{"id":"RHSA-2008:0158","summary":"Red Hat Security Advisory: JBoss Enterprise Application Platform security update","modified":"2026-03-11T06:04:31.199199Z","published":"2024-09-15T17:13:25Z","upstream":["CVE-2007-4575","CVE-2007-5461","CVE-2007-6306","CVE-2007-6433","CVE-2008-0002"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2008:0158"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#moderate"},{"type":"ARTICLE","url":"http://www.redhat.com/docs/manuals/jboss/jboss-eap-4.2.0.cp02/readme.html"},{"type":"ARTICLE","url":"https://rhstack.108.redhat.com/docs/Red_Hat_Application_Stack_V.1.2_Release_Notes.html"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=299801"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=421081"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=426206"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2008/rhsa-2008_0158.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2007-4575"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2007-4575"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2007-4575"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2007-5461"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=333791"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2007-5461"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2007-5461"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2007-6306"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2007-6306"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2007-6306"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2007-6433"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2007-6433"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2007-6433"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2008-0002"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=432327"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2008-0002"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2008-0002"}],"affected":[{"package":{"name":"concurrent","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/concurrent"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.3.4-7jpp.ep1.6.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"glassfish-jaf","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/glassfish-jaf"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.1.0-0jpp.ep1.10.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"glassfish-javamail","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/glassfish-javamail"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.4.0-0jpp.ep1.8"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"glassfish-jsf","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/glassfish-jsf"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.2_04-1.p02.0jpp.ep1.18"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"glassfish-jstl","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/glassfish-jstl"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.2.0-0jpp.ep1.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"hibernate3","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/hibernate3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:3.2.4-1.SP1_CP02.0jpp.ep1.1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"hibernate3-annotations","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/hibernate3-annotations"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.2.1-1.patch02.1jpp.ep1.2.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"hibernate3-annotations-javadoc","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/hibernate3-annotations-javadoc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.2.1-1.patch02.1jpp.ep1.2.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"hibernate3-entitymanager","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/hibernate3-entitymanager"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.2.1-1jpp.ep1.6.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"hibernate3-entitymanager-javadoc","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/hibernate3-entitymanager-javadoc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.2.1-1jpp.ep1.6.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"hibernate3-javadoc","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/hibernate3-javadoc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:3.2.4-1.SP1_CP02.0jpp.ep1.1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"hsqldb","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/hsqldb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.0.8-2.patch01.1jpp.ep1.1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jacorb","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jacorb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.3.0-1jpp.ep1.4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jboss-aop","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jboss-aop"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.5.5-1.CP01.0jpp.ep1.1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jboss-cache","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jboss-cache"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.4.1-4.SP8_CP01.1jpp.ep1.1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jboss-common","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jboss-common"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.2.1-0jpp.ep1.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jboss-remoting","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jboss-remoting"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.2.2-3.SP4.0jpp.ep1.1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jboss-seam","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jboss-seam"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.2.1-1.ep1.3.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jboss-seam-docs","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jboss-seam-docs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.2.1-1.ep1.3.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jbossas","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jbossas"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.0-3.GA_CP02.ep1.3.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jbossweb","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jbossweb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.0.0-3.CP05.0jpp.ep1.1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jbossws-wsconsume-impl","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jbossws-wsconsume-impl"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.0.0-0jpp.ep1.3"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jbossxb","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jbossxb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.0-2.SP1.0jpp.ep1.2.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jcommon","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jcommon"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.12-1jpp.ep1.2.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jfreechart","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jfreechart"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.9-1jpp.ep1.2.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"jgroups","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/jgroups"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:2.4.1-1.SP4.0jpp.ep1.2"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"rh-eap-docs","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/rh-eap-docs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.0-3.GA_CP02.ep1.1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"rh-eap-docs-examples","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/rh-eap-docs-examples"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.0-3.GA_CP02.ep1.1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}},{"package":{"name":"wsdl4j","ecosystem":"Red Hat:rhel_application_stack:1","purl":"pkg:rpm/redhat/wsdl4j"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.6.2-1jpp.ep1.8"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2008:0158.json"}}],"schema_version":"1.7.5"}