VDB

BDU%3A2024-02252

BDU%3A2024-02252 PUBLISHED CVSS 8.5 HIGH

Уязвимость пакетного менеджера Apache Ivy, связанная с неверным ограничением XML-ссылок на внешние объекты, позволяющая нарушителю раскрыть защищаемую информацию или вызвать отказ в обслуживании

Risk Scores

CVSS 2.0
8.5

Affected Products

VendorProductVersions
Red Hat Inc., Novell Inc., JetBrains, Apache Software FoundationRed Hat Enterprise Linux, OpenSUSE Leap, Red Hat JBoss Fuse, Red Hat Software Collections, SUSE Linux Enterprise Module for Development Tools, Suse Linux Enterprise Server, Red Hat Integration Camel K, SUSE Linux Enterprise High Performance Computing, SUSE Linux Enterprise Server for SAP Applications, SUSE Manager Proxy, SUSE Manager Server, Suse Linux Enterprise Desktop, SUSE Enterprise Storage, SUSE Manager Retail Branch Server, SUSE Linux Enterprise Real Time, Red Hat Integration Camel for Spring Boot, Red Hat AMQ Streams, Migration Toolkit for Applications, Migration Toolkit for Runtimes, Scala Plugin for IntelliJ IDEA, Ivy

Timeline

  • Mar 22, 2024 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›