Lucene search

K
redhatRedHatRHSA-2015:1947
HistoryOct 28, 2015 - 2:33 p.m.

(RHSA-2015:1947) Important: Red Hat JBoss Operations Network 3.3.4 update

2015-10-2814:33:28
access.redhat.com
36

EPSS

0.008

Percentile

81.8%

Red Hat JBoss Operations Network is a Middleware management solution that
provides a single point of control to deploy, manage, and monitor JBoss
Enterprise Middleware, applications, and services.

This JBoss Operations Network 3.3.4 release serves as a replacement for
JBoss Operations Network 3.3.3, and includes several bug fixes. Refer to
the Customer Portal page linked in the References section for information
on the most significant of these changes.

The following security issue is also fixed with this release:

It was found that Apache Cassandra bound an unauthenticated JMX/RMI interface to all network interfaces. A remote attacker able to access the RMI, an API for the transport and remote execution of serialized Java, could use this flaw to execute arbitrary code as the user running Cassandra. (CVE-2015-0225)

All users of JBoss Operations Network 3.3.3 as provided from the Red Hat
Customer Portal are advised to upgrade to JBoss Operations Network 3.3.4.