
pkg:rpm/redhat/eap8-json-patch
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.9.0-2.redhat_00002.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-jul-to-slf4j-stub
Package
Name
eap8-jul-to-slf4j-stub
Purl
pkg:rpm/redhat/eap8-jul-to-slf4j-stub
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.0.1-2.Final_redhat_3.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-reactivex-rxjava2
Package
Name
eap8-reactivex-rxjava2
Purl
pkg:rpm/redhat/eap8-reactivex-rxjava2
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.2.21-2.redhat_00001.2.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-slf4j-jboss-logmanager
Package
Name
eap8-slf4j-jboss-logmanager
Purl
pkg:rpm/redhat/eap8-slf4j-jboss-logmanager
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.0.1-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-staxmapper
Package
Name
eap8-staxmapper
Purl
pkg:rpm/redhat/eap8-staxmapper
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.4.0-2.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-wildfly
Package
Name
eap8-wildfly
Purl
pkg:rpm/redhat/eap8-wildfly
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.6-5.GA_redhat_00004.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-wildfly-common
Package
Name
eap8-wildfly-common
Purl
pkg:rpm/redhat/eap8-wildfly-common
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6.0-4.Final_redhat_00001.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-wildfly-java-jdk11
Package
Name
eap8-wildfly-java-jdk11
Purl
pkg:rpm/redhat/eap8-wildfly-java-jdk11
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.6-5.GA_redhat_00004.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-wildfly-java-jdk17
Package
Name
eap8-wildfly-java-jdk17
Purl
pkg:rpm/redhat/eap8-wildfly-java-jdk17
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.6-5.GA_redhat_00004.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-wildfly-java-jdk21
Package
Name
eap8-wildfly-java-jdk21
Purl
pkg:rpm/redhat/eap8-wildfly-java-jdk21
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.6-5.GA_redhat_00004.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-wildfly-modules
Package
Name
eap8-wildfly-modules
Purl
pkg:rpm/redhat/eap8-wildfly-modules
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:8.0.6-5.GA_redhat_00004.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-woodstox-core
Package
Name
eap8-woodstox-core
Purl
pkg:rpm/redhat/eap8-woodstox-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.4.0-3.redhat_00003.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-xml-commons-resolver
Package
Name
eap8-xml-commons-resolver
Purl
pkg:rpm/redhat/eap8-xml-commons-resolver
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.0-3.redhat_12.1.el8eap
Red Hat:jboss_enterprise_application_platform:8.0::el8
/
eap8-xml-resolver
Package
Name
eap8-xml-resolver
Purl
pkg:rpm/redhat/eap8-xml-resolver
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.0-3.redhat_12.1.el8eap
RHSA-2025:2025 - OSV