Uploaded image for project: 'Red Hat Fuse'
  1. Red Hat Fuse
  2. ENTESB-7397

CVE-2017-12633 camel-hessian: Apache Camel's Hessian unmarshalling operation is vulnerable to Remote Code Execution attacks

    • Icon: Task Task
    • Resolution: Done
    • Icon: Minor Minor
    • fuse-6.x-GA
    • jboss-fuse-6.3
    • Camel
    • None
    • % %

      Apache Camel's camel-hessian component is vulnerable to Java object
      de-serialisation vulnerability. De-serializing untrusted data can lead to security flaws.

      Versions Affected: Camel 2.19.0 to 2.19.3 and Camel 2.20.0
      The unsupported Camel 2.x (2.18 and earlier) versions may be also affected.
      https://bugzilla.redhat.com/show_bug.cgi?id=1513382

              acosenti Andrea Cosentino
              acosenti Andrea Cosentino
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: