Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-2035

Опубликовано: 28 авг. 2013
Источник: nvd
CVSS2: 4.4
EPSS Низкий

Описание

Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when a custom library path is not specified, allows local users to execute arbitrary Java code by overwriting a temporary JAR file with a predictable name in /tmp.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:redhat:hawtjni:*:*:*:*:*:*:*:*
Версия до 1.7 (включая)
cpe:2.3:a:redhat:hawtjni:1.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:hawtjni:1.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:hawtjni:1.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:hawtjni:1.3:*:*:*:*:*:*:*
cpe:2.3:a:redhat:hawtjni:1.4:*:*:*:*:*:*:*
cpe:2.3:a:redhat:hawtjni:1.5:*:*:*:*:*:*:*
cpe:2.3:a:redhat:hawtjni:1.6:*:*:*:*:*:*:*

EPSS

Процентиль: 13%
0.00043
Низкий

4.4 Medium

CVSS2

Дефекты

CWE-94

Связанные уязвимости

ubuntu
больше 12 лет назад

Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when a custom library path is not specified, allows local users to execute arbitrary Java code by overwriting a temporary JAR file with a predictable name in /tmp.

redhat
больше 12 лет назад

Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java in HawtJNI before 1.8, when a custom library path is not specified, allows local users to execute arbitrary Java code by overwriting a temporary JAR file with a predictable name in /tmp.

debian
больше 12 лет назад

Race condition in hawtjni-runtime/src/main/java/org/fusesource/hawtjni ...

github
больше 3 лет назад

Improper Control of Generation of Code in HawtJNI

EPSS

Процентиль: 13%
0.00043
Низкий

4.4 Medium

CVSS2

Дефекты

CWE-94