[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2016-2604 -- Oracle resteasy-base

ID: oval:org.secpod.oval:def:1501663Date: (C)2016-12-07   (M)2021-10-31
Class: PATCHFamily: unix




RESTEasy contains a JBoss project that provides frameworks to help build RESTful Web Services and RESTful Java applications. It is a fully certified and portable implementation of the JAX-RS specification. Security Fix: * It was discovered that under certain conditions RESTEasy could be forced to parse a request with SerializableProvider, resulting in deserialization of potentially untrusted data. An attacker could possibly use this flaw to execute arbitrary code with the permissions of the application using RESTEasy.

Platform:
Oracle Linux 7
Product:
resteasy-base
Reference:
ELSA-2016-2604
CVE-2016-7050
CVE    1
CVE-2016-7050
CPE    2
cpe:/o:oracle:linux:7
cpe:/a:redhat:resteasy-base

© SecPod Technologies