Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-40690

Опубликовано: 17 сент. 2021
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allows an attacker to abuse an XPath Transform to extract any local .xml files in a RetrievalMethod element.

Отчет

Since OpenShift Container Platform (OCP) 4.7, the logging-elasticsearch6-container is shipping as a part of the OpenShift Logging product (openshift-logging/elasticsearch6-rhel8). The elasticsearch component delivered in OCP 4.6 is marked as Out of support scope because these versions are already under Maintenance Phase of the support.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Logging Subsystem for Red Hat OpenShiftopenshift-logging/elasticsearch6-rhel8Will not fix
Red Hat Ansible Automation Platform 1.2xmlsecNot affected
Red Hat Ansible Tower 3xmlsecNot affected
Red Hat Integration Service RegistryxmlsecAffected
Red Hat JBoss Data Virtualization 6xmlsecOut of support scope
Red Hat JBoss Fuse 6xmlsecOut of support scope
Red Hat JBoss Fuse Service Works 6xmlsecOut of support scope
Red Hat JBoss Operations Network 3xmlsecOut of support scope
Red Hat JBoss SOA Platform 5xml-securityOut of support scope
Red Hat OpenShift Container Platform 3.11openshift3/ose-logging-elasticsearch5Out of support scope

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-200
https://bugzilla.redhat.com/show_bug.cgi?id=2011190xml-security: XPath Transform abuse allows for information disclosure

EPSS

Процентиль: 59%
0.00378
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 4 лет назад

All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allows an attacker to abuse an XPath Transform to extract any local .xml files in a RetrievalMethod element.

CVSS3: 7.5
nvd
больше 4 лет назад

All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allows an attacker to abuse an XPath Transform to extract any local .xml files in a RetrievalMethod element.

CVSS3: 7.5
debian
больше 4 лет назад

All versions of Apache Santuario - XML Security for Java prior to 2.2. ...

CVSS3: 7.5
github
больше 4 лет назад

Exposure of Sensitive Information to an Unauthorized Actor in Apache Santuario

CVSS3: 7.5
fstec
больше 4 лет назад

Уязвимость платформы для обеспечения безопасности XML-данных в приложениях на языке Java XML Apache Santuario XML Security for Java, связанная с ошибками при передачи свойства "secureValidation" при создании объекта KeyInfo из элемента KeyInfoReference, позволяющая нарушителю получить доступ к произвольным файлам с расширением .xml

EPSS

Процентиль: 59%
0.00378
Низкий

7.5 High

CVSS3