VDB

RHSA-2011:0175

RHSA-2011:0175 PUBLISHED

JBoss Web Framework Kit 1.0.0 contains a security flaw and should no longer be used. This update removes the JBoss Web Framework Kit 1.0.0 packages. The Red Hat Security Response Team has rated this update as having moderate security impact. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available from the CVE link in the References section.

Affected Products

VendorProductVersions
Red Hat JBoss Web Framework Kit 1.0.0 for RHEL 5 Server
jboss
Red Hat JBoss Web Framework Kit 5.0.0 for RHEL 4 ES
Red Hat JBoss Web Framework Kit 5.0.0 for RHEL 4 AS

Timeline

  • Jan 25, 2011 CVE Published
  • Oct 21, 2023 PoC Published
  • Nov 17, 2024 PoC Published
  • Nov 21, 2025 CVE Updated
  • Apr 5, 2026 Distribution Patch
  • Apr 5, 2026 Distribution Patch
  • Apr 5, 2026 Security Advisory
  • Apr 29, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›