Описание
the Undertow AJP listener honours forged ssl_cert and is_ssl AJP attributes without requiring any shared-secret authentication. This enables an unauthenticated attacker with direct TCP access to port 8009 to bypass CLIENT-CERT authentication by injecting a forged X.509 certificate via the AJP protocol.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat JBoss Enterprise Application Platform 8 | undertow-core | Affected | ||
| Red Hat JBoss Enterprise Application Platform Expansion Pack | undertow-core | Not affected | ||
| Red Hat JBoss Enterprise Application Platform 7.4.25 | undertow-core | Fixed | RHSA-2026:53806 | 11.08.2026 |
| Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7 | eap7-activemq-artemis | Fixed | RHSA-2026:53644 | 11.08.2026 |
| Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7 | eap7-glassfish-jsf | Fixed | RHSA-2026:53644 | 11.08.2026 |
| Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7 | eap7-ironjacamar | Fixed | RHSA-2026:53644 | 11.08.2026 |
| Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7 | eap7-jackson-annotations | Fixed | RHSA-2026:53644 | 11.08.2026 |
| Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7 | eap7-jackson-core | Fixed | RHSA-2026:53644 | 11.08.2026 |
| Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7 | eap7-jackson-databind | Fixed | RHSA-2026:53644 | 11.08.2026 |
| Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7 | eap7-jackson-jaxrs-providers | Fixed | RHSA-2026:53644 | 11.08.2026 |
Показывать по
Дополнительная информация
Статус:
EPSS
7.4 High
CVSS3
Связанные уязвимости
the Undertow AJP listener honours forged ssl_cert and is_ssl AJP attributes without requiring any shared-secret authentication. This enables an unauthenticated attacker with direct TCP access to port 8009 to bypass CLIENT-CERT authentication by injecting a forged X.509 certificate via the AJP protocol.
the Undertow AJP listener honours forged ssl_cert and is_ssl AJP attributes without requiring any shared-secret authentication. This enables an unauthenticated attacker with direct TCP access to port 8009 to bypass CLIENT-CERT authentication by injecting a forged X.509 certificate via the AJP protocol.
the Undertow AJP listener honours forged ssl_cert and is_ssl AJP attri ...
the Undertow AJP listener honours forged ssl_cert and is_ssl AJP attributes without requiring any shared-secret authentication. This enables an unauthenticated attacker with direct TCP access to port 8009 to bypass CLIENT-CERT authentication by injecting a forged X.509 certificate via the AJP protocol.
EPSS
7.4 High
CVSS3