Search code examples
jboss7.xwindows-server-2008-r2poodle-attack

Is JBoss 7.1 is vulnerable to POODLE: SSLv3 vulnerability (CVE-2014-3566) in Windows


We are using JBoss 7.1 in our application on Windows platform. Is this particular version of JBoss vulnerable to POODLE??


Solution

  • All SSL implementations are vulnerable to POODLE attack.

    For details how to disable SSLv3 for in EAP6 (AS7) see https://access.redhat.com/articles/1232123