VDB
RHSA-2018:3595
RHSA-2018:3595
PUBLISHED
CVSS 5.400000095367432 MEDIUM
A security update is now available for Red Hat Single Sign-On 7.2 from the Customer Portal. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. [2021-06-29 UPDATE: The advisory was originally published with incomplete informational links and has been republished to update those links. NO CODE HAS CHANGED WITH THIS UPDATE, AND NO ACTION IS REQUIRED.]
Risk Scores
CVSS 3.1
5.400000095367432
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Single Sign-On 7.2.5 zip |
Timeline
- Nov 13, 2018 CVE Published
- Nov 22, 2024 CVE Updated
- Apr 30, 2026 Distribution Patch
- Apr 30, 2026 Distribution Patch
- Apr 30, 2026 Security Advisory
- Apr 30, 2026 Security Advisory
- Apr 30, 2026 Security Advisory
- Apr 30, 2026 Security Advisory
- May 15, 2026 Security Advisory
- May 15, 2026 Security Advisory
- May 15, 2026 Security Advisory
References
- https://bugzilla.redhat.com/show_bug.cgi?id=1625396 url
- https://bugzilla.redhat.com/show_bug.cgi?id=1627851 url
- https://security.access.redhat.com/data/csaf/v2/advisories/2018/rhsa-2018_3595.json advisory
- https://access.redhat.com/documentation/en-us/red_hat_single_sign_on/?version=7.2 url
- https://bugzilla.redhat.com/show_bug.cgi?id=1599434 url
- https://issues.redhat.com/browse/JBEAP-15587 url
- https://access.redhat.com/errata/RHSA-2018:3595 fix
- https://access.redhat.com/jbossnetwork/restricted/listSoftware.html?downloadType=securityPatches&product=core.service.rhsso&version=7.2 url
- https://bugzilla.redhat.com/show_bug.cgi?id=1624664 url
- https://bugzilla.redhat.com/show_bug.cgi?id=1625404 url
- https://bugzilla.redhat.com/show_bug.cgi?id=1625409 url
- https://access.redhat.com/security/updates/classification/#moderate url