We are running JBoss 5.1.0 with JBossWeb 2.1.3. Could someone verify if the following vulnerabilities apply to this version of JBossWeb?
In general, are we able to upgrade JbossWeb in Jboss 5.1.0? If so, could you point me to any docs on how to?
To upgrade jbossweb you need to compile jbossweb - Revision 2525: /branches/2.1.x and copy the jbossweb.jar file in your Jboss 5.1.0 installation..
Those issue seems to be openssl ones so you are only affected if you use native....
Retrieving data ...