JBoss Enterprise Application Platform 6.1.0 Update (RHSA-2013:0833)

High Nessus Plugin ID 66971


The remote Red Hat host is missing a security update.


The version of JBoss Enterprise Application Platform 6.0.1 running on the remote system is vulnerable to the following issues:

- A man-in-the-middle attack is possible when applications running on JBoss Web use the COOKIE session tracking method. The flaw is in the org.apache.catalina.connector.Response.encodeURL() method. By making use of this, an attacker could obtain a user's jsessionid and hijack their session.

- If multiple applications used the same custom authorization module class name, a local attacker could deploy a malicious application authorization module that would permit or deny user access. (CVE-2012-4572)

- XML encryption backwards compatibility attacks could allow an attacker to force a server to use insecure legacy cryptosystems. (CVE-2012-5575)

- A NULL pointer dereference flaw could allow a malicious OCSP to crash applications performing OCSP verification.

- An OpenSSL leaks timing information issue exists that could allow a remote attacker to retrieve plaintext from the encrypted packets. (CVE-2013-0169)

- The JBoss Enterprise Application Platform administrator password and the sucker password are stored in a world- readable, auto-install XML file created by the GUI installer. (CVE-2013-0218)

- Tomcat incorrectly handles certain authentication requests. A remote attacker could use this flaw to inject a request that would get executed with a victim's credentials. (CVE-2013-2067)


Upgrade the installed JBoss Enterprise Application Platform 6.0.1 to 6.1.0 or later.

See Also









Plugin Details

Severity: High

ID: 66971

File Name: redhat-RHSA-2013-0833.nasl

Version: $Revision: 1.13 $

Type: local

Agent: unix

Published: 2013/06/24

Modified: 2014/05/02

Dependencies: 12634, 72202

Risk Information

Risk Factor: High


Base Score: 7.8

Temporal Score: 6.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:N/A:N

Temporal Vector: CVSS2#E:ND/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/a:redhat:jboss_enterprise_application_platform:6.0.1

Required KB Items: Host/local_checks_enabled, Host/RedHat/release

Exploit Available: false

Exploit Ease: No known exploits are available

Patch Publication Date: 2013/05/20

Vulnerability Publication Date: 2012/10/10

Reference Information

CVE: CVE-2012-4529, CVE-2012-4572, CVE-2012-5575, CVE-2013-0166, CVE-2013-0169, CVE-2013-0218, CVE-2013-2067

BID: 57652, 57778, 59799, 60040, 60043, 60045, 60268

OSVDB: 89698, 89865, 89848, 93252, 93462, 93543, 93545

RHSA: 2013:0833