語系:
https://bugzilla.redhat.com/show_bug.cgi?id=2108554
https://access.redhat.com/security/updates/classification/#important
http://www.nessus.org/u?919aa761
https://bugzilla.redhat.com/show_bug.cgi?id=2278615
https://issues.redhat.com/browse/JBEAP-27002
https://issues.redhat.com/browse/JBEAP-27194
https://bugzilla.redhat.com/show_bug.cgi?id=2311641
https://bugzilla.redhat.com/show_bug.cgi?id=2312511
https://access.redhat.com/errata/RHSA-2024:8824
https://bugzilla.redhat.com/show_bug.cgi?id=2298829
https://bugzilla.redhat.com/show_bug.cgi?id=2309764
https://issues.redhat.com/browse/JBEAP-24945
https://issues.redhat.com/browse/JBEAP-25035
https://issues.redhat.com/browse/JBEAP-27276
https://issues.redhat.com/browse/JBEAP-27293
https://issues.redhat.com/browse/JBEAP-27392
https://issues.redhat.com/browse/JBEAP-27543
https://issues.redhat.com/browse/JBEAP-27585
https://issues.redhat.com/browse/JBEAP-27643
https://issues.redhat.com/browse/JBEAP-27659
https://issues.redhat.com/browse/JBEAP-27688
https://issues.redhat.com/browse/JBEAP-27694
https://issues.redhat.com/browse/JBEAP-27957
https://issues.redhat.com/browse/JBEAP-28057
https://issues.redhat.com/browse/JBEAP-28278
https://issues.redhat.com/browse/JBEAP-28289
嚴重性: High
ID: 210414
檔案名稱: redhat-RHSA-2024-8824.nasl
版本: 1.1
類型: local
代理程式: unix
已發布: 2024/11/6
已更新: 2024/11/6
支援的感應器: Agentless Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus
風險因素: High
分數: 8.5
Vendor Severity: Important
風險因素: High
基本分數: 7.8
時間分數: 6.1
媒介: CVSS2#AV:N/AC:L/Au:N/C:N/I:C/A:N
CVSS 評分資料來源: CVE-2022-34169
風險因素: High
基本分數: 7.7
時間分數: 6.9
媒介: CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:L/A:L
時間媒介: CVSS:3.0/E:P/RL:O/RC:C
CVSS 評分資料來源: CVE-2024-8698
CPE: p-cpe:/a:redhat:enterprise_linux:eap8-apache-commons-codec, p-cpe:/a:redhat:enterprise_linux:eap8-narayana-restat-api, p-cpe:/a:redhat:enterprise_linux:eap8-wildfly, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-selector, p-cpe:/a:redhat:enterprise_linux:eap8-jakarta-servlet-jsp-jstl, cpe:/o:redhat:enterprise_linux:9, p-cpe:/a:redhat:enterprise_linux:eap8-wildfly-modules, p-cpe:/a:redhat:enterprise_linux:eap8-jgroups, p-cpe:/a:redhat:enterprise_linux:eap8-apache-cxf, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-jdbc-store, p-cpe:/a:redhat:enterprise_linux:eap8-jmespath-java, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-hqclient-protocol, p-cpe:/a:redhat:enterprise_linux:eap8-apache-commons-lang, p-cpe:/a:redhat:enterprise_linux:eap8-asyncutil, p-cpe:/a:redhat:enterprise_linux:eap8-aws-java-sdk-kms, p-cpe:/a:redhat:enterprise_linux:eap8-hppc, p-cpe:/a:redhat:enterprise_linux:eap8-insights-java-client, p-cpe:/a:redhat:enterprise_linux:eap8-objectweb-asm, p-cpe:/a:redhat:enterprise_linux:eap8-aws-java-sdk, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis, p-cpe:/a:redhat:enterprise_linux:eap8-apache-commons-io, p-cpe:/a:redhat:enterprise_linux:eap8-narayana-jts-integration, p-cpe:/a:redhat:enterprise_linux:eap8-wildfly-java-jdk17, p-cpe:/a:redhat:enterprise_linux:eap8-cryptacular, p-cpe:/a:redhat:enterprise_linux:eap8-hibernate, p-cpe:/a:redhat:enterprise_linux:eap8-snakeyaml, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-jakarta-ra, p-cpe:/a:redhat:enterprise_linux:eap8-hibernate-envers, p-cpe:/a:redhat:enterprise_linux:eap8-apache-cxf-rt, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-cli, p-cpe:/a:redhat:enterprise_linux:eap8-apache-cxf-tools, p-cpe:/a:redhat:enterprise_linux:eap8-eap-product-conf-parent, p-cpe:/a:redhat:enterprise_linux:eap8-nimbus-jose-jwt, p-cpe:/a:redhat:enterprise_linux:eap8-wildfly-java-jdk11, p-cpe:/a:redhat:enterprise_linux:eap8-eap-product-conf-wildfly-ee-feature-pack, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-jakarta-service-extensions, p-cpe:/a:redhat:enterprise_linux:eap8-artemis-native-wildfly, p-cpe:/a:redhat:enterprise_linux:eap8-jctools-core, p-cpe:/a:redhat:enterprise_linux:eap8-narayana-restat-util, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-commons, p-cpe:/a:redhat:enterprise_linux:eap8-hibernate-core, p-cpe:/a:redhat:enterprise_linux:eap8-aws-java-sdk-core, p-cpe:/a:redhat:enterprise_linux:eap8-aesh-readline, p-cpe:/a:redhat:enterprise_linux:eap8-aesh-extensions, p-cpe:/a:redhat:enterprise_linux:eap8-pem-keystore, p-cpe:/a:redhat:enterprise_linux:eap8-resteasy-tracing-api, p-cpe:/a:redhat:enterprise_linux:eap8-objectweb-asm-util, p-cpe:/a:redhat:enterprise_linux:eap8-log4j, p-cpe:/a:redhat:enterprise_linux:eap8-slf4j-api, p-cpe:/a:redhat:enterprise_linux:eap8-narayana-jts-idlj, p-cpe:/a:redhat:enterprise_linux:eap8-jctools, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-journal, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-server, p-cpe:/a:redhat:enterprise_linux:eap8-jboss-logging, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-hornetq-protocol, p-cpe:/a:redhat:enterprise_linux:eap8-narayana-jbossxts, p-cpe:/a:redhat:enterprise_linux:eap8-resteasy-spring, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-jakarta-server, p-cpe:/a:redhat:enterprise_linux:eap8-artemis-native, p-cpe:/a:redhat:enterprise_linux:eap8-narayana-jbosstxbridge, p-cpe:/a:redhat:enterprise_linux:eap8-hibernate-validator, p-cpe:/a:redhat:enterprise_linux:eap8-resteasy-extensions, p-cpe:/a:redhat:enterprise_linux:eap8-apache-commons-collections, p-cpe:/a:redhat:enterprise_linux:eap8-saaj-impl, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-jakarta-client, p-cpe:/a:redhat:enterprise_linux:eap8-narayana, p-cpe:/a:redhat:enterprise_linux:eap8-narayana-restat-bridge, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-dto, p-cpe:/a:redhat:enterprise_linux:eap8-shibboleth-java-support, p-cpe:/a:redhat:enterprise_linux:eap8-slf4j, p-cpe:/a:redhat:enterprise_linux:eap8-fastinfoset, p-cpe:/a:redhat:enterprise_linux:eap8-jboss-cert-helper, p-cpe:/a:redhat:enterprise_linux:eap8-jakarta-servlet-jsp-jstl-api, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-native, p-cpe:/a:redhat:enterprise_linux:eap8-wildfly-java-jdk21, p-cpe:/a:redhat:enterprise_linux:eap8-activemq-artemis-core-client, p-cpe:/a:redhat:enterprise_linux:eap8-hibernate-validator-cdi, p-cpe:/a:redhat:enterprise_linux:eap8-narayana-restat-integration, p-cpe:/a:redhat:enterprise_linux:eap8-apache-cxf-services, p-cpe:/a:redhat:enterprise_linux:eap8-artemis-wildfly-integration, p-cpe:/a:redhat:enterprise_linux:eap8-aws-java-sdk-s3
必要的 KB 項目: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
可被惡意程式利用: true
可輕鬆利用: Exploits are available
修補程式發佈日期: 2024/11/4
弱點發布日期: 2022/7/19
CVE: CVE-2022-34169, CVE-2023-52428, CVE-2024-4029, CVE-2024-41172, CVE-2024-8698, CVE-2024-8883