{"id":"RHSA-2009:0346","summary":"Red Hat Security Advisory: JBoss Enterprise Application Platform 4.2.0CP06 update","modified":"2025-11-22T10:19:58Z","published":"2024-09-15T17:38:46Z","upstream":["CVE-2009-0027"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2009:0346"},{"type":"ARTICLE","url":"http://www.redhat.com/docs/en-US/JBoss_Enterprise_Application_Platform/4.2.0.cp06/html-single/readme/index.html"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=474619"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=479668"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2009/rhsa-2009_0346.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2009-0027"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2009-0027"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2009-0027"}],"affected":[{"package":{"name":"glassfish-jsf","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/glassfish-jsf"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.2_10-0jpp.ep1.5.ep5.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"hibernate3","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/hibernate3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:3.2.4-1.SP1_CP07.0jpp.ep1.14.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"hibernate3-javadoc","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/hibernate3-javadoc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:3.2.4-1.SP1_CP07.0jpp.ep1.14.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jacorb","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jacorb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.3.0-1jpp.ep1.7.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jakarta-commons-fileupload","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jakarta-commons-fileupload"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.1.1-3jpp.ep1.2.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jakarta-commons-io","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jakarta-commons-io"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.1-0.20051005.2jpp_1rh"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jakarta-commons-logging-jboss","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jakarta-commons-logging-jboss"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.1-4.ep1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jboss-cache","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jboss-cache"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.4.1-6.SP11.1.ep1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jboss-jaxr","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jboss-jaxr"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.2.0-SP2.0jpp.ep1.3.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jboss-remoting","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jboss-remoting"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.2.2-3.SP11.0jpp.ep1.1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jboss-seam","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jboss-seam"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.2.1-1.ep1.18.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jboss-seam-docs","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jboss-seam-docs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.2.1-1.ep1.18.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jboss-vfs","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jboss-vfs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.0-1.ep1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jbossas","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jbossas"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.0-4.GA_CP06.3.ep1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jbossas-4.2.0.GA_CP06-bin","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jbossas-4.2.0.GA_CP06-bin"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.0-4.GA_CP06.3.ep1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jbossas-client","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jbossas-client"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.0-4.GA_CP06.3.ep1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jbossts","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jbossts"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:4.2.3-1.SP5_CP04.1jpp.ep1.1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jbossweb","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jbossweb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.0.0-6.CP09.0jpp.ep1.1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"jgroups","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/jgroups"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:2.4.5-2.ep1.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"rh-eap-docs","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/rh-eap-docs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.0-5.GA_CP06.ep1.3.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"rh-eap-docs-examples","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/rh-eap-docs-examples"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.0-5.GA_CP06.ep1.3.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"tanukiwrapper","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/tanukiwrapper"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.2.1-2jpp.ep1.2.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"tanukiwrapper-debuginfo","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/tanukiwrapper-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.2.1-2jpp.ep1.2.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"ws-commons-policy","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/ws-commons-policy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0-2jpp.ep1.7.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"ws-scout0","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/ws-scout0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.7-0.rc2.4.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}},{"package":{"name":"xalan-j2","ecosystem":"Red Hat:jboss_enterprise_application_platform:4.2.0::el4","purl":"pkg:rpm/redhat/xalan-j2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.7.0-2jpp.ep1.5.el4"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2009:0346.json"}}],"schema_version":"1.7.3"}