[jbosstools-issues] [JBoss JIRA] (JBDS-3571) Documentation for JBDS 9.0.0.GA EAP 6.4.0 CVE-2015-7501

Martin Malina (JIRA) issues at jboss.org
Mon Dec 7 10:22:00 EST 2015


    [ https://issues.jboss.org/browse/JBDS-3571?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13137785#comment-13137785 ] 

Martin Malina commented on JBDS-3571:
-------------------------------------

Nick and Alexey and I agreed that we will simply remove the original jbds+eap installer jar (jboss-devstudio-9.0.0.GA-installer-eap.jar) and add the new jar instead (jboss-devstudio-9.0.0.GA-CVE-2015-7501-installer-eap.jar).

There are several places where you can get the installer:
http://tools.jboss.org/downloads/devstudio/mars/9.0.0.GA.html
http://www.jboss.org/products/devstudio/download/
https://access.redhat.com/jbossnetwork/restricted/listSoftware.html?product=jbossdeveloperstudio&downloadType=distributions

It would be good if each of the places included a link to the document with explanation.

There are a couple of existing docs about the CVE (none of them mentions JBDS):
https://access.redhat.com/articles/2051353 - internal article
https://access.redhat.com/security/cve/CVE-2015-7501 - list of erratas for each product
https://access.redhat.com/solutions/2045023 - list of affected products

> Documentation for JBDS 9.0.0.GA EAP 6.4.0 CVE-2015-7501
> -------------------------------------------------------
>
>                 Key: JBDS-3571
>                 URL: https://issues.jboss.org/browse/JBDS-3571
>             Project: Developer Studio (JBoss Developer Studio)
>          Issue Type: Task
>          Components: documentation
>    Affects Versions: 9.0.0.GA-CVE-2015-7501
>            Reporter: Len DiMaggio
>            Assignee: Jiri Pallich
>             Fix For: 9.0.0.GA-CVE-2015-7501
>
>




--
This message was sent by Atlassian JIRA
(v6.4.11#64026)


More information about the jbosstools-issues mailing list