[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2016:2604-02 -- Redhat resteasy-base

ID: oval:org.secpod.oval:def:501926Date: (C)2016-11-07   (M)2021-10-31
Class: PATCHFamily: unix




RESTEasy contains a JBoss project that provides frameworks to help build RESTful Web Services and RESTful Java applications. It is a fully certified and portable implementation of the JAX-RS specification. Security Fix: * It was discovered that under certain conditions RESTEasy could be forced to parse a request with SerializableProvider, resulting in deserialization of potentially untrusted data. An attacker could possibly use this flaw to execute arbitrary code with the permissions of the application using RESTEasy. Red Hat would like to thank Mikhail Egorov for reporting this issue. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.3 Release Notes linked from the References section.

Platform:
Red Hat Enterprise Linux 7
Product:
resteasy-base
Reference:
RHSA-2016:2604-02
CVE-2016-7050
CVE    1
CVE-2016-7050
CPE    2
cpe:/o:redhat:enterprise_linux:7
cpe:/a:redhat:resteasy-base

© SecPod Technologies