https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Bug ID: 1713275 Summary: CVE-2019-0221 tomcat: XSS in SSI printenv Product: Security Response Hardware: All OS: Linux Status: NEW Whiteboard: impact=moderate,public=20190413,reported=20190523,sour ce=customer,cvss3=6.3/CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U /C:L/I:L/A:L,epel-all/tomcat=affected,fedora-all/tomca t=affected,eap-5/jbossweb=affected,eap-6/jbossweb=affe cted,jdg-6/jbossweb=affected,jdg-7/tomcat=affected,jon -3/jbossweb=affected,rhel-6/tomcat6=new,rhel-7/tomcat= new,rhel-8/pki-deps:10.6/pki-servlet-container=new,bpm s-6/tomcat=affected,brms-5/jbossweb=affected,brms-6/to mcat=affected,jdv-6/jbossweb=affected,fuse-6/tomcat=af fected,fuse-7/tomcat=affected Component: vulnerability Keywords: Security Severity: medium Priority: medium Assignee: security-response-team@redhat.com Reporter: darunesh@redhat.com CC: aileenc@redhat.com, akoufoud@redhat.com, alazarot@redhat.com, alee@redhat.com, almorale@redhat.com, anstephe@redhat.com, bmaxwell@redhat.com, cdewolf@redhat.com, chazlett@redhat.com, coolsvap@gmail.com, csutherl@redhat.com, darran.lofthouse@redhat.com, dosoudil@redhat.com, drieden@redhat.com, etirelli@redhat.com, fgavrilo@redhat.com, ibek@redhat.com, ivan.afonichev@gmail.com, janstey@redhat.com, java-sig-commits@lists.fedoraproject.org, jawilson@redhat.com, jkurik@redhat.com, jochrist@redhat.com, jolee@redhat.com, jondruse@redhat.com, jschatte@redhat.com, jstastny@redhat.com, krathod@redhat.com, krzysztof.daniel@gmail.com, kverlaen@redhat.com, lgao@redhat.com, loleary@redhat.com, lpetrovi@redhat.com, mnovotny@redhat.com, paradhya@redhat.com, pgier@redhat.com, pjurak@redhat.com, ppalaga@redhat.com, psakar@redhat.com, pslavice@redhat.com, rhcs-maint@redhat.com, rnetuka@redhat.com, rrajasek@redhat.com, rstancel@redhat.com, rsvoboda@redhat.com, rsynek@redhat.com, sdaley@redhat.com, spinder@redhat.com, theute@redhat.com, tom.jenkinson@redhat.com, twalsh@redhat.com, vhalbert@redhat.com, vtunka@redhat.com Target Milestone: --- Classification: Other
The SSI printenv command echoes user provided data without escaping and is, therefore, vulnerable to XSS. SSI is disabled by default. The printenv command is intended for debugging and is unlikely to be present in a production website.
Reference: http://tomcat.apache.org/security-9.html
Upstream commit: https://github.com/apache/tomcat/commit/15fcd16
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Dhananjay Arunesh darunesh@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Whiteboard|impact=moderate,public=2019 |impact=moderate,public=2019 |0413,reported=20190523,sour |0413,reported=20190523,sour |ce=customer,cvss3=6.3/CVSS: |ce=customer,cvss3=6.3/CVSS: |3.0/AV:N/AC:L/PR:N/UI:R/S:U |3.0/AV:N/AC:L/PR:N/UI:R/S:U |/C:L/I:L/A:L,epel-all/tomca |/C:L/I:L/A:L,cwe=CWE-79,epe |t=affected,fedora-all/tomca |l-all/tomcat=affected,fedor |t=affected,eap-5/jbossweb=a |a-all/tomcat=affected,eap-5 |ffected,eap-6/jbossweb=affe |/jbossweb=affected,eap-6/jb |cted,jdg-6/jbossweb=affecte |ossweb=affected,jdg-6/jboss |d,jdg-7/tomcat=affected,jon |web=affected,jdg-7/tomcat=a |-3/jbossweb=affected,rhel-6 |ffected,jon-3/jbossweb=affe |/tomcat6=new,rhel-7/tomcat= |cted,rhel-6/tomcat6=new,rhe |new,rhel-8/pki-deps:10.6/pk |l-7/tomcat=new,rhel-8/pki-d |i-servlet-container=new,bpm |eps:10.6/pki-servlet-contai |s-6/tomcat=affected,brms-5/ |ner=new,bpms-6/tomcat=affec |jbossweb=affected,brms-6/to |ted,brms-5/jbossweb=affecte |mcat=affected,jdv-6/jbosswe |d,brms-6/tomcat=affected,jd |b=affected,fuse-6/tomcat=af |v-6/jbossweb=affected,fuse- |fected,fuse-7/tomcat=affect |6/tomcat=affected,fuse-7/to |ed |mcat=affected
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Dhananjay Arunesh darunesh@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Blocks| |1713278 Depends On| |1713279
--- Comment #1 from Dhananjay Arunesh darunesh@redhat.com --- Created tomcat tracking bugs for this issue:
Affects: fedora-all [bug 1713279]
Referenced Bugs:
https://bugzilla.redhat.com/show_bug.cgi?id=1713279 [Bug 1713279] CVE-2019-0221 tomcat: XSS in SSI printenv [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Dhananjay Arunesh darunesh@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Depends On| |1713280
--- Comment #2 from Dhananjay Arunesh darunesh@redhat.com --- Created tomcat tracking bugs for this issue:
Affects: epel-all [bug 1713280]
Referenced Bugs:
https://bugzilla.redhat.com/show_bug.cgi?id=1713280 [Bug 1713280] CVE-2019-0221 tomcat: XSS in SSI printenv [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Kunjan Rathod krathod@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Whiteboard|impact=moderate,public=2019 |impact=moderate,public=2019 |0413,reported=20190523,sour |0413,reported=20190523,sour |ce=customer,cvss3=6.3/CVSS: |ce=customer,cvss3=6.3/CVSS: |3.0/AV:N/AC:L/PR:N/UI:R/S:U |3.0/AV:N/AC:L/PR:N/UI:R/S:U |/C:L/I:L/A:L,cwe=CWE-79,epe |/C:L/I:L/A:L,cwe=CWE-79,epe |l-all/tomcat=affected,fedor |l-all/tomcat=affected,fedor |a-all/tomcat=affected,eap-5 |a-all/tomcat=affected,eap-5 |/jbossweb=affected,eap-6/jb |/jbossweb=wontfix,eap-6/jbo |ossweb=affected,jdg-6/jboss |ssweb=wontfix,jdg-6/jbosswe |web=affected,jdg-7/tomcat=a |b=affected,jdg-7/tomcat=aff |ffected,jon-3/jbossweb=affe |ected,jon-3/jbossweb=wontfi |cted,rhel-6/tomcat6=new,rhe |x,rhel-6/tomcat6=new,rhel-7 |l-7/tomcat=new,rhel-8/pki-d |/tomcat=new,rhel-8/pki-deps |eps:10.6/pki-servlet-contai |:10.6/pki-servlet-container |ner=new,bpms-6/tomcat=affec |=new,bpms-6/tomcat=new,brms |ted,brms-5/jbossweb=affecte |-5/jbossweb=wontfix,brms-6/ |d,brms-6/tomcat=affected,jd |tomcat=new,jdv-6/jbossweb=a |v-6/jbossweb=affected,fuse- |ffected,fuse-6/tomcat=affec |6/tomcat=affected,fuse-7/to |ted,fuse-7/tomcat=affected |mcat=affected |
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Kunjan Rathod krathod@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- CC| |gzaronik@redhat.com, | |jclere@redhat.com, | |mbabacek@redhat.com, | |myarboro@redhat.com, | |weli@redhat.com Whiteboard|impact=moderate,public=2019 |impact=moderate,public=2019 |0413,reported=20190523,sour |0413,reported=20190523,sour |ce=customer,cvss3=6.3/CVSS: |ce=customer,cvss3=6.3/CVSS: |3.0/AV:N/AC:L/PR:N/UI:R/S:U |3.0/AV:N/AC:L/PR:N/UI:R/S:U |/C:L/I:L/A:L,cwe=CWE-79,epe |/C:L/I:L/A:L,cwe=CWE-79,epe |l-all/tomcat=affected,fedor |l-all/tomcat=affected,fedor |a-all/tomcat=affected,eap-5 |a-all/tomcat=affected,eap-5 |/jbossweb=wontfix,eap-6/jbo |/jbossweb=wontfix,eap-6/jbo |ssweb=wontfix,jdg-6/jbosswe |ssweb=wontfix,jdg-6/jbosswe |b=affected,jdg-7/tomcat=aff |b=affected,jdg-7/tomcat=aff |ected,jon-3/jbossweb=wontfi |ected,jon-3/jbossweb=wontfi |x,rhel-6/tomcat6=new,rhel-7 |x,rhel-6/tomcat6=new,rhel-7 |/tomcat=new,rhel-8/pki-deps |/tomcat=new,rhel-8/pki-deps |:10.6/pki-servlet-container |:10.6/pki-servlet-container |=new,bpms-6/tomcat=new,brms |=new,bpms-6/tomcat=new,brms |-5/jbossweb=wontfix,brms-6/ |-5/jbossweb=wontfix,brms-6/ |tomcat=new,jdv-6/jbossweb=a |tomcat=new,jdv-6/jbossweb=a |ffected,fuse-6/tomcat=affec |ffected,fuse-6/tomcat=affec |ted,fuse-7/tomcat=affected |ted,fuse-7/tomcat=affected, | |jws-5/tomcat=new
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Kunjan Rathod krathod@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Whiteboard|impact=moderate,public=2019 |impact=moderate,public=2019 |0413,reported=20190523,sour |0413,reported=20190523,sour |ce=customer,cvss3=6.3/CVSS: |ce=customer,cvss3=6.3/CVSS: |3.0/AV:N/AC:L/PR:N/UI:R/S:U |3.0/AV:N/AC:L/PR:N/UI:R/S:U |/C:L/I:L/A:L,cwe=CWE-79,epe |/C:L/I:L/A:L,cwe=CWE-79,epe |l-all/tomcat=affected,fedor |l-all/tomcat=affected,fedor |a-all/tomcat=affected,eap-5 |a-all/tomcat=affected,eap-5 |/jbossweb=wontfix,eap-6/jbo |/jbossweb=wontfix,eap-6/jbo |ssweb=wontfix,jdg-6/jbosswe |ssweb=wontfix,jdg-6/jbosswe |b=affected,jdg-7/tomcat=aff |b=affected,jdg-7/tomcat=aff |ected,jon-3/jbossweb=wontfi |ected,jon-3/jbossweb=wontfi |x,rhel-6/tomcat6=new,rhel-7 |x,rhel-6/tomcat6=new,rhel-7 |/tomcat=new,rhel-8/pki-deps |/tomcat=new,rhel-8/pki-deps |:10.6/pki-servlet-container |:10.6/pki-servlet-container |=new,bpms-6/tomcat=new,brms |=new,bpms-6/tomcat=new,brms |-5/jbossweb=wontfix,brms-6/ |-5/jbossweb=wontfix,brms-6/ |tomcat=new,jdv-6/jbossweb=a |tomcat=new,jdv-6/jbossweb=a |ffected,fuse-6/tomcat=affec |ffected,fuse-6/tomcat=affec |ted,fuse-7/tomcat=affected, |ted,fuse-7/tomcat=affected, |jws-5/tomcat=new |jws-5/tomcat=affected
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Paramvir jindal pjindal@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Whiteboard|impact=moderate,public=2019 |impact=moderate,public=2019 |0413,reported=20190523,sour |0413,reported=20190523,sour |ce=customer,cvss3=6.3/CVSS: |ce=customer,cvss3=6.3/CVSS: |3.0/AV:N/AC:L/PR:N/UI:R/S:U |3.0/AV:N/AC:L/PR:N/UI:R/S:U |/C:L/I:L/A:L,cwe=CWE-79,epe |/C:L/I:L/A:L,cwe=CWE-79,epe |l-all/tomcat=affected,fedor |l-all/tomcat=affected,fedor |a-all/tomcat=affected,eap-5 |a-all/tomcat=affected,eap-5 |/jbossweb=wontfix,eap-6/jbo |/jbossweb=wontfix,eap-6/jbo |ssweb=wontfix,jdg-6/jbosswe |ssweb=wontfix,jdg-6/jbosswe |b=affected,jdg-7/tomcat=aff |b=wontfix,jdg-7/tomcat=affe |ected,jon-3/jbossweb=wontfi |cted,jon-3/jbossweb=wontfix |x,rhel-6/tomcat6=new,rhel-7 |,rhel-6/tomcat6=new,rhel-7/ |/tomcat=new,rhel-8/pki-deps |tomcat=new,rhel-8/pki-deps: |:10.6/pki-servlet-container |10.6/pki-servlet-container= |=new,bpms-6/tomcat=new,brms |new,bpms-6/tomcat=new,brms- |-5/jbossweb=wontfix,brms-6/ |5/jbossweb=wontfix,brms-6/t |tomcat=new,jdv-6/jbossweb=a |omcat=new,jdv-6/jbossweb=wo |ffected,fuse-6/tomcat=affec |ntfix,fuse-6/tomcat=affecte |ted,fuse-7/tomcat=affected, |d,fuse-7/tomcat=affected,jw |jws-5/tomcat=affected |s-5/tomcat=affected
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Joshua Padman jpadman@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Whiteboard|impact=moderate,public=2019 |impact=moderate,public=2019 |0413,reported=20190523,sour |0413,reported=20190523,sour |ce=customer,cvss3=6.3/CVSS: |ce=customer,cvss3=6.3/CVSS: |3.0/AV:N/AC:L/PR:N/UI:R/S:U |3.0/AV:N/AC:L/PR:N/UI:R/S:U |/C:L/I:L/A:L,cwe=CWE-79,epe |/C:L/I:L/A:L,cwe=CWE-79,epe |l-all/tomcat=affected,fedor |l-all/tomcat=affected,fedor |a-all/tomcat=affected,eap-5 |a-all/tomcat=affected,eap-5 |/jbossweb=wontfix,eap-6/jbo |/jbossweb=wontfix,eap-6/jbo |ssweb=wontfix,jdg-6/jbosswe |ssweb=wontfix,jdg-6/jbosswe |b=wontfix,jdg-7/tomcat=affe |b=wontfix,jdg-7/tomcat=affe |cted,jon-3/jbossweb=wontfix |cted,jon-3/jbossweb=wontfix |,rhel-6/tomcat6=new,rhel-7/ |,rhel-6/tomcat6=new,rhel-7/ |tomcat=new,rhel-8/pki-deps: |tomcat=new,rhel-8/pki-deps: |10.6/pki-servlet-container= |10.6/pki-servlet-container= |new,bpms-6/tomcat=new,brms- |new,bpms-6/tomcat=new,brms- |5/jbossweb=wontfix,brms-6/t |5/jbossweb=wontfix,brms-6/t |omcat=new,jdv-6/jbossweb=wo |omcat=new,jdv-6/jbossweb=wo |ntfix,fuse-6/tomcat=affecte |ntfix,fuse-6/tomcat=wontfix |d,fuse-7/tomcat=affected,jw |,fuse-7/tomcat=affected,jws |s-5/tomcat=affected |-5/tomcat=affected
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
--- Comment #4 from Joshua Padman jpadman@redhat.com --- This vulnerability is out of security support scope for the following product: * Red Hat JBoss Fuse 6
Please refer to https://access.redhat.com/support/policy/updates/jboss_notes for more details.
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Paramvir jindal pjindal@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Whiteboard|impact=moderate,public=2019 |impact=moderate,public=2019 |0413,reported=20190523,sour |0413,reported=20190523,sour |ce=customer,cvss3=6.3/CVSS: |ce=customer,cvss3=6.3/CVSS: |3.0/AV:N/AC:L/PR:N/UI:R/S:U |3.0/AV:N/AC:L/PR:N/UI:R/S:U |/C:L/I:L/A:L,cwe=CWE-79,epe |/C:L/I:L/A:L,cwe=CWE-79,epe |l-all/tomcat=affected,fedor |l-all/tomcat=affected,fedor |a-all/tomcat=affected,eap-5 |a-all/tomcat=affected,eap-5 |/jbossweb=wontfix,eap-6/jbo |/jbossweb=wontfix,eap-6/jbo |ssweb=wontfix,jdg-6/jbosswe |ssweb=wontfix,jdg-6/jbosswe |b=wontfix,jdg-7/tomcat=affe |b=wontfix,jdg-7/tomcat=nota |cted,jon-3/jbossweb=wontfix |ffected,jon-3/jbossweb=wont |,rhel-6/tomcat6=new,rhel-7/ |fix,rhel-6/tomcat6=new,rhel |tomcat=new,rhel-8/pki-deps: |-7/tomcat=new,rhel-8/pki-de |10.6/pki-servlet-container= |ps:10.6/pki-servlet-contain |new,bpms-6/tomcat=new,brms- |er=new,bpms-6/tomcat=new,br |5/jbossweb=wontfix,brms-6/t |ms-5/jbossweb=wontfix,brms- |omcat=new,jdv-6/jbossweb=wo |6/tomcat=new,jdv-6/jbossweb |ntfix,fuse-6/tomcat=wontfix |=wontfix,fuse-6/tomcat=wont |,fuse-7/tomcat=affected,jws |fix,fuse-7/tomcat=affected, |-5/tomcat=affected |jws-5/tomcat=affected
https://bugzilla.redhat.com/show_bug.cgi?id=1713275 Bug 1713275 depends on bug 1713279, which changed state.
Bug 1713279 Summary: CVE-2019-0221 tomcat: XSS in SSI printenv [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1713279
What |Removed |Added ---------------------------------------------------------------------------- Status|ON_QA |CLOSED Resolution|--- |ERRATA
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Doran Moppert dmoppert@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Priority|medium |low Whiteboard|impact=moderate,public=2019 |impact=low,public=20190413, |0413,reported=20190523,sour |reported=20190523,source=cu |ce=customer,cvss3=6.3/CVSS: |stomer,cvss3=5/CVSS:3.0/AV: |3.0/AV:N/AC:L/PR:N/UI:R/S:U |N/AC:H/PR:N/UI:R/S:U/C:L/I: |/C:L/I:L/A:L,cwe=CWE-79,epe |L/A:L,cwe=CWE-79,epel-all/t |l-all/tomcat=affected,fedor |omcat=affected,fedora-all/t |a-all/tomcat=affected,eap-5 |omcat=affected,eap-5/jbossw |/jbossweb=wontfix,eap-6/jbo |eb=wontfix,eap-6/jbossweb=w |ssweb=wontfix,jdg-6/jbosswe |ontfix,jdg-6/jbossweb=wontf |b=wontfix,jdg-7/tomcat=nota |ix,jdg-7/tomcat=notaffected |ffected,jon-3/jbossweb=wont |,jon-3/jbossweb=wontfix,rhe |fix,rhel-6/tomcat6=new,rhel |l-6/tomcat6=wontfix,rhel-7/ |-7/tomcat=new,rhel-8/pki-de |tomcat=affected,rhel-8/pki- |ps:10.6/pki-servlet-contain |deps:10.6/pki-servlet-conta |er=new,bpms-6/tomcat=new,br |iner=affected,bpms-6/tomcat |ms-5/jbossweb=wontfix,brms- |=new,brms-5/jbossweb=wontfi |6/tomcat=new,jdv-6/jbossweb |x,brms-6/tomcat=new,jdv-6/j |=wontfix,fuse-6/tomcat=wont |bossweb=wontfix,fuse-6/tomc |fix,fuse-7/tomcat=affected, |at=wontfix,fuse-7/tomcat=af |jws-5/tomcat=affected |fected,jws-5/tomcat=affecte | |d Severity|medium |low
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
--- Comment #6 from Doran Moppert dmoppert@redhat.com --- Mitigation:
SSI is disabled in the default Tomcat configuration. The vulnerable printenv command is intended for debugging, and is recommended to not be enabled for a production website.
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Doran Moppert dmoppert@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Depends On| |1724411, 1724410
https://bugzilla.redhat.com/show_bug.cgi?id=1713275 Bug 1713275 depends on bug 1713280, which changed state.
Bug 1713280 Summary: CVE-2019-0221 tomcat: XSS in SSI printenv [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1713280
What |Removed |Added ---------------------------------------------------------------------------- Status|ON_QA |CLOSED Resolution|--- |ERRATA
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
--- Comment #8 from errata-xmlrpc errata-xmlrpc@redhat.com --- This issue has been addressed in the following products:
Red Hat JBoss Web Server
Via RHSA-2019:3931 https://access.redhat.com/errata/RHSA-2019:3931
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
errata-xmlrpc errata-xmlrpc@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Link ID| |Red Hat Product Errata | |RHSA-2019:3931
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
--- Comment #9 from errata-xmlrpc errata-xmlrpc@redhat.com --- This issue has been addressed in the following products:
Red Hat JBoss Web Server 5.2 on RHEL 7 Red Hat JBoss Web Server 5.2 on RHEL 6 Red Hat JBoss Web Server 5.2 on RHEL 8
Via RHSA-2019:3929 https://access.redhat.com/errata/RHSA-2019:3929
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
errata-xmlrpc errata-xmlrpc@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Link ID| |Red Hat Product Errata | |RHSA-2019:3929
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Product Security DevOps Team prodsec-dev@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |CLOSED Resolution|--- |ERRATA Last Closed| |2019-11-20 18:51:26
--- Comment #10 from Product Security DevOps Team prodsec-dev@redhat.com --- This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2019-0221
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
Ted (Jong Seok) Won jwon@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- CC| |jwon@redhat.com, | |pjindal@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
--- Comment #13 from errata-xmlrpc errata-xmlrpc@redhat.com --- This issue has been addressed in the following products:
Red Hat JBoss Web Server
Via RHSA-2020:0860 https://access.redhat.com/errata/RHSA-2020:0860
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
errata-xmlrpc errata-xmlrpc@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Link ID| |Red Hat Product Errata | |RHSA-2020:0860
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
--- Comment #14 from errata-xmlrpc errata-xmlrpc@redhat.com --- This issue has been addressed in the following products:
Red Hat JBoss Web Server 3 for RHEL 7 Red Hat JBoss Web Server 3 for RHEL 6
Via RHSA-2020:0861 https://access.redhat.com/errata/RHSA-2020:0861
https://bugzilla.redhat.com/show_bug.cgi?id=1713275
errata-xmlrpc errata-xmlrpc@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Link ID| |Red Hat Product Errata | |RHSA-2020:0861
java-sig-commits@lists.fedoraproject.org