{
  "threat_severity" : "Moderate",
  "public_date" : "2020-05-12T00:00:00Z",
  "bugzilla" : {
    "description" : "hibernate: SQL injection issue in Hibernate ORM",
    "id" : "1666499",
    "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1666499"
  },
  "cvss3" : {
    "cvss3_base_score" : "6.5",
    "cvss3_scoring_vector" : "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
    "status" : "verified"
  },
  "cwe" : "CWE-89",
  "details" : [ "A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SELECT or GROUP BY parts of the query. This flaw could allow an attacker to access unauthorized information or possibly conduct further attacks.", "A flaw was found in Hibernate ORM. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SELECT or GROUP BY parts of the query. This flaw could allow an attacker to access unauthorized information or possibly conduct further attacks." ],
  "statement" : "OpenDaylight:\nIn RHOSP10, RHOSP13 and RHOSP14 editions of Red Hat OpenStack platform, the hibernate-jfa library shipped with OpenDaylight is contains a flaw in the processing of SQL queries. The hibernate-jha implemenation is not used in a vulnerable way in OpenDaylight, preventing the potential for SQL injection.\nRed Hat Satellite 6.2, 6.3 and 6.4 contains affected versions of hibernate-core in its candlepin component. However, that component does not use hibernate-core in a vulnerable way.",
  "acknowledgement" : "This issue was discovered by Guillaume Smet (Red Hat).",
  "affected_release" : [ {
    "product_name" : "EAP-CD 20 Tech Preview",
    "release_date" : "2020-08-31T00:00:00Z",
    "advisory" : "RHSA-2020:3585",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform_cd:20",
    "package" : "hibernate-core"
  }, {
    "product_name" : "Red Hat build of Quarkus 1.7.5",
    "release_date" : "2020-10-14T00:00:00Z",
    "advisory" : "RHSA-2020:4252",
    "cpe" : "cpe:/a:redhat:openshift_application_runtimes:1.0",
    "package" : "hibernate-core"
  }, {
    "product_name" : "Red Hat Fuse 7.8.0",
    "release_date" : "2020-12-16T00:00:00Z",
    "advisory" : "RHSA-2020:5568",
    "cpe" : "cpe:/a:redhat:jboss_fuse:7",
    "package" : "hibernate-core"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3642",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2.0",
    "package" : "hibernate-core"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3464",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3.0",
    "package" : "hibernate-core"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-dom4j-0:2.1.3-1.redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-elytron-web-0:1.2.5-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-glassfish-jsf-0:2.3.5-13.SP3_redhat_00011.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-hal-console-0:3.0.23-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-hibernate-0:5.3.17-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-hibernate-validator-0:6.0.20-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-ironjacamar-0:1.4.22-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-jackson-databind-0:2.9.10.4-1.redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-jboss-genericjms-0:2.0.6-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-jboss-jsf-api_2.3_spec-0:2.3.5-7.SP2_redhat_00005.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-jboss-logmanager-0:2.1.15-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-jboss-modules-0:1.8.10-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-jboss-server-migration-0:1.3.1-13.Final_redhat_00014.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-jboss-xnio-base-0:3.7.6-4.SP3_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-resteasy-0:3.6.1-10.SP9_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-undertow-0:2.0.30-4.SP4_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-weld-core-0:3.0.6-4.Final_redhat_00004.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-wildfly-0:7.2.9-4.GA_redhat_00003.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-wildfly-elytron-0:1.6.8-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-wildfly-http-client-0:1.0.22-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3637",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el6",
    "package" : "eap7-wildfly-transaction-client-0:1.1.11-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-dom4j-0:2.1.3-1.redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-elytron-web-0:1.2.5-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-glassfish-jsf-0:2.3.5-13.SP3_redhat_00011.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-hal-console-0:3.0.23-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-hibernate-0:5.3.17-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-hibernate-validator-0:6.0.20-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-ironjacamar-0:1.4.22-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-jackson-databind-0:2.9.10.4-1.redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-jboss-genericjms-0:2.0.6-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-jboss-jsf-api_2.3_spec-0:2.3.5-7.SP2_redhat_00005.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-jboss-logmanager-0:2.1.15-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-jboss-modules-0:1.8.10-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-jboss-server-migration-0:1.3.1-13.Final_redhat_00014.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-jboss-xnio-base-0:3.7.6-4.SP3_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-resteasy-0:3.6.1-10.SP9_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-undertow-0:2.0.30-4.SP4_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-weld-core-0:3.0.6-4.Final_redhat_00004.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-wildfly-0:7.2.9-4.GA_redhat_00003.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-wildfly-elytron-0:1.6.8-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-wildfly-http-client-0:1.0.22-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3638",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el7",
    "package" : "eap7-wildfly-transaction-client-0:1.1.11-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-dom4j-0:2.1.3-1.redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-elytron-web-0:1.2.5-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-glassfish-jsf-0:2.3.5-13.SP3_redhat_00011.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-hal-console-0:3.0.23-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-hibernate-0:5.3.17-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-hibernate-validator-0:6.0.20-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-ironjacamar-0:1.4.22-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-jackson-databind-0:2.9.10.4-1.redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-jboss-genericjms-0:2.0.6-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-jboss-jsf-api_2.3_spec-0:2.3.5-7.SP2_redhat_00005.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-jboss-logmanager-0:2.1.15-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-jboss-modules-0:1.8.10-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-jboss-server-migration-0:1.3.1-13.Final_redhat_00014.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-jboss-xnio-base-0:3.7.6-4.SP3_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-resteasy-0:3.6.1-10.SP9_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-undertow-0:2.0.30-4.SP4_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-weld-core-0:3.0.6-4.Final_redhat_00004.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-wildfly-0:7.2.9-4.GA_redhat_00003.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-wildfly-elytron-0:1.6.8-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-wildfly-http-client-0:1.0.22-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8",
    "release_date" : "2020-09-07T00:00:00Z",
    "advisory" : "RHSA-2020:3639",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.2::el8",
    "package" : "eap7-wildfly-transaction-client-0:1.1.11-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-dom4j-0:2.1.3-1.redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-elytron-web-0:1.6.2-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-glassfish-jsf-0:2.3.9-11.SP11_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-hal-console-0:3.2.9-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-hibernate-0:5.3.17-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-hibernate-validator-0:6.0.20-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-infinispan-0:9.4.19-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-ironjacamar-0:1.4.22-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jackson-annotations-0:2.10.4-1.redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jackson-core-0:2.10.4-1.redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jackson-databind-0:2.10.4-1.redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jackson-jaxrs-providers-0:2.10.4-1.redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jackson-modules-base-0:2.10.4-1.redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jackson-modules-java8-0:2.10.4-1.redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jboss-genericjms-0:2.0.6-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jboss-jsf-api_2.3_spec-0:3.0.0-4.SP04_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jboss-logmanager-0:2.1.15-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jboss-server-migration-0:1.7.1-7.Final_redhat_00009.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-jboss-xnio-base-0:3.7.8-1.SP1_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-netty-0:4.1.48-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-undertow-0:2.0.30-4.SP4_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-wildfly-0:7.3.2-4.GA_redhat_00002.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-wildfly-common-0:1.5.2-1.Final_redhat_00002.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-wildfly-elytron-0:1.10.7-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 6",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3461",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el6",
    "package" : "eap7-wildfly-http-client-0:1.0.22-1.Final_redhat_00001.1.el6eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-dom4j-0:2.1.3-1.redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-elytron-web-0:1.6.2-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-glassfish-jsf-0:2.3.9-11.SP11_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-hal-console-0:3.2.9-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-hibernate-0:5.3.17-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-hibernate-validator-0:6.0.20-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-infinispan-0:9.4.19-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-ironjacamar-0:1.4.22-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jackson-annotations-0:2.10.4-1.redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jackson-core-0:2.10.4-1.redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jackson-databind-0:2.10.4-1.redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jackson-jaxrs-providers-0:2.10.4-1.redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jackson-modules-base-0:2.10.4-1.redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jackson-modules-java8-0:2.10.4-1.redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jboss-genericjms-0:2.0.6-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jboss-jsf-api_2.3_spec-0:3.0.0-4.SP04_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jboss-logmanager-0:2.1.15-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jboss-server-migration-0:1.7.1-7.Final_redhat_00009.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-jboss-xnio-base-0:3.7.8-1.SP1_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-netty-0:4.1.48-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-undertow-0:2.0.30-4.SP4_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-wildfly-0:7.3.2-4.GA_redhat_00002.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-wildfly-common-0:1.5.2-1.Final_redhat_00002.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-wildfly-elytron-0:1.10.7-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 7",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3462",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el7",
    "package" : "eap7-wildfly-http-client-0:1.0.22-1.Final_redhat_00001.1.el7eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-dom4j-0:2.1.3-1.redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-elytron-web-0:1.6.2-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-glassfish-jsf-0:2.3.9-11.SP11_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-hal-console-0:3.2.9-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-hibernate-0:5.3.17-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-hibernate-validator-0:6.0.20-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-infinispan-0:9.4.19-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-ironjacamar-0:1.4.22-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jackson-annotations-0:2.10.4-1.redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jackson-core-0:2.10.4-1.redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jackson-databind-0:2.10.4-1.redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jackson-jaxrs-providers-0:2.10.4-1.redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jackson-modules-base-0:2.10.4-1.redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jackson-modules-java8-0:2.10.4-1.redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jboss-genericjms-0:2.0.6-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jboss-jsf-api_2.3_spec-0:3.0.0-4.SP04_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jboss-logmanager-0:2.1.15-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jboss-server-migration-0:1.7.1-7.Final_redhat_00009.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-jboss-xnio-base-0:3.7.8-1.SP1_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-netty-0:4.1.48-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-undertow-0:2.0.30-4.SP4_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-wildfly-0:7.3.2-4.GA_redhat_00002.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-wildfly-common-0:1.5.2-1.Final_redhat_00002.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-wildfly-elytron-0:1.10.7-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 7.3 for RHEL 8",
    "release_date" : "2020-08-17T00:00:00Z",
    "advisory" : "RHSA-2020:3463",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:7.3::el8",
    "package" : "eap7-wildfly-http-client-0:1.0.22-1.Final_redhat_00001.1.el8eap"
  }, {
    "product_name" : "Red Hat Single Sign On 7.3.8",
    "release_date" : "2020-05-12T00:00:00Z",
    "advisory" : "RHSA-2020:2112",
    "cpe" : "cpe:/a:redhat:jboss_single_sign_on:7.3",
    "package" : "hibernate-core"
  }, {
    "product_name" : "RHDM 7.9.0",
    "release_date" : "2020-11-05T00:00:00Z",
    "advisory" : "RHSA-2020:4960",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_brms_platform:7.9",
    "package" : "hibernate-core-kie-server-ee8"
  }, {
    "product_name" : "RHPAM 7.9.0",
    "release_date" : "2020-11-05T00:00:00Z",
    "advisory" : "RHSA-2020:4961",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_bpms_platform:7.9",
    "package" : "hibernate-core-kie-server-ee8"
  } ],
  "package_state" : [ {
    "product_name" : "Red Hat BPM Suite 6",
    "fix_state" : "Out of support scope",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_bpms_platform"
  }, {
    "product_name" : "Red Hat Decision Manager 7",
    "fix_state" : "Will not fix",
    "package_name" : "hibernate-core-kie-server-ee7",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_brms_platform:7"
  }, {
    "product_name" : "Red Hat JBoss BRMS 5",
    "fix_state" : "Not affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_brms_platform:5"
  }, {
    "product_name" : "Red Hat JBoss Data Grid 7",
    "fix_state" : "Affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:jboss_data_grid:7"
  }, {
    "product_name" : "Red Hat JBoss Data Virtualization 6",
    "fix_state" : "Out of support scope",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:jboss_data_virtualization:6"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 5",
    "fix_state" : "Not affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:5"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Application Platform 6",
    "fix_state" : "Not affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_application_platform:6"
  }, {
    "product_name" : "Red Hat JBoss Enterprise Web Server 2",
    "fix_state" : "Not affected",
    "package_name" : "hibernate4",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_web_server:2"
  }, {
    "product_name" : "Red Hat JBoss Fuse 6",
    "fix_state" : "Not affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:jboss_fuse:6"
  }, {
    "product_name" : "Red Hat JBoss Fuse Service Works 6",
    "fix_state" : "Not affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:jboss_fuse_service_works:6"
  }, {
    "product_name" : "Red Hat JBoss Operations Network 3",
    "fix_state" : "Not affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:jboss_operations_network:3"
  }, {
    "product_name" : "Red Hat OpenStack Platform 10 (Newton)",
    "fix_state" : "Affected",
    "package_name" : "opendaylight",
    "cpe" : "cpe:/a:redhat:openstack:10",
    "impact" : "moderate"
  }, {
    "product_name" : "Red Hat OpenStack Platform 13 (Queens)",
    "fix_state" : "Affected",
    "package_name" : "opendaylight",
    "cpe" : "cpe:/a:redhat:openstack:13",
    "impact" : "moderate"
  }, {
    "product_name" : "Red Hat OpenStack Platform 14 (Rocky)",
    "fix_state" : "Affected",
    "package_name" : "opendaylight",
    "cpe" : "cpe:/a:redhat:openstack:14",
    "impact" : "moderate"
  }, {
    "product_name" : "Red Hat Process Automation 7",
    "fix_state" : "Will not fix",
    "package_name" : "hibernate-core-kie-server-ee7",
    "cpe" : "cpe:/a:redhat:jboss_enterprise_bpms_platform:7"
  }, {
    "product_name" : "Red Hat Satellite 5",
    "fix_state" : "Not affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:network_satellite:5"
  }, {
    "product_name" : "Red Hat Satellite 6",
    "fix_state" : "Not affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:redhat:satellite:6"
  }, {
    "product_name" : "Red Hat Subscription Asset Manager",
    "fix_state" : "Not affected",
    "package_name" : "hibernate4-core",
    "cpe" : "cpe:/a:rhel_sam:1"
  }, {
    "product_name" : "Red Hat Subscription Asset Manager",
    "fix_state" : "Not affected",
    "package_name" : "hibernate-core",
    "cpe" : "cpe:/a:rhel_sam:1"
  } ],
  "references" : [ "https://www.cve.org/CVERecord?id=CVE-2019-14900\nhttps://nvd.nist.gov/vuln/detail/CVE-2019-14900" ],
  "name" : "CVE-2019-14900",
  "mitigation" : {
    "value" : "There is no currently known mitigation for this flaw.",
    "lang" : "en:us"
  },
  "csaw" : false
}