Логотип exploitDog
bind:CVE-2020-17521
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-17521

Количество 8

Количество 8

ubuntu логотип

CVE-2020-17521

около 5 лет назад

Apache Groovy provides extension methods to aid with creating temporary directories. Prior to this fix, Groovy's implementation of those extension methods was using a now superseded Java JDK method call that is potentially not secure on some operating systems in some contexts. Users not using the extension methods mentioned in the advisory are not affected, but may wish to read the advisory for further details. Versions Affected: 2.0 to 2.4.20, 2.5.0 to 2.5.13, 3.0.0 to 3.0.6, and 4.0.0-alpha-1. Fixed in versions 2.4.21, 2.5.14, 3.0.7, 4.0.0-alpha-2.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2020-17521

около 5 лет назад

Apache Groovy provides extension methods to aid with creating temporary directories. Prior to this fix, Groovy's implementation of those extension methods was using a now superseded Java JDK method call that is potentially not secure on some operating systems in some contexts. Users not using the extension methods mentioned in the advisory are not affected, but may wish to read the advisory for further details. Versions Affected: 2.0 to 2.4.20, 2.5.0 to 2.5.13, 3.0.0 to 3.0.6, and 4.0.0-alpha-1. Fixed in versions 2.4.21, 2.5.14, 3.0.7, 4.0.0-alpha-2.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2020-17521

около 5 лет назад

Apache Groovy provides extension methods to aid with creating temporary directories. Prior to this fix, Groovy's implementation of those extension methods was using a now superseded Java JDK method call that is potentially not secure on some operating systems in some contexts. Users not using the extension methods mentioned in the advisory are not affected, but may wish to read the advisory for further details. Versions Affected: 2.0 to 2.4.20, 2.5.0 to 2.5.13, 3.0.0 to 3.0.6, and 4.0.0-alpha-1. Fixed in versions 2.4.21, 2.5.14, 3.0.7, 4.0.0-alpha-2.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2020-17521

около 5 лет назад

Apache Groovy provides extension methods to aid with creating temporar ...

CVSS3: 5.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2367-1

около 5 лет назад

Security update for groovy

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3917-1

около 5 лет назад

Security update for groovy

EPSS: Низкий
github логотип

GHSA-rcjj-h6gh-jf3r

около 5 лет назад

Information Disclosure in Apache Groovy

CVSS3: 5.5
EPSS: Низкий
fstec логотип

BDU:2021-00960

около 5 лет назад

Уязвимость метода создания временных каталогов языка программирования Apache Groovy, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-17521

Apache Groovy provides extension methods to aid with creating temporary directories. Prior to this fix, Groovy's implementation of those extension methods was using a now superseded Java JDK method call that is potentially not secure on some operating systems in some contexts. Users not using the extension methods mentioned in the advisory are not affected, but may wish to read the advisory for further details. Versions Affected: 2.0 to 2.4.20, 2.5.0 to 2.5.13, 3.0.0 to 3.0.6, and 4.0.0-alpha-1. Fixed in versions 2.4.21, 2.5.14, 3.0.7, 4.0.0-alpha-2.

CVSS3: 5.5
2%
Низкий
около 5 лет назад
redhat логотип
CVE-2020-17521

Apache Groovy provides extension methods to aid with creating temporary directories. Prior to this fix, Groovy's implementation of those extension methods was using a now superseded Java JDK method call that is potentially not secure on some operating systems in some contexts. Users not using the extension methods mentioned in the advisory are not affected, but may wish to read the advisory for further details. Versions Affected: 2.0 to 2.4.20, 2.5.0 to 2.5.13, 3.0.0 to 3.0.6, and 4.0.0-alpha-1. Fixed in versions 2.4.21, 2.5.14, 3.0.7, 4.0.0-alpha-2.

CVSS3: 5.5
2%
Низкий
около 5 лет назад
nvd логотип
CVE-2020-17521

Apache Groovy provides extension methods to aid with creating temporary directories. Prior to this fix, Groovy's implementation of those extension methods was using a now superseded Java JDK method call that is potentially not secure on some operating systems in some contexts. Users not using the extension methods mentioned in the advisory are not affected, but may wish to read the advisory for further details. Versions Affected: 2.0 to 2.4.20, 2.5.0 to 2.5.13, 3.0.0 to 3.0.6, and 4.0.0-alpha-1. Fixed in versions 2.4.21, 2.5.14, 3.0.7, 4.0.0-alpha-2.

CVSS3: 5.5
2%
Низкий
около 5 лет назад
debian логотип
CVE-2020-17521

Apache Groovy provides extension methods to aid with creating temporar ...

CVSS3: 5.5
2%
Низкий
около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2367-1

Security update for groovy

2%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:3917-1

Security update for groovy

2%
Низкий
около 5 лет назад
github логотип
GHSA-rcjj-h6gh-jf3r

Information Disclosure in Apache Groovy

CVSS3: 5.5
2%
Низкий
около 5 лет назад
fstec логотип
BDU:2021-00960

Уязвимость метода создания временных каталогов языка программирования Apache Groovy, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 5.5
2%
Низкий
около 5 лет назад

Уязвимостей на страницу