Описание
In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround classes which creates temp files with insecure permissions that could be read by a local user.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | needed | |
| esm-apps/focal | released | 3.6.2-2ubuntu0.20.04.1~esm1 |
| esm-apps/jammy | released | 3.6.2-2ubuntu0.22.04.1~esm1 |
| esm-apps/noble | released | 3.6.2-2ubuntu0.24.04.1~esm1 |
| esm-apps/xenial | released | 3.0.6-3ubuntu0.1~esm1 |
| focal | ignored | end of standard support, was needed |
| jammy | needed | |
| kinetic | ignored | end of life, was needs-triage |
| lunar | ignored | end of life, was needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needs-triage |
| devel | needed | |
| esm-apps/bionic | released | 3.0.26-1~18.04.1~esm1 |
| esm-apps/focal | released | 3.0.26-1ubuntu0.1~esm1 |
| esm-apps/jammy | released | 3.0.26-3ubuntu0.1 |
| esm-apps/noble | released | 3.0.26-6ubuntu0.24.04.1 |
| focal | ignored | end of standard support, was needed |
| jammy | released | 3.0.26-3ubuntu0.1 |
| kinetic | ignored | end of life, was needs-triage |
| lunar | ignored | end of life, was needs-triage |
Показывать по
5.5 Medium
CVSS3
Связанные уязвимости
In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround classes which creates temp files with insecure permissions that could be read by a local user.
In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround classes which creates temp files with insecure permissions that could be read by a local user.
In RESTEasy the insecure File.createTempFile() is used in the DataSour ...
Уязвимость программного средства RESTEasy, связанная с cозданием временных файлов с небезопасными разрешениями, позволяющая нарушителю получить доступ к конфиденциальной информации
5.5 Medium
CVSS3