CVE-2017-12189: Red Hat Enterprise Linux

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

It was discovered that the jboss init script as used in Red Hat JBoss Enterprise Application Platform 7.0.7.GA performed unsafe file handling which could result in local privilege escalation. This issue is a result of an incomplete fix for CVE-2016-8656.

Affected products

  • Red Hat Enterprise Linux: version 6.0 only; version 7.0 only
  • Red Hat JBoss Enterprise Application Platform: version 7.0 only

Published 2018-01-10. Last modified 2026-06-17.