Lucene search

K
redhatRedHatRHSA-2023:2099
HistoryMay 03, 2023 - 2:03 p.m.

(RHSA-2023:2099) Important: Red Hat Integration Camel for Spring Boot 3.18.3 Patch 1 security update

2023-05-0314:03:45
access.redhat.com
21
red hat
integration
camel
spring boot
security update
json-smart
resource exhaustion
cve-2023-1370
springframework
dos vulnerability
cve-2023-20863

0.003 Low

EPSS

Percentile

70.0%

A patch is now available for Camel for Spring Boot 3.18.3. The purpose of this text-only errata is to inform you about the security issues fixed in this release.

Security Fix(es):

  • json-smart: Uncontrolled Resource Consumption vulnerability in json-smart (Resource Exhaustion) (CVE-2023-1370)

  • springframework: Spring Expression DoS Vulnerability (CVE-2023-20863)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.