Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-6809

Опубликовано: 06 апр. 2017
Источник: debian

Описание

Apache Tika before 1.14 allows Java code execution for serialized objects embedded in MATLAB files. The issue exists because Tika invokes JMatIO to do native deserialization.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
tikafixed1.18-1package
tikanot-affectedjessiepackage

Примечания

  • http://seclists.org/bugtraq/2016/Nov/40

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 9 лет назад

Apache Tika before 1.14 allows Java code execution for serialized objects embedded in MATLAB files. The issue exists because Tika invokes JMatIO to do native deserialization.

CVSS3: 7.8
redhat
около 9 лет назад

Apache Tika before 1.14 allows Java code execution for serialized objects embedded in MATLAB files. The issue exists because Tika invokes JMatIO to do native deserialization.

CVSS3: 9.8
nvd
почти 9 лет назад

Apache Tika before 1.14 allows Java code execution for serialized objects embedded in MATLAB files. The issue exists because Tika invokes JMatIO to do native deserialization.

CVSS3: 9.8
github
больше 7 лет назад

Apache Tika allows Java code execution for serialized objects embedded in MATLAB files