Bug 781104 (SOA-3597)

Summary: Upgrade openid4java to resolve CVE-2011-4314
Product: [JBoss] JBoss Enterprise SOA Platform 5 Reporter: David Jorm <djorm>
Component: SeamAssignee: Default User <jbpapp-maint>
Status: CLOSED ERRATA QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: 5.2.0 GACC: jcoleman, ldimaggi, mjc, tcunning, tkirby
Target Milestone: ---   
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
URL: http://jira.jboss.org/jira/browse/SOA-3597
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2012-03-12 23:49:15 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Bug Depends On:    
Bug Blocks: 784321, 787847    

Description David Jorm 2011-11-17 06:00:55 UTC
project_key: SOA

EAP 5.1.2 has upgraded the openid4java component to resolve CVE-2011-4314. For details, see JBPAPP-7139. Please ensure that this upgrade is inherited in the next release based on EAP 5.1.2.

Comment 1 David Jorm 2012-03-12 23:49:15 UTC
Fixed as part of roll up #1:

https://rhn.redhat.com/errata/RHSA-2012-0378.html