[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2017:2486 -- centos 7 groovy

ID: oval:org.secpod.oval:def:204590Date: (C)2018-04-30   (M)2022-10-10
Class: PATCHFamily: unix




Groovy is an agile and dynamic language for the Java Virtual Machine, built upon Java with features inspired by languages like Python, Ruby, and Smalltalk. It seamlessly integrates with all existing Java objects and libraries and compiles straight to Java bytecode so you can use it anywhere you can use Java. Security Fix: * It was found that a flaw in Apache groovy library allows remote code execution wherever deserialization occurs in the application. It is possible for an attacker to craft a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects are subject to this vulnerability

Platform:
CentOS 7
Product:
groovy
Reference:
CESA-2017:2486
CVE-2016-6814
CVE-2015-3253
CVE    2
CVE-2016-6814
CVE-2015-3253
CPE    2
cpe:/o:centos:centos:7
cpe:/a:groovy:groovy

© SecPod Technologies