Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hmh-mhqv-7638

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью

Описание

PartialBufferOutputStream2 flush issues

Withdrawn

This advisory has been withdrawn as there the effects of the bug would only give the caller an incomplete view of data which they would be authorized to see.

Original Advisory

PartialBufferOutputStream2 in GeoServer before 1.6.1 and 1.7.0-beta1 attempts to flush buffer contents even when it is handling an "in memory buffer," which prevents the reporting of a service exception, with unknown impact and attack vectors.

Пакеты

Наименование

org.geoserver:gs-main

maven
Затронутые версииВерсия исправления

< 1.6.1

1.6.1

Наименование

org.geoserver.web:gs-web-app

maven
Затронутые версииВерсия исправления

< 1.6.1

1.6.1

EPSS

Процентиль: 53%
0.00305
Низкий

Дефекты

CWE-119

Связанные уязвимости

nvd
больше 16 лет назад

PartialBufferOutputStream2 in GeoServer before 1.6.1 and 1.7.0-beta1 attempts to flush buffer contents even when it is handling an "in memory buffer," which prevents the reporting of a service exception, with unknown impact and attack vectors.

EPSS

Процентиль: 53%
0.00305
Низкий

Дефекты

CWE-119