Fedora Account System
Red Hat Associate
Red Hat Customer
TLS protocol configured with quarkus.http.ssl.protocols is not enforced, the client can force the selection of the weaker supported TLS protocol
This issue has been addressed in the following products: Red Hat build of Quarkus 2.13.8 Via RHSA-2023:3809 https://access.redhat.com/errata/RHSA-2023:3809
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2023-2974