VDB

RHSA-2025%3A4227

RHSA-2025%3A4227 PUBLISHED CVSS 7.5 HIGH

An update for the mod_auth_openidc:2.3 module is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions, and Red Hat Enterprise Linux 8.4 Telecommunications Update Service. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Affected Products

VendorProductVersions
Red Hat Enterprise Linux AppStream E4S (v.8.4)
mod_auth_openidc
Red Hat Enterprise Linux AppStream TUS (v.8.4)
Red Hat Enterprise Linux AppStream AUS (v.8.4)
cjose

Timeline

  • Apr 28, 2025 CVE Published
  • Mar 18, 2026 CVE Updated
  • Apr 29, 2026 Distribution Patch
  • Apr 29, 2026 Distribution Patch
  • Apr 29, 2026 Security Advisory
  • May 1, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›