Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-43cg-c28c-82hq

Опубликовано: 30 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR1 FP10, 7 R1 before SR3 FP10, 7 before SR9 FP10, 6 R1 before SR8 FP7, 6 before SR16 FP7, and 5.0 before SR16 FP13 stores plaintext information in memory dumps, which allows local users to obtain sensitive information by reading a file.

IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR1 FP10, 7 R1 before SR3 FP10, 7 before SR9 FP10, 6 R1 before SR8 FP7, 6 before SR16 FP7, and 5.0 before SR16 FP13 stores plaintext information in memory dumps, which allows local users to obtain sensitive information by reading a file.

EPSS

Процентиль: 16%
0.0005
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-312

Связанные уязвимости

redhat
больше 10 лет назад

IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR1 FP10, 7 R1 before SR3 FP10, 7 before SR9 FP10, 6 R1 before SR8 FP7, 6 before SR16 FP7, and 5.0 before SR16 FP13 stores plaintext information in memory dumps, which allows local users to obtain sensitive information by reading a file.

CVSS3: 5.5
nvd
больше 3 лет назад

IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR1 FP10, 7 R1 before SR3 FP10, 7 before SR9 FP10, 6 R1 before SR8 FP7, 6 before SR16 FP7, and 5.0 before SR16 FP13 stores plaintext information in memory dumps, which allows local users to obtain sensitive information by reading a file.

suse-cvrf
больше 10 лет назад

Security update for java-1_6_0-ibm

suse-cvrf
больше 10 лет назад

Security update for java-1_6_0-ibm

suse-cvrf
больше 10 лет назад

Security update for java-1_7_1-ibm

EPSS

Процентиль: 16%
0.0005
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-312