VDB
RHSA-2019%3A1711
RHSA-2019%3A1711
PUBLISHED
CVSS 6.5 MEDIUM
Red Hat Security Advisory: Red Hat JBoss Web Server 3.1 Service Pack 7 security and bug fix update
Risk Scores
CVSS 3.0
6.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat:jboss_enterprise_web_server:3.1::el6 | tomcat8-lib | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el6 | tomcat7-log4j | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat7-docs-webapp | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el6 | tomcat7-webapps | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat8 | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el6 | tomcat7-docs-webapp | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat8-selinux | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el6 | tomcat7 | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el6 | tomcat7-el-2.2-api | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat8-servlet-3.1-api | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat7-jsvc | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el6 | tomcat7-servlet-3.0-api | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat8-log4j | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat7-admin-webapps | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat8-javadoc | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el6 | tomcat7-selinux | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat7-javadoc | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat8-jsvc | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat7-lib | 0, 0 |
| Red Hat:jboss_enterprise_web_server:3.1::el7 | tomcat8-lib | 0, 0 |
…and 32 more
Timeline
- Jul 9, 2019 CVE Published
- Apr 30, 2026 Distribution Patch
- Apr 30, 2026 Distribution Patch
- Apr 30, 2026 Security Advisory
- Apr 30, 2026 Security Advisory
- May 14, 2026 CVE Updated
References
- https://access.redhat.com/errata/RHSA-2019:1711 advisory
- https://access.redhat.com/security/updates/classification/#moderate article
- https://access.redhat.com/documentation/en-us/red_hat_jboss_web_server/3.1/html/3.1.0_release_notes/index article
- https://bugzilla.redhat.com/show_bug.cgi?id=1561266 report
- https://issues.redhat.com/browse/JWS-1303 article
- https://issues.redhat.com/browse/JWS-1414 article
- https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_1711.json advisory
- https://access.redhat.com/security/cve/CVE-2018-0739 report
- https://www.cve.org/CVERecord?id=CVE-2018-0739 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-0739 advisory
- https://www.openssl.org/news/secadv/20180327.txt article