VDB
RHSA-2024%3A2705
RHSA-2024%3A2705
PUBLISHED
CVSS 7 HIGH
An update is now available for Red Hat build of Quarkus. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability. For more information, see the CVE links in the References section.
Risk Scores
CVSS 3.1
7
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| org.lz4.lz4 | ||
| org.eclipse.angus.angus | ||
| Red Hat build of Quarkus 3.2.12.Final | ||
| org.antlr.antlr4 | ||
| org.apache.james.apache | ||
| org.aesh.aesh | ||
| io.vertx.vertx | ||
| io.agroal.agroal | ||
| org.mvnpm.at.vaadin.accordion | ||
| org.jetbrains.annotations | ||
| org.apache.avro.avro | ||
| aopalliance.aopalliance | ||
| io.quarkus.arc.arc | ||
| org.ow2.asm.asm | ||
| org.apiguardian.apiguardian | ||
| org.mvnpm.at.vaadin.app | ||
| org.testcontainers.mariadb | ||
| org.mvnpm.at.vaadin.field |
Timeline
- May 9, 2024 CVE Published
- Dec 1, 2024 CVE Updated
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2024:2705 advisory
- https://access.redhat.com/security/updates/classification/#moderate url
- https://access.redhat.com/documentation/en-us/red_hat_build_of_quarkus/3.2/ url
- https://access.redhat.com/articles/4966181 url
- https://bugzilla.redhat.com/show_bug.cgi?id=2272907 url
- https://bugzilla.redhat.com/show_bug.cgi?id=2273281 url
- https://issues.redhat.com/browse/QUARKUS-4279 url
- https://issues.redhat.com/browse/QUARKUS-4282 url
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_2705.json advisory