rhsa-2025:8265
Vulnerability from csaf_redhat
Published
2025-06-05 02:19
Modified
2025-08-06 21:00
Summary
Red Hat Security Advisory: Red Hat build of Cryostat 4.0.1: new RHEL 9 container image security update
Notes
Topic
New Red Hat build of Cryostat 4.0.1 on RHEL 9 container images are now available.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Details
The Cryostat 4 on RHEL 9 container images have been updated to fix several bugs.
Users of Cryostat 4 on RHEL 9 container images are advised to upgrade to these updated images, which contain backported patches to fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.
Security Fix(es):
* commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default (CVE-2025-48734)
You can find images updated by this advisory in the Red Hat Container Catalog (see the References section).
Terms of Use
This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.
{ "document": { "aggregate_severity": { "namespace": "https://access.redhat.com/security/updates/classification/", "text": "Important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright \u00a9 Red Hat, Inc. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "New Red Hat build of Cryostat 4.0.1 on RHEL 9 container images are now available.\n\nRed Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.", "title": "Topic" }, { "category": "general", "text": "The Cryostat 4 on RHEL 9 container images have been updated to fix several bugs.\n\nUsers of Cryostat 4 on RHEL 9 container images are advised to upgrade to these updated images, which contain backported patches to fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.\n\nSecurity Fix(es):\n\n* commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum\u0027s declaredClass property by default (CVE-2025-48734)\n\nYou can find images updated by this advisory in the Red Hat Container Catalog (see the References section).", "title": "Details" }, { "category": "legal_disclaimer", "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.", "title": "Terms of Use" } ], "publisher": { "category": "vendor", "contact_details": "https://access.redhat.com/security/team/contact/", "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.", "name": "Red Hat Product Security", "namespace": "https://www.redhat.com" }, "references": [ { "category": "self", "summary": "https://access.redhat.com/errata/RHSA-2025:8265", "url": "https://access.redhat.com/errata/RHSA-2025:8265" }, { "category": "external", "summary": "https://access.redhat.com/security/updates/classification/#important", "url": "https://access.redhat.com/security/updates/classification/#important" }, { "category": "external", "summary": "https://access.redhat.com/containers", "url": "https://access.redhat.com/containers" }, { "category": "external", "summary": "2368956", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2368956" }, { "category": "external", "summary": "JAVAMON-748", "url": "https://issues.redhat.com/browse/JAVAMON-748" }, { "category": "self", "summary": "Canonical URL", "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_8265.json" } ], "title": "Red Hat Security Advisory: Red Hat build of Cryostat 4.0.1: new RHEL 9 container image security update", "tracking": { "current_release_date": "2025-08-06T21:00:14+00:00", "generator": { "date": "2025-08-06T21:00:14+00:00", "engine": { "name": "Red Hat SDEngine", "version": "4.6.6" } }, "id": "RHSA-2025:8265", "initial_release_date": "2025-06-05T02:19:45+00:00", "revision_history": [ { "date": "2025-06-05T02:19:45+00:00", "number": "1", "summary": "Initial version" }, { "date": "2025-06-05T02:19:45+00:00", "number": "2", "summary": "Last updated version" }, { "date": "2025-08-06T21:00:14+00:00", "number": "3", "summary": "Last generated version" } ], "status": "final", "version": "3" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_name", "name": "Cryostat 4 on RHEL 9", "product": { "name": "Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4", "product_identification_helper": { "cpe": "cpe:/a:redhat:cryostat:4::el9" } } } ], "category": "product_family", "name": "Cryostat" }, { "branches": [ { "category": "product_version", "name": "cryostat/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb_amd64", "product": { "name": "cryostat/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb_amd64", "product_id": "cryostat/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-agent-init-rhel9\u0026tag=0.5.1-1" } } }, { "category": "product_version", "name": "cryostat/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8_amd64", "product": { "name": "cryostat/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8_amd64", "product_id": "cryostat/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-db-rhel9\u0026tag=4.0.1-4" } } }, { "category": "product_version", "name": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c_amd64", "product": { "name": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c_amd64", "product_id": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-grafana-dashboard-rhel9\u0026tag=4.0.1-3" } } }, { "category": "product_version", "name": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3_amd64", "product": { "name": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3_amd64", "product_id": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-openshift-console-plugin-rhel9\u0026tag=4.0.1-2" } } }, { "category": "product_version", "name": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184_amd64", "product": { "name": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184_amd64", "product_id": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-ose-oauth-proxy-rhel9\u0026tag=4.0.1-4" } } }, { "category": "product_version", "name": "cryostat/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986_amd64", "product": { "name": "cryostat/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986_amd64", "product_id": "cryostat/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-reports-rhel9\u0026tag=4.0.1-2" } } }, { "category": "product_version", "name": "cryostat/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1_amd64", "product": { "name": "cryostat/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1_amd64", "product_id": "cryostat/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-rhel9\u0026tag=4.0.1-2" } } }, { "category": "product_version", "name": "cryostat/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c_amd64", "product": { "name": "cryostat/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c_amd64", "product_id": "cryostat/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-operator-bundle\u0026tag=4.0.1-1" } } }, { "category": "product_version", "name": "cryostat/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88_amd64", "product": { "name": "cryostat/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88_amd64", "product_id": "cryostat/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-rhel9-operator\u0026tag=4.0.1-4" } } }, { "category": "product_version", "name": "cryostat/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00_amd64", "product": { "name": "cryostat/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00_amd64", "product_id": "cryostat/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00_amd64", "product_identification_helper": { "purl": "pkg:oci/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/cryostat-storage-rhel9\u0026tag=4.0.1-4" } } }, { "category": "product_version", "name": "cryostat/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072_amd64", "product": { "name": "cryostat/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072_amd64", "product_id": "cryostat/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072_amd64", "product_identification_helper": { "purl": "pkg:oci/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072?arch=amd64\u0026repository_url=registry.redhat.io/cryostat/jfr-datasource-rhel9\u0026tag=4.0.1-2" } } } ], "category": "architecture", "name": "amd64" }, { "branches": [ { "category": "product_version", "name": "cryostat/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361_arm64", "product": { "name": "cryostat/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361_arm64", "product_id": "cryostat/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-agent-init-rhel9\u0026tag=0.5.1-1" } } }, { "category": "product_version", "name": "cryostat/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343_arm64", "product": { "name": "cryostat/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343_arm64", "product_id": "cryostat/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-db-rhel9\u0026tag=4.0.1-4" } } }, { "category": "product_version", "name": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f_arm64", "product": { "name": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f_arm64", "product_id": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-grafana-dashboard-rhel9\u0026tag=4.0.1-3" } } }, { "category": "product_version", "name": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d_arm64", "product": { "name": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d_arm64", "product_id": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-openshift-console-plugin-rhel9\u0026tag=4.0.1-2" } } }, { "category": "product_version", "name": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4_arm64", "product": { "name": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4_arm64", "product_id": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-ose-oauth-proxy-rhel9\u0026tag=4.0.1-4" } } }, { "category": "product_version", "name": "cryostat/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae_arm64", "product": { "name": "cryostat/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae_arm64", "product_id": "cryostat/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-reports-rhel9\u0026tag=4.0.1-2" } } }, { "category": "product_version", "name": "cryostat/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d_arm64", "product": { "name": "cryostat/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d_arm64", "product_id": "cryostat/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-rhel9\u0026tag=4.0.1-2" } } }, { "category": "product_version", "name": "cryostat/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278_arm64", "product": { "name": "cryostat/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278_arm64", "product_id": "cryostat/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-operator-bundle\u0026tag=4.0.1-1" } } }, { "category": "product_version", "name": "cryostat/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83_arm64", "product": { "name": "cryostat/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83_arm64", "product_id": "cryostat/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-rhel9-operator\u0026tag=4.0.1-4" } } }, { "category": "product_version", "name": "cryostat/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3_arm64", "product": { "name": "cryostat/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3_arm64", "product_id": "cryostat/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3_arm64", "product_identification_helper": { "purl": "pkg:oci/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/cryostat-storage-rhel9\u0026tag=4.0.1-4" } } }, { "category": "product_version", "name": "cryostat/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6_arm64", "product": { "name": "cryostat/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6_arm64", "product_id": "cryostat/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6_arm64", "product_identification_helper": { "purl": "pkg:oci/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6?arch=arm64\u0026repository_url=registry.redhat.io/cryostat/jfr-datasource-rhel9\u0026tag=4.0.1-2" } } } ], "category": "architecture", "name": "arm64" } ], "category": "vendor", "name": "Red Hat" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361_arm64" }, "product_reference": "cryostat/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb_amd64" }, "product_reference": "cryostat/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343_arm64" }, "product_reference": "cryostat/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8_amd64" }, "product_reference": "cryostat/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f_arm64" }, "product_reference": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c_amd64" }, "product_reference": "cryostat/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d_arm64" }, "product_reference": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3_amd64" }, "product_reference": "cryostat/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c_amd64" }, "product_reference": "cryostat/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278_arm64" }, "product_reference": "cryostat/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4_arm64" }, "product_reference": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184_amd64" }, "product_reference": "cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae_arm64" }, "product_reference": "cryostat/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986_amd64" }, "product_reference": "cryostat/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83_arm64" }, "product_reference": "cryostat/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88_amd64" }, "product_reference": "cryostat/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1_amd64" }, "product_reference": "cryostat/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d_arm64" }, "product_reference": "cryostat/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00_amd64" }, "product_reference": "cryostat/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3_arm64" }, "product_reference": "cryostat/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3_arm64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072_amd64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072_amd64" }, "product_reference": "cryostat/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072_amd64", "relates_to_product_reference": "9Base-Cryostat-4" }, { "category": "default_component_of", "full_product_name": { "name": "cryostat/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6_arm64 as a component of Cryostat 4 on RHEL 9", "product_id": "9Base-Cryostat-4:cryostat/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6_arm64" }, "product_reference": "cryostat/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6_arm64", "relates_to_product_reference": "9Base-Cryostat-4" } ] }, "vulnerabilities": [ { "cve": "CVE-2025-48734", "cwe": { "id": "CWE-284", "name": "Improper Access Control" }, "discovery_date": "2025-05-28T14:00:56.619771+00:00", "ids": [ { "system_name": "Red Hat Bugzilla ID", "text": "2368956" } ], "notes": [ { "category": "description", "text": "A flaw was found in Apache Commons BeanUtils. This vulnerability allows remote attackers to execute arbitrary code via uncontrolled access to the declaredClass property on Java enum objects, which can expose the class loader when property paths are passed from external sources to methods like getProperty() or getNestedProperty().", "title": "Vulnerability description" }, { "category": "summary", "text": "commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum\u0027s declaredClass property by default", "title": "Vulnerability summary" }, { "category": "other", "text": "This vulnerability is rated as important severity because a flaw exists in Apache Commons BeanUtils, where PropertyUtilsBean and BeanUtilsBean allow uncontrolled access to the declaredClass property of Java enum objects. Applications that pass untrusted property paths directly to getProperty() or getNestedProperty() methods are at risk, as attackers can exploit this behavior to retrieve the ClassLoader instance and execute arbitrary code in the context of the affected application. This issue leads to compromise of confidentiality, integrity, and availability.", "title": "Statement" }, { "category": "general", "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product\u0027s status, and are included for informational purposes to better understand the severity of this vulnerability.", "title": "CVSS score applicability" } ], "product_status": { "fixed": [ "9Base-Cryostat-4:cryostat/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361_arm64", "9Base-Cryostat-4:cryostat/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb_amd64", "9Base-Cryostat-4:cryostat/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343_arm64", "9Base-Cryostat-4:cryostat/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8_amd64", "9Base-Cryostat-4:cryostat/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f_arm64", "9Base-Cryostat-4:cryostat/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c_amd64", "9Base-Cryostat-4:cryostat/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d_arm64", "9Base-Cryostat-4:cryostat/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3_amd64", "9Base-Cryostat-4:cryostat/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c_amd64", "9Base-Cryostat-4:cryostat/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278_arm64", "9Base-Cryostat-4:cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4_arm64", "9Base-Cryostat-4:cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184_amd64", "9Base-Cryostat-4:cryostat/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae_arm64", "9Base-Cryostat-4:cryostat/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986_amd64", "9Base-Cryostat-4:cryostat/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83_arm64", "9Base-Cryostat-4:cryostat/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88_amd64", "9Base-Cryostat-4:cryostat/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1_amd64", "9Base-Cryostat-4:cryostat/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d_arm64", "9Base-Cryostat-4:cryostat/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00_amd64", "9Base-Cryostat-4:cryostat/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3_arm64", "9Base-Cryostat-4:cryostat/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072_amd64", "9Base-Cryostat-4:cryostat/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6_arm64" ] }, "references": [ { "category": "self", "summary": "Canonical URL", "url": "https://access.redhat.com/security/cve/CVE-2025-48734" }, { "category": "external", "summary": "RHBZ#2368956", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2368956" }, { "category": "external", "summary": "https://www.cve.org/CVERecord?id=CVE-2025-48734", "url": "https://www.cve.org/CVERecord?id=CVE-2025-48734" }, { "category": "external", "summary": "https://nvd.nist.gov/vuln/detail/CVE-2025-48734", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48734" }, { "category": "external", "summary": "https://github.com/advisories/GHSA-wxr5-93ph-8wr9", "url": "https://github.com/advisories/GHSA-wxr5-93ph-8wr9" }, { "category": "external", "summary": "https://github.com/apache/commons-beanutils/commit/28ad955a1613ed5885870cc7da52093c1ce739dc", "url": "https://github.com/apache/commons-beanutils/commit/28ad955a1613ed5885870cc7da52093c1ce739dc" }, { "category": "external", "summary": "https://lists.apache.org/thread/s0hb3jkfj5f3ryx6c57zqtfohb0of1g9", "url": "https://lists.apache.org/thread/s0hb3jkfj5f3ryx6c57zqtfohb0of1g9" }, { "category": "external", "summary": "https://www.openwall.com/lists/oss-security/2025/05/28/6", "url": "https://www.openwall.com/lists/oss-security/2025/05/28/6" } ], "release_date": "2025-05-28T13:32:08.300000+00:00", "remediations": [ { "category": "vendor_fix", "date": "2025-06-05T02:19:45+00:00", "details": "You can download the Cryostat 4 on RHEL 9 container images that this update provides from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available in the Red Hat Container Catalog (see the References section).\n\nDockerfiles and scripts should be amended to refer to this new image specifically or to the latest image generally.", "product_ids": [ "9Base-Cryostat-4:cryostat/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361_arm64", "9Base-Cryostat-4:cryostat/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb_amd64", "9Base-Cryostat-4:cryostat/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343_arm64", "9Base-Cryostat-4:cryostat/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8_amd64", "9Base-Cryostat-4:cryostat/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f_arm64", "9Base-Cryostat-4:cryostat/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c_amd64", "9Base-Cryostat-4:cryostat/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d_arm64", "9Base-Cryostat-4:cryostat/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3_amd64", "9Base-Cryostat-4:cryostat/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c_amd64", "9Base-Cryostat-4:cryostat/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278_arm64", "9Base-Cryostat-4:cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4_arm64", "9Base-Cryostat-4:cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184_amd64", "9Base-Cryostat-4:cryostat/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae_arm64", "9Base-Cryostat-4:cryostat/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986_amd64", "9Base-Cryostat-4:cryostat/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83_arm64", "9Base-Cryostat-4:cryostat/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88_amd64", "9Base-Cryostat-4:cryostat/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1_amd64", "9Base-Cryostat-4:cryostat/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d_arm64", "9Base-Cryostat-4:cryostat/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00_amd64", "9Base-Cryostat-4:cryostat/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3_arm64", "9Base-Cryostat-4:cryostat/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072_amd64", "9Base-Cryostat-4:cryostat/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6_arm64" ], "restart_required": { "category": "none" }, "url": "https://access.redhat.com/errata/RHSA-2025:8265" } ], "scores": [ { "cvss_v3": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "HIGH", "baseScore": 8.8, "baseSeverity": "HIGH", "confidentialityImpact": "HIGH", "integrityImpact": "HIGH", "privilegesRequired": "LOW", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "products": [ "9Base-Cryostat-4:cryostat/cryostat-agent-init-rhel9@sha256:afeb514d720efeb572ea37cce6a53b0b0b5653204319742aba0692a536a80361_arm64", "9Base-Cryostat-4:cryostat/cryostat-agent-init-rhel9@sha256:eef9de43eed816fd525d7f5c6c4833878a35fd4fc4bb4d1bea63a6f6411a7dfb_amd64", "9Base-Cryostat-4:cryostat/cryostat-db-rhel9@sha256:e778ec192ae0ad6e2e17d0408283103c80823f5d972fdeec28ed11481774e343_arm64", "9Base-Cryostat-4:cryostat/cryostat-db-rhel9@sha256:e9dfc590abb8bf670d389663e9d176d61e120f0002adaf825661b8d794728ed8_amd64", "9Base-Cryostat-4:cryostat/cryostat-grafana-dashboard-rhel9@sha256:1ec6c04eaf47d77a66019056693267216629c7851548390f256506620855a70f_arm64", "9Base-Cryostat-4:cryostat/cryostat-grafana-dashboard-rhel9@sha256:eb54379f4712ce4411714392cd6a938109d66b0426214ed71d4ed7abbcdc7b6c_amd64", "9Base-Cryostat-4:cryostat/cryostat-openshift-console-plugin-rhel9@sha256:d20f8a89516e4e2a46587a1cfde252b6a8b6847e1be9b702bdff40b937db8c9d_arm64", "9Base-Cryostat-4:cryostat/cryostat-openshift-console-plugin-rhel9@sha256:ef494651e62b2310ff1fe768d1c6a4064d9e6409f676c180bd79c5a95d2698a3_amd64", "9Base-Cryostat-4:cryostat/cryostat-operator-bundle@sha256:65420aedc7224553a355f9fb6ce917c574bcf927ffb4df4f1f4ea78988f2975c_amd64", "9Base-Cryostat-4:cryostat/cryostat-operator-bundle@sha256:81f9daa32e9dbdf2134984fed8d8a7869bac0331e04c63766a8ebaf11c1bd278_arm64", "9Base-Cryostat-4:cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:1c4ec22a27a59bf85efbfe87cf4795124963155cad2a7c81353302899a4433a4_arm64", "9Base-Cryostat-4:cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:6f8e65997ae1b865b8335081c8e37f338f2e915a213d061c7233508569108184_amd64", "9Base-Cryostat-4:cryostat/cryostat-reports-rhel9@sha256:8024c6ed541228cad255f5aad072ceb76c094658b83e1affda8f80eaa304a5ae_arm64", "9Base-Cryostat-4:cryostat/cryostat-reports-rhel9@sha256:ef24bafda631eaca77f8f590b407942ddcb41dd1f8810a2004ccfe979cd90986_amd64", "9Base-Cryostat-4:cryostat/cryostat-rhel9-operator@sha256:49680a8ad15aeaf8bab207e889b51d97fd913b738cc6cadc7e124aee70905c83_arm64", "9Base-Cryostat-4:cryostat/cryostat-rhel9-operator@sha256:c14e0844de0890544c936417d9f2211f168f86115cd0e2b069b5c3e3f0556a88_amd64", "9Base-Cryostat-4:cryostat/cryostat-rhel9@sha256:2a51e2df3a109276fef06ad5ab4b8e7c434f6a8ef873e7cad0ca2c4f21f2c8a1_amd64", "9Base-Cryostat-4:cryostat/cryostat-rhel9@sha256:9912f12b6844c3b55d2eab6c97d4d28c5fe4451a24467fa029156a90f5baab6d_arm64", "9Base-Cryostat-4:cryostat/cryostat-storage-rhel9@sha256:1091a400851e64280da67a4b582db29f5790fca63136b0cc3c5c5e0db07cce00_amd64", "9Base-Cryostat-4:cryostat/cryostat-storage-rhel9@sha256:158486d58737ee242f4b29067521b999ce9f30a05640e8f70aadf0faa04e20e3_arm64", "9Base-Cryostat-4:cryostat/jfr-datasource-rhel9@sha256:25e0b03fa10a3cfa42b597a6e8823f12d0e4208f5fe51f3394809453f0fa4072_amd64", "9Base-Cryostat-4:cryostat/jfr-datasource-rhel9@sha256:2718502db6176d8041c8848232c7e446ecfc75314757088ce3a6856e595ab0f6_arm64" ] } ], "threats": [ { "category": "impact", "details": "Important" } ], "title": "commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum\u0027s declaredClass property by default" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…