{
  "schema_version": "1.7.0",
  "id": "RHSA-2009:0346",
  "related": [],
  "upstream": [
    "CVE-2009-0027"
  ],
  "published": "2024-09-15T17:38:46Z",
  "modified": "2025-11-22T10:19:58Z",
  "summary": "Red Hat Security Advisory: JBoss Enterprise Application Platform 4.2.0CP06 update",
  "affected": [
    {
      "package": {
        "name": "glassfish-jsf",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/glassfish-jsf"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2_10-0jpp.ep1.5.ep5.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/hibernate3"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:3.2.4-1.SP1_CP07.0jpp.ep1.14.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "hibernate3-javadoc",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/hibernate3-javadoc"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:3.2.4-1.SP1_CP07.0jpp.ep1.14.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jacorb",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jacorb"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.3.0-1jpp.ep1.7.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jakarta-commons-fileupload",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jakarta-commons-fileupload"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:1.1.1-3jpp.ep1.2.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jakarta-commons-io",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jakarta-commons-io"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.1-0.20051005.2jpp_1rh"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jakarta-commons-logging-jboss",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jakarta-commons-logging-jboss"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.1-4.ep1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-cache",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jboss-cache"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.4.1-6.SP11.1.ep1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-jaxr",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jboss-jaxr"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.0-SP2.0jpp.ep1.3.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-remoting",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jboss-remoting"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.2.2-3.SP11.0jpp.ep1.1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-seam",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jboss-seam"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.1-1.ep1.18.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-seam-docs",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jboss-seam-docs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.2.1-1.ep1.18.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jboss-vfs",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jboss-vfs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.0.0-1.ep1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossas",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jbossas"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.0-4.GA_CP06.3.ep1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossas-4.2.0.GA_CP06-bin",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jbossas-4.2.0.GA_CP06-bin"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.0-4.GA_CP06.3.ep1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossas-client",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jbossas-client"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.0-4.GA_CP06.3.ep1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossts",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jbossts"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:4.2.3-1.SP5_CP04.1jpp.ep1.1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jbossweb",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jbossweb"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.0.0-6.CP09.0jpp.ep1.1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "jgroups",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/jgroups"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:2.4.5-2.ep1.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "rh-eap-docs",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/rh-eap-docs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.0-5.GA_CP06.ep1.3.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "rh-eap-docs-examples",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/rh-eap-docs-examples"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.2.0-5.GA_CP06.ep1.3.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "tanukiwrapper",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/tanukiwrapper"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.2.1-2jpp.ep1.2.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "tanukiwrapper-debuginfo",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/tanukiwrapper-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.2.1-2jpp.ep1.2.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ws-commons-policy",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/ws-commons-policy"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.0-2jpp.ep1.7.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ws-scout0",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/ws-scout0"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:0.7-0.rc2.4.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "xalan-j2",
        "ecosystem": "Red Hat:jboss_enterprise_application_platform:4.2.0::el4",
        "purl": "pkg:rpm/redhat/xalan-j2"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.7.0-2jpp.ep1.5.el4"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2009:0346"
    },
    {
      "type": "ARTICLE",
      "url": "http://www.redhat.com/docs/en-US/JBoss_Enterprise_Application_Platform/4.2.0.cp06/html-single/readme/index.html"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=474619"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=479668"
    },
    {
      "type": "ADVISORY",
      "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2009/rhsa-2009_0346.json"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2009-0027"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2009-0027"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-0027"
    }
  ]
}