Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-3253

Опубликовано: 13 авг. 2015
Источник: debian

Описание

The MethodClosure class in runtime/MethodClosure.java in Apache Groovy 1.7.0 through 2.4.3 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted serialized object.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
groovyfixed2.4.6-1package
groovyfixed1.8.6-4+deb8u1jessiepackage
groovyfixed1.8.6-1+deb7u1wheezypackage
groovy2fixed2.2.2+dfsg-5package
groovy2fixed2.2.2+dfsg-3+deb8u1jessiepackage

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 10 лет назад

The MethodClosure class in runtime/MethodClosure.java in Apache Groovy 1.7.0 through 2.4.3 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted serialized object.

CVSS3: 9.6
redhat
больше 10 лет назад

The MethodClosure class in runtime/MethodClosure.java in Apache Groovy 1.7.0 through 2.4.3 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted serialized object.

CVSS3: 9.8
nvd
больше 10 лет назад

The MethodClosure class in runtime/MethodClosure.java in Apache Groovy 1.7.0 through 2.4.3 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted serialized object.

CVSS3: 9.8
github
больше 3 лет назад

Improper Neutralization of Special Elements in Output Used by a Downstream Component in Apache Groovy