VDB

RHSA-2013%3A0953

RHSA-2013%3A0953 PUBLISHED CVSS 7.800000190734863 HIGH

A flaw was found in JBoss web services where the services used a weak symmetric encryption protocol, PKCS#1 v1.5. An attacker could use this weakness in chosen-ciphertext attacks to recover the symmetric key and conduct further attacks.

Risk Scores

CVSS 2.0
7.800000190734863

Affected Products

VendorProductVersions
Red HatRed Hat JBoss Portal 5.2

Timeline

  • Jun 18, 2013 CVE Published
  • Apr 29, 2026 Distribution Patch
  • Apr 29, 2026 Distribution Patch
  • Apr 29, 2026 Security Advisory
  • Apr 29, 2026 Security Advisory
  • Apr 29, 2026 Security Advisory
  • Apr 29, 2026 Security Advisory
  • May 14, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›