Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-0482

Опубликовано: 17 фев. 2023
Источник: ubuntu
Приоритет: medium
CVSS3: 5.5

Описание

In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround classes which creates temp files with insecure permissions that could be read by a local user.

РелизСтатусПримечание
bionic

DNE

devel

needed

esm-apps/focal

released

3.6.2-2ubuntu0.20.04.1~esm1
esm-apps/jammy

released

3.6.2-2ubuntu0.22.04.1~esm1
esm-apps/noble

released

3.6.2-2ubuntu0.24.04.1~esm1
esm-apps/xenial

released

3.0.6-3ubuntu0.1~esm1
focal

ignored

end of standard support, was needed
jammy

needed

kinetic

ignored

end of life, was needs-triage
lunar

ignored

end of life, was needs-triage

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

needed

esm-apps/bionic

released

3.0.26-1~18.04.1~esm1
esm-apps/focal

released

3.0.26-1ubuntu0.1~esm1
esm-apps/jammy

released

3.0.26-3ubuntu0.1
esm-apps/noble

released

3.0.26-6ubuntu0.24.04.1
focal

ignored

end of standard support, was needed
jammy

released

3.0.26-3ubuntu0.1
kinetic

ignored

end of life, was needs-triage
lunar

ignored

end of life, was needs-triage

Показывать по

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
redhat
почти 3 года назад

In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround classes which creates temp files with insecure permissions that could be read by a local user.

CVSS3: 5.5
nvd
почти 3 года назад

In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround classes which creates temp files with insecure permissions that could be read by a local user.

CVSS3: 5.5
debian
почти 3 года назад

In RESTEasy the insecure File.createTempFile() is used in the DataSour ...

CVSS3: 5.5
github
около 1 года назад

Insecure Temporary File in RESTEasy

CVSS3: 5.5
fstec
почти 3 года назад

Уязвимость программного средства RESTEasy, связанная с cозданием временных файлов с небезопасными разрешениями, позволяющая нарушителю получить доступ к конфиденциальной информации

5.5 Medium

CVSS3