CERT-In Vulnerability Note
CIVN-2021-0233
Multiple Vulnerabilities in Red Hat JBoss Enterprise Application Platform
Original Issue Date:September 20, 2021
Severity Rating: HIGH
Software Affected
- JBoss Enterprise Application Platform Text-Only Advisories x86_64
Overview
Multiple vulnerabilities have been reported in Red Hat JBoss Enterprise Application Platform which could be exploited by an attacker to disclose sensitive information and cause Denial of service (DoS) condition on the targeted system.
Description
1. Denial of service Vulnerability
(
CVE-2021-3597
)
The vulnerability exists in Undertow due to HTTP2SourceChannel fails to write final frame under some circumstances. Successful exploitation of this vulnerability could allow an attacker to cause Denial of service (DoS) attack on the targeted system.
2. Security Bypass Vulnerability
(
CVE-2021-3644
)
The vulnerability exists in wildfly core due to improper access restrictions to vault expressions. An attacker could exploit this vulnerability by gaining access to management interface can access restricted vault and retrieve items stored in the vault. Successful exploitation of this vulnerability could allow an attacker to gain unauthorized access to sensitive information on the targeted system.
3. Denial of service Vulnerability
(
CVE-2021-3690
)
The vulnerability exists in Undertow due to memory leak when processing incoming PONG messages. An attacker could exploit this vulnerability by forcing the application to leak memory by sending awe socket PONG message and perform denial of service attack. Successful exploitation of this vulnerability could allow an attacker to cause Denial of service (DoS) condition on the targeted system.
4. Security Bypass Vulnerability
(
CVE-2021-28170
)
The vulnerability exists in Eclipse EE4J Jakarta Expression due to ELParserTokenManager module. An attacker could exploit this vulnerability by sending a specially-crafted request. Successful exploitation of this vulnerability could allow an attacker to bypass input validation of EL expressions.
5. Directory traversal Vulnerability
(
CVE-2021-29425
)
The vulnerability exists in Apache-commons-IO due to improper input validation by the FileNameUtils.normalize method. An attacker could exploit this vulnerability by sending a specially-crafted URL request containing "dot dot" sequences (/../). Successful exploitation of this vulnerability could allow a remote attacker to traverse directories on the system.
Solution
Apply appropriate fix/patches as mentioned in the following link
https://access.redhat.com/errata/RHSA-2021:3516
Vendor Information
Redhat
https://access.redhat.com/errata/RHSA-2021:3516
References
Redhat
https://access.redhat.com/errata/RHSA-2021:3516
CVE Name
CVE-2021-3597
CVE-2021-3644
CVE-2021-3690
CVE-2021-28170
CVE-2021-29425
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|