Skip to main content
EPSS 0.2%top 93%

Red Hat Security Advisory: AMQ Broker 7.12.5.OPR.1.GA Container Images release and security update

0
Medium
Published: 07/31/2025 (07/31/2025, 11:18:34 UTC)
Source: GCVE Database
Vendor/Project: Red Hat Product Security
Product: Red Hat

Description

Red Hat Middleware for OpenShift provides images for many of the Red Hat Middleware products for use within the OpenShift Container Platform cloud computing Platform-as-a-Service (PaaS) for on-premise or private cloud deployments. This release of Red Hat AMQ Broker 7.12.5 includes security and bug fixes, and enhancements. For further information, refer to the release notes linked to in the References section. Security Fix(es): * (CVE-2025-4057) activemq-artemis-operator: AMQ Broker Operator Starting Credentials Reuse For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section. For information on supported configurations, see Red Hat AMQ Broker 7 Supported Configurations at https://access.redhat.com/articles/2791941

Affected software

Affected versions
Red HatRed Hat OpenShift EnterpriseMiddleware Containers for OpenShiftarm64amq7/amq-broker-init-rhel8@sha256:bc23a019eea3ea16eae26ffd5d6e13e35cefe602a199075ff8fb4d350cbab974_arm64

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 06/27/2026, 22:34:39 UTC

Technical Analysis

The vulnerability CVE-2025-4057 affects the activemq-artemis-operator used in Red Hat AMQ Broker 7.13.0 container images. It involves the reuse of starting credentials by the AMQ Broker Operator, which could lead to security risks. Red Hat has released a security update in version 7.13.0.OPR.1.GA container images to address this issue. The advisory rates the impact as moderate and recommends updating to the latest container images available in the Red Hat Container catalog. No CVSS score is provided in the advisory.

Potential Impact

The vulnerability allows the AMQ Broker Operator to reuse starting credentials, which may lead to potential security risks related to credential management. The exact impact details and exploitability are not specified beyond the moderate severity rating. There are no known exploits in the wild reported at this time.

Mitigation Recommendations

Red Hat has provided an official security update for AMQ Broker 7.13.0.OPR.1.GA container images that addresses this vulnerability. Users should update to the latest container images as available in the Red Hat Container catalog. No additional mitigation steps are indicated by the vendor advisory.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Gcve Source
db.gcve.eu
Csaf Category
csaf_security_advisory
Csaf Version
2.0
Publisher
Red Hat Product Security
Advisory Id
RHSA-2025:8147
Cve Count
1

Threat ID: 6a4049e627e9c79719834638

Added to database: 06/27/2026, 22:08:38 UTC

Last enriched: 06/27/2026, 22:34:39 UTC

Last updated: 09/10/2026, 19:36:50 UTC

Views: 18

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses