Описание
CVE-2020-9493 identified a deserialization issue that was present in Apache Chainsaw. Prior to Chainsaw V2.0 Chainsaw was a component of Apache Log4j 1.2.x where the same issue exists.
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 1.2.17-8+deb10u1ubuntu0.2 |
devel | needs-triage | |
esm-apps/bionic | released | 1.2.17-8+deb10u1ubuntu0.2 |
esm-apps/focal | released | 1.2.17-9ubuntu0.2 |
esm-apps/jammy | not-affected | 1.2.17-11 |
esm-apps/noble | needs-triage | |
esm-apps/xenial | released | 1.2.17-7ubuntu1+esm1 |
esm-infra-legacy/trusty | needs-triage | |
focal | released | 1.2.17-9ubuntu0.2 |
impish | ignored | end of life |
Показывать по
9 Critical
CVSS2
8.8 High
CVSS3
Связанные уязвимости
CVE-2020-9493 identified a deserialization issue that was present in Apache Chainsaw. Prior to Chainsaw V2.0 Chainsaw was a component of Apache Log4j 1.2.x where the same issue exists.
CVE-2020-9493 identified a deserialization issue that was present in Apache Chainsaw. Prior to Chainsaw V2.0 Chainsaw was a component of Apache Log4j 1.2.x where the same issue exists.
CVE-2020-9493 identified a deserialization issue that was present in A ...
Deserialization of Untrusted Data in Apache Log4j
Уязвимость библиотеки журналирования Java-программ Log4j, связанная с восстановлением в памяти недостоверных данных, позволяющая нарушителю выполнить произвольный код
9 Critical
CVSS2
8.8 High
CVSS3