VDB
RHSA-2019%3A1297
RHSA-2019%3A1297
PUBLISHED
CVSS 8.800000190734863 HIGH
Red Hat Security Advisory: Red Hat JBoss Core Services Apache HTTP Server 2.4.29 SP2 security update
Risk Scores
CVSS 3.0
8.800000190734863
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat:jboss_core_services:1::el6 | jbcs-httpd24-openssl-debuginfo | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-openssl-devel | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-openssl-static | 0, 0 |
| Red Hat:jboss_core_services:1::el6 | jbcs-httpd24-openssl-libs | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-httpd-manual | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-httpd-selinux | 0, 0 |
| Red Hat:jboss_core_services:1::el6 | jbcs-httpd24-mod_proxy_html | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-openssl-perl | 0, 0 |
| Red Hat:jboss_core_services:1::el6 | jbcs-httpd24-httpd-devel | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-httpd-tools | 0, 0 |
| Red Hat:jboss_core_services:1::el6 | jbcs-httpd24-openssl | 0, 0 |
| Red Hat:jboss_core_services:1::el6 | jbcs-httpd24-mod_ssl | 0, 0 |
| Red Hat:jboss_core_services:1::el6 | jbcs-httpd24-httpd-tools | 0, 0 |
| Red Hat:jboss_core_services:1::el6 | jbcs-httpd24-httpd-debuginfo | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-mod_ssl | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-mod_ldap | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-openssl-debuginfo | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-openssl-libs | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-httpd | 0, 0 |
| Red Hat:jboss_core_services:1::el7 | jbcs-httpd24-openssl | 0, 0 |
…and 12 more
Timeline
- May 30, 2019 CVE Published
- Apr 30, 2026 Distribution Patch
- Apr 30, 2026 Distribution Patch
- Apr 30, 2026 Security Advisory
- Apr 30, 2026 Security Advisory
- Apr 30, 2026 Security Advisory
- Apr 30, 2026 Security Advisory
- May 14, 2026 CVE Updated
References
- https://access.redhat.com/errata/RHSA-2019:1297 advisory
- https://access.redhat.com/security/updates/classification/#important article
- https://bugzilla.redhat.com/show_bug.cgi?id=1591100 report
- https://bugzilla.redhat.com/show_bug.cgi?id=1591163 report
- https://bugzilla.redhat.com/show_bug.cgi?id=1694980 report
- https://issues.redhat.com/browse/JBCS-620 article
- https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_1297.json advisory
- https://access.redhat.com/security/cve/CVE-2018-0495 report
- https://www.cve.org/CVERecord?id=CVE-2018-0495 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-0495 advisory
- https://www.nccgroup.trust/us/our-research/technical-advisory-return-of-the-hidden-number-problem/ article
- https://access.redhat.com/security/cve/CVE-2018-0732 report
- https://www.cve.org/CVERecord?id=CVE-2018-0732 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-0732 advisory
- https://www.openssl.org/news/secadv/20180612.txt article
- https://access.redhat.com/security/cve/CVE-2019-0211 report
- https://www.cve.org/CVERecord?id=CVE-2019-0211 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2019-0211 advisory
- http://www.apache.org/dist/httpd/CHANGES_2.4 article
- https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2019-0211 article
…and 1 more