Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-49j7-qghp-5wj8

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью

Описание

Improper Control of Generation of Code in HawtJNI

Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when a custom library path is not specified, allows local users to execute arbitrary Java code by overwriting a temporary JAR file with a predictable name in /tmp.

Пакеты

Наименование

org.fusesource.hawtjni:hawtjni-runtime

maven
Затронутые версииВерсия исправления

< 1.8

1.8

EPSS

Процентиль: 13%
0.00043
Низкий

Дефекты

CWE-94

Связанные уязвимости

ubuntu
больше 12 лет назад

Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when a custom library path is not specified, allows local users to execute arbitrary Java code by overwriting a temporary JAR file with a predictable name in /tmp.

redhat
больше 12 лет назад

Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when a custom library path is not specified, allows local users to execute arbitrary Java code by overwriting a temporary JAR file with a predictable name in /tmp.

nvd
больше 12 лет назад

Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when a custom library path is not specified, allows local users to execute arbitrary Java code by overwriting a temporary JAR file with a predictable name in /tmp.

debian
больше 12 лет назад

Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni ...

EPSS

Процентиль: 13%
0.00043
Низкий

Дефекты

CWE-94