{
  "schema_version": "1.7.0",
  "id": "RHSA-2008:0832",
  "related": [],
  "upstream": [
    "CVE-2007-5342",
    "CVE-2008-3519"
  ],
  "published": "2024-09-29T16:24:17Z",
  "modified": "2025-11-22T10:17:56Z",
  "summary": "Red Hat Security Advisory: JBoss Enterprise Application Platform 4.3.0CP02 security update",
  "affected": [
    {
      "package": {
        "name": "glassfish-jaf",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/glassfish-jaf"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.1.0-0jpp.ep1.12.el5.1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "glassfish-javamail",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/glassfish-javamail"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.4.0-0jpp.ep1.10.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "glassfish-jaxb",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/glassfish-jaxb"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.1.4-1jpp.ep1.4.el5.2"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "glassfish-jaxws",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/glassfish-jaxws"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.1.1-1jpp.ep1.3.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "glassfish-jstl",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/glassfish-jstl"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.0-0jpp.ep1.10.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/hibernate3"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:3.2.4-1.SP1_CP04.0jpp.ep1.3.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3-annotations",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/hibernate3-annotations"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.2.1-4.GA_CP02.1jpp.ep1.7.el5.1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3-annotations-javadoc",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/hibernate3-annotations-javadoc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.2.1-4.GA_CP02.1jpp.ep1.7.el5.1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3-commons-annotations",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/hibernate3-commons-annotations"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:0.0.0-1.1jpp.ep1.1.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3-entitymanager",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/hibernate3-entitymanager"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.2.1-2.GA_CP03.1jpp.ep1.9.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3-entitymanager-javadoc",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/hibernate3-entitymanager-javadoc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.2.1-2.GA_CP03.1jpp.ep1.9.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3-javadoc",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/hibernate3-javadoc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:3.2.4-1.SP1_CP04.0jpp.ep1.3.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3-validator",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/hibernate3-validator"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:0.0.0-1.1jpp.ep1.1.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "javassist",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/javassist"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.8.0-1jpp.ep1.2.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-aop",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jboss-aop"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.5.5-2.CP02.0jpp.ep1.2.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-jaxr",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jboss-jaxr"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.0-SP1.0jpp.ep1.4.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-messaging",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jboss-messaging"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.4.0-1.SP3_CP03.0jpp.ep1.3.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-remoting",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jboss-remoting"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.2.2-3.SP9.0jpp.ep1.2.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-seam",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jboss-seam"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.1-3.JBPAPP_4_3_0_GA.ep1.7.el5.1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-seam-docs",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jboss-seam-docs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.1-3.JBPAPP_4_3_0_GA.ep1.7.el5.1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossas",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jbossas"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.3.0-2.GA_CP02.ep1.10.el5.2"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossts",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jbossts"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:4.2.3-1.SP5_CP02.1jpp.ep1.2.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossweb",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jbossweb"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.0.0-4.CP06.0jpp.ep1.1.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossws",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jbossws"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.0.1-2.SP2_CP03.0jpp.ep1.1.el5.1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossws-common",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jbossws-common"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.0.0-1.GA_CP01.0jpp.ep1.3.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossws-framework",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jbossws-framework"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.0.1-0jpp.ep1.11.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossxb",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/jbossxb"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.0.0-2.SP3.0jpp.ep1.3.el5.1"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "rh-eap-docs",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.3.0::el5",
        "purl": "pkg:rpm/redhat/rh-eap-docs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.3.0-2.GA_CP02.ep1.6.el5"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2008:0832"
    },
    {
      "type": "ARTICLE",
      "url": "https://access.redhat.com/security/updates/classification/#low"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=427216"
    },
    {
      "type": "ARTICLE",
      "url": "http://www.redhat.com/docs/en-US/JBoss_Enterprise_Application_Platform/4.3.0.cp02/html-single/readme/index.html"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=458713"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=458823"
    },
    {
      "type": "ADVISORY",
      "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2008/rhsa-2008_0832.json"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2007-5342"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2007-5342"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-5342"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2008-3519"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2008-3519"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-3519"
    }
  ]
}