Is Red Hat Satellite 6 functionality impacted by the "JsonErrorReportValve injection" vulnerability CVE-2022-45143?
Issue
- Is the Red Hat Satellite 6 affected by the
JsonErrorReportValve injection
vulnerability? - Is the Tomcat on Red Hat Satellite 6 impacted by the
JsonErrorReportValve injection
Vulnerability? - Does Red Hat Satellite 6 uses Apache Tomcat?
- How to update the Tomcat package on Red Hat Satellite?
- Are there any plans to update to a supported version or does Red Hat provide support for that current version?
Environment
- Red Hat Satellite 6.12
- Red Hat Enterprise Linux 8
- Apache Tomcat 9.0.40 to 9.0.68
- Apache Tomcat 8.5.83
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.