Uploaded image for project: 'JBoss AS Patches'
  1. JBoss AS Patches
  2. ASPATCH-126

JBAS-3861: DeploymentFileRepository can be used to write/remove arbitrary files in the filesystem

This issue belongs to an archived project. You can view it, but you can't modify it. Learn more

    XMLWordPrintable

Details

    • Support Patch
    • Status: Resolved
    • Critical
    • Resolution: Done
    • JBossAS-3.2.5 Final, JBossAS-3.2.6 Final, JBossAS-3.2.7 Final, JBossAS-3.2.8 Final, JBossAS-3.2.8.SP1, JBossAS-4.0.0 Final, JBossAS-4.0.1 Final, JBossAS-4.0.1 SP1, JBossAS-4.0.2 Final, JBossAS-4.0.3 Final, JBossAS-4.0.3 SP1, JBossAS-4.0.4.GA
    • None
    • None
    • Hide
      See the linked JBAS-3861 to find out how to patch the vulnerability.
      Show
      See the linked JBAS-3861 to find out how to patch the vulnerability.

    Description

      Please see JBAS-3861 for details on how to resolve this vulnerability.

      Attachments

        Issue Links

          Activity

            People

              jbn-patch-team JBN Patch Team list
              alex.pinkin Alex Pinkin (Inactive)
              Archiver:
              samahaja@redhat.com Sagar Mahajan

              Dates

                Created:
                Updated:
                Resolved:
                Archived: