Описание
Apache IoTDB: Unsafe deserialize map in Sync Tool
Deserialization of Untrusted Data vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 0.13.0 through 0.13.4.
Users are recommended to upgrade to version 1.2.2, which fixes the issue.
Пакеты
Наименование
org.apache.iotdb:iotdb-parent
maven
Затронутые версииВерсия исправления
>= 0.13.0, < 1.2.2
1.2.2
Связанные уязвимости
CVSS3: 9.8
nvd
около 2 лет назад
Deserialization of Untrusted Data vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 0.13.0 through 0.13.4. Users are recommended to upgrade to version 1.2.2, which fixes the issue.