Critical Severity Vulnerability
This vulnerability has been rated as Critical severity. Immediate action is recommended.
CVE-2017-5645
Critical
Low
Medium
High
Critical
9.8
CVSS Score
Vulnerability Description
In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, when deserialized, can execute arbitrary code.
CVSS Metrics
Common Vulnerability Scoring System
Vector String:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
N
Attack Complexity
L
Privileges Required
N
User Interaction
N
Scope
U
Confidentiality
H
Integrity
H
Availability
H
Known Affected Software
189 configuration(s) from 4 vendor(s)
log4j
Version:
2.3
CPE:
cpe:2.3:a:apache:log4j:2.3:*:*:*:*:*:*:*
log4j
Version:
2.8.1
CPE:
cpe:2.3:a:apache:log4j:2.8.1:-:*:*:*:*:*:*
log4j
Version:
2.8
CPE:
cpe:2.3:a:apache:log4j:2.8:-:*:*:*:*:*:*
log4j
Version:
2.0.1
CPE:
cpe:2.3:a:apache:log4j:2.0.1:*:*:*:*:*:*:*
log4j
Version:
2.1
CPE:
cpe:2.3:a:apache:log4j:2.1:-:*:*:*:*:*:*
log4j
Version:
2.7
CPE:
cpe:2.3:a:apache:log4j:2.7:-:*:*:*:*:*:*
log4j
Version:
2.0
CPE:
cpe:2.3:a:apache:log4j:2.0:-:*:*:*:*:*:*
log4j
Version:
2.4.0
CPE:
cpe:2.3:a:apache:log4j:2.4.0:*:*:*:*:*:*:*
log4j
Version:
2.6.2
CPE:
cpe:2.3:a:apache:log4j:2.6.2:-:*:*:*:*:*:*
log4j
Version:
2.6
CPE:
cpe:2.3:a:apache:log4j:2.6:-:*:*:*:*:*:*
log4j
Version:
2.2
CPE:
cpe:2.3:a:apache:log4j:2.2:*:*:*:*:*:*:*
log4j
Version:
2.0.2
CPE:
cpe:2.3:a:apache:log4j:2.0.2:*:*:*:*:*:*:*
log4j
Version:
2.4.1
CPE:
cpe:2.3:a:apache:log4j:2.4.1:*:*:*:*:*:*:*
log4j
Version:
2.5
CPE:
cpe:2.3:a:apache:log4j:2.5:-:*:*:*:*:*:*
log4j
Version:
2.3.2
CPE:
cpe:2.3:a:apache:log4j:2.3.2:rc1:*:*:*:*:*:*
log4j
Version:
2.6.1
CPE:
cpe:2.3:a:apache:log4j:2.6.1:-:*:*:*:*:*:*
log4j
Version:
2.3.1
CPE:
cpe:2.3:a:apache:log4j:2.3.1:rc1:*:*:*:*:*:*
oncommand_api_services
Version:
-
CPE:
cpe:2.3:a:netapp:oncommand_api_services:-:*:*:*:*:*:*:*
oncommand_workflow_automation
Version:
-
CPE:
cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:*
snapcenter
Version:
-
CPE:
cpe:2.3:a:netapp:snapcenter:-:*:*:*:*:*:*:*
service_level_manager
Version:
-
CPE:
cpe:2.3:a:netapp:service_level_manager:-:*:*:*:*:*:*:*
oncommand_insight
Version:
-
CPE:
cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:*
storage_automation_store
Version:
-
CPE:
cpe:2.3:a:netapp:storage_automation_store:-:*:*:*:*:*:*:*
identity_analytics
Version:
11.1.1.5.8
CPE:
cpe:2.3:a:oracle:identity_analytics:11.1.1.5.8:*:*:*:*:*:*:*
insurance_calculation_engine
Version:
10.2.1
CPE:
cpe:2.3:a:oracle:insurance_calculation_engine:10.2.1:*:*:*:*:*:*:*
insurance_rules_palette
Version:
11.1
CPE:
cpe:2.3:a:oracle:insurance_rules_palette:11.1:*:*:*:*:*:*:*
policy_automation
Version:
12.2.10
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.10:*:*:*:*:*:*:*
retail_advanced_inventory_planning
Version:
15.0
CPE:
cpe:2.3:a:oracle:retail_advanced_inventory_planning:15.0:*:*:*:*:*:*:*
autovue_vuelink_integration
Version:
21.0.0
CPE:
cpe:2.3:a:oracle:autovue_vuelink_integration:21.0.0:*:*:*:*:*:*:*
endeca_information_discovery_studio
Version:
3.2.0
CPE:
cpe:2.3:a:oracle:endeca_information_discovery_studio:3.2.0:*:*:*:*:*:*:*
fusion_middleware_mapviewer
Version:
12.2.1.2
CPE:
cpe:2.3:a:oracle:fusion_middleware_mapviewer:12.2.1.2:*:*:*:*:*:*:*
financial_services_loan_loss_forecasting_and_provisioning
Version:
8.0.5
CPE:
cpe:2.3:a:oracle:financial_services_loan_loss_forecasting_and_provisioning:8.0.5:*:*:*:*:*:*:*
retail_integration_bus
Version:
14.1.0
CPE:
cpe:2.3:a:oracle:retail_integration_bus:14.1.0:*:*:*:*:*:*:*
siebel_ui_framework
Version:
18.9
CPE:
cpe:2.3:a:oracle:siebel_ui_framework:18.9:*:*:*:*:*:*:*
api_gateway
Version:
11.1.2.4.0
CPE:
cpe:2.3:a:oracle:api_gateway:11.1.2.4.0:*:*:*:*:*:*:*
enterprise_manager_for_oracle_database
Version:
13.2.2
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_oracle_database:13.2.2:*:*:*:*:*:*:*
retail_advanced_inventory_planning
Version:
14.0
CPE:
cpe:2.3:a:oracle:retail_advanced_inventory_planning:14.0:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
10.4.7
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:10.4.7:*:*:*:*:*:*:*
communications_webrtc_session_controller
Version:
7.1
CPE:
cpe:2.3:a:oracle:communications_webrtc_session_controller:7.1:*:*:*:*:*:*:*
soa_suite
Version:
12.2.1.3.0
CPE:
cpe:2.3:a:oracle:soa_suite:12.2.1.3.0:*:*:*:*:*:*:*
soa_suite
Version:
12.2.2.0.0
CPE:
cpe:2.3:a:oracle:soa_suite:12.2.2.0.0:*:*:*:*:*:*:*
jdeveloper
Version:
12.1.3.0.0
CPE:
cpe:2.3:a:oracle:jdeveloper:12.1.3.0.0:*:*:*:*:*:*:*
insurance_rules_palette
Version:
10.0
CPE:
cpe:2.3:a:oracle:insurance_rules_palette:10.0:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.1.0
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.1.0:*:*:*:*:*:*:*
bi_publisher
Version:
11.1.1.7.0
CPE:
cpe:2.3:a:oracle:bi_publisher:11.1.1.7.0:*:*:*:*:*:*:*
retail_extract_transform_and_load
Version:
19.0
CPE:
cpe:2.3:a:oracle:retail_extract_transform_and_load:19.0:*:*:*:*:*:*:*
enterprise_manager_for_mysql_database
Version:
12.1.0.2.0
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_mysql_database:12.1.0.2.0:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.3
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.3:*:*:*:*:*:*:*
enterprise_manager_for_mysql_database
Version:
13.2.2.0.0
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_mysql_database:13.2.2.0.0:*:*:*:*:*:*:*
utilities_work_and_asset_management
Version:
1.9.1.2.12
CPE:
cpe:2.3:a:oracle:utilities_work_and_asset_management:1.9.1.2.12:*:*:*:*:*:*:*
banking_platform
Version:
2.6.1
CPE:
cpe:2.3:a:oracle:banking_platform:2.6.1:*:*:*:*:*:*:*
communications_instant_messaging_server
Version:
10.0.1.3.0
CPE:
cpe:2.3:a:oracle:communications_instant_messaging_server:10.0.1.3.0:*:*:*:*:*:*:*
fusion_middleware_mapviewer
Version:
12.2.1.3
CPE:
cpe:2.3:a:oracle:fusion_middleware_mapviewer:12.2.1.3:*:*:*:*:*:*:*
flexcube_investor_servicing
Version:
12.1.0
CPE:
cpe:2.3:a:oracle:flexcube_investor_servicing:12.1.0:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.1
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.1:*:*:*:*:*:*:*
retail_predictive_application_server
Version:
15.0.3
CPE:
cpe:2.3:a:oracle:retail_predictive_application_server:15.0.3:*:*:*:*:*:*:*
configuration_manager
Version:
12.1.2.0.2
CPE:
cpe:2.3:a:oracle:configuration_manager:12.1.2.0.2:*:*:*:*:*:*:*
policy_automation
Version:
10.4.7
CPE:
cpe:2.3:a:oracle:policy_automation:10.4.7:*:*:*:*:*:*:*
communications_converged_application_server_-_service_controller
Version:
6.1
CPE:
cpe:2.3:a:oracle:communications_converged_application_server_-_service_controller:6.1:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.1.1
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.1.1:*:*:*:*:*:*:*
policy_automation
Version:
12.1.1
CPE:
cpe:2.3:a:oracle:policy_automation:12.1.1:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.4
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.4:*:*:*:*:*:*:*
enterprise_manager_base_platform
Version:
12.1.0.5
CPE:
cpe:2.3:a:oracle:enterprise_manager_base_platform:12.1.0.5:*:*:*:*:*:*:*
tape_library_acsls
Version:
8.4
CPE:
cpe:2.3:a:oracle:tape_library_acsls:8.4:*:*:*:*:*:*:*
financial_services_hedge_management_and_ifrs_valuations
Version:
8.0.5
CPE:
cpe:2.3:a:oracle:financial_services_hedge_management_and_ifrs_valuations:8.0.5:*:*:*:*:*:*:*
jd_edwards_enterpriseone_tools
Version:
9.2
CPE:
cpe:2.3:a:oracle:jd_edwards_enterpriseone_tools:9.2:*:*:*:*:*:*:*
policy_automation
Version:
12.2.7
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.7:*:*:*:*:*:*:*
in-memory_performance-driven_planning
Version:
12.2
CPE:
cpe:2.3:a:oracle:in-memory_performance-driven_planning:12.2:*:*:*:*:*:*:*
retail_integration_bus
Version:
14.0.0
CPE:
cpe:2.3:a:oracle:retail_integration_bus:14.0.0:*:*:*:*:*:*:*
siebel_ui_framework
Version:
18.7
CPE:
cpe:2.3:a:oracle:siebel_ui_framework:18.7:*:*:*:*:*:*:*
autovue_vuelink_integration
Version:
21.0.1
CPE:
cpe:2.3:a:oracle:autovue_vuelink_integration:21.0.1:*:*:*:*:*:*:*
financial_services_regulatory_reporting_with_agilereporter
Version:
8.0.9.2.0
CPE:
cpe:2.3:a:oracle:financial_services_regulatory_reporting_with_agilereporter:8.0.9.2.0:*:*:*:*:*:*:*
policy_automation
Version:
12.2.1
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.1:*:*:*:*:*:*:*
siebel_ui_framework
Version:
18.8
CPE:
cpe:2.3:a:oracle:siebel_ui_framework:18.8:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.6
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.6:*:*:*:*:*:*:*
retail_service_backbone
Version:
16.0
CPE:
cpe:2.3:a:oracle:retail_service_backbone:16.0:*:*:*:*:*:*:*
financial_services_behavior_detection_platform
Version:
6.1.1
CPE:
cpe:2.3:a:oracle:financial_services_behavior_detection_platform:6.1.1:*:*:*:*:*:*:*
enterprise_manager_for_peoplesoft
Version:
13.1.1.1
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_peoplesoft:13.1.1.1:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.7
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.7:*:*:*:*:*:*:*
rapid_planning
Version:
12.1
CPE:
cpe:2.3:a:oracle:rapid_planning:12.1:*:*:*:*:*:*:*
policy_automation
Version:
12.2.2
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.2:*:*:*:*:*:*:*
enterprise_manager_for_mysql_database
Version:
13.2.1.0.0
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_mysql_database:13.2.1.0.0:*:*:*:*:*:*:*
primavera_gateway
Version:
16.2
CPE:
cpe:2.3:a:oracle:primavera_gateway:16.2:*:*:*:*:*:*:*
retail_open_commerce_platform
Version:
6.0.0
CPE:
cpe:2.3:a:oracle:retail_open_commerce_platform:6.0.0:*:*:*:*:*:*:*
primavera_gateway
Version:
16.2.11
CPE:
cpe:2.3:a:oracle:primavera_gateway:16.2.11:*:*:*:*:*:*:*
application_testing_suite
Version:
13.3.0.1
CPE:
cpe:2.3:a:oracle:application_testing_suite:13.3.0.1:*:*:*:*:*:*:*
timesten_in-memory_database
Version:
11.2.2.8.49
CPE:
cpe:2.3:a:oracle:timesten_in-memory_database:11.2.2.8.49:*:*:*:*:*:*:*
enterprise_manager_for_mysql_database
Version:
12.1.0.3.0
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_mysql_database:12.1.0.3.0:*:*:*:*:*:*:*
insurance_rules_palette
Version:
10.2
CPE:
cpe:2.3:a:oracle:insurance_rules_palette:10.2:*:*:*:*:*:*:*
communications_webrtc_session_controller
Version:
7.0
CPE:
cpe:2.3:a:oracle:communications_webrtc_session_controller:7.0:*:*:*:*:*:*:*
identity_management_suite
Version:
12.2.1.3.0
CPE:
cpe:2.3:a:oracle:identity_management_suite:12.2.1.3.0:*:*:*:*:*:*:*
enterprise_manager_base_platform
Version:
13.2.0.0
CPE:
cpe:2.3:a:oracle:enterprise_manager_base_platform:13.2.0.0:*:*:*:*:*:*:*
policy_automation
Version:
12.2.8
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.8:*:*:*:*:*:*:*
policy_automation
Version:
12.2.3
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.3:*:*:*:*:*:*:*
flexcube_investor_servicing
Version:
12.4.0
CPE:
cpe:2.3:a:oracle:flexcube_investor_servicing:12.4.0:*:*:*:*:*:*:*
flexcube_investor_servicing
Version:
12.3.0
CPE:
cpe:2.3:a:oracle:flexcube_investor_servicing:12.3.0:*:*:*:*:*:*:*
retail_open_commerce_platform
Version:
6.0.1
CPE:
cpe:2.3:a:oracle:retail_open_commerce_platform:6.0.1:*:*:*:*:*:*:*
bi_publisher
Version:
12.2.1.3.0
CPE:
cpe:2.3:a:oracle:bi_publisher:12.2.1.3.0:*:*:*:*:*:*:*
in-memory_performance-driven_planning
Version:
12.1
CPE:
cpe:2.3:a:oracle:in-memory_performance-driven_planning:12.1:*:*:*:*:*:*:*
financial_services_lending_and_leasing
Version:
12.5.0
CPE:
cpe:2.3:a:oracle:financial_services_lending_and_leasing:12.5.0:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.8
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.8:*:*:*:*:*:*:*
communications_pricing_design_center
Version:
12.0
CPE:
cpe:2.3:a:oracle:communications_pricing_design_center:12.0:*:*:*:*:*:*:*
retail_integration_bus
Version:
16.0
CPE:
cpe:2.3:a:oracle:retail_integration_bus:16.0:*:*:*:*:*:*:*
insurance_rules_palette
Version:
10.1
CPE:
cpe:2.3:a:oracle:insurance_rules_palette:10.1:*:*:*:*:*:*:*
goldengate
Version:
12.3.2.1.1
CPE:
cpe:2.3:a:oracle:goldengate:12.3.2.1.1:*:*:*:*:*:*:*
enterprise_data_quality
Version:
12.2.1.3.0
CPE:
cpe:2.3:a:oracle:enterprise_data_quality:12.2.1.3.0:*:*:*:*:*:*:*
weblogic_server
Version:
10.3.6.0.0
CPE:
cpe:2.3:a:oracle:weblogic_server:10.3.6.0.0:*:*:*:*:*:*:*
policy_automation
Version:
12.2.6
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.6:*:*:*:*:*:*:*
retail_open_commerce_platform
Version:
5.3.0
CPE:
cpe:2.3:a:oracle:retail_open_commerce_platform:5.3.0:*:*:*:*:*:*:*
policy_automation_connector_for_siebel
Version:
10.4.6
CPE:
cpe:2.3:a:oracle:policy_automation_connector_for_siebel:10.4.6:*:*:*:*:*:*:*
identity_management_suite
Version:
11.1.2.3.0
CPE:
cpe:2.3:a:oracle:identity_management_suite:11.1.2.3.0:*:*:*:*:*:*:*
policy_automation
Version:
12.2.0
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.0:*:*:*:*:*:*:*
peoplesoft_enterprise_fin_install
Version:
9.2
CPE:
cpe:2.3:a:oracle:peoplesoft_enterprise_fin_install:9.2:*:*:*:*:*:*:*
bi_publisher
Version:
12.2.1.4.0
CPE:
cpe:2.3:a:oracle:bi_publisher:12.2.1.4.0:*:*:*:*:*:*:*
retail_service_backbone
Version:
15.0
CPE:
cpe:2.3:a:oracle:retail_service_backbone:15.0:*:*:*:*:*:*:*
insurance_calculation_engine
Version:
10.1.1
CPE:
cpe:2.3:a:oracle:insurance_calculation_engine:10.1.1:*:*:*:*:*:*:*
enterprise_manager_for_fusion_middleware
Version:
13.2.0.0
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_fusion_middleware:13.2.0.0:*:*:*:*:*:*:*
insurance_policy_administration
Version:
10.2
CPE:
cpe:2.3:a:oracle:insurance_policy_administration:10.2:*:*:*:*:*:*:*
retail_integration_bus
Version:
15.0
CPE:
cpe:2.3:a:oracle:retail_integration_bus:15.0:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.0
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.0:*:*:*:*:*:*:*
retail_service_backbone
Version:
14.1
CPE:
cpe:2.3:a:oracle:retail_service_backbone:14.1:*:*:*:*:*:*:*
primavera_gateway
Version:
17.12.7
CPE:
cpe:2.3:a:oracle:primavera_gateway:17.12.7:*:*:*:*:*:*:*
utilities_advanced_spatial_and_operational_analytics
Version:
2.7.0.1
CPE:
cpe:2.3:a:oracle:utilities_advanced_spatial_and_operational_analytics:2.7.0.1:*:*:*:*:*:*:*
bi_publisher
Version:
11.1.1.9.0
CPE:
cpe:2.3:a:oracle:bi_publisher:11.1.1.9.0:*:*:*:*:*:*:*
primavera_gateway
Version:
17.12.0
CPE:
cpe:2.3:a:oracle:primavera_gateway:17.12.0:*:*:*:*:*:*:*
flexcube_investor_servicing
Version:
14.0.0
CPE:
cpe:2.3:a:oracle:flexcube_investor_servicing:14.0.0:*:*:*:*:*:*:*
financial_services_hedge_management_and_ifrs_valuations
Version:
8.0.4
CPE:
cpe:2.3:a:oracle:financial_services_hedge_management_and_ifrs_valuations:8.0.4:*:*:*:*:*:*:*
enterprise_manager_for_oracle_database
Version:
12.1.0.8
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_oracle_database:12.1.0.8:*:*:*:*:*:*:*
banking_platform
Version:
2.6.2
CPE:
cpe:2.3:a:oracle:banking_platform:2.6.2:*:*:*:*:*:*:*
policy_automation
Version:
12.2.4
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.4:*:*:*:*:*:*:*
retail_extract_transform_and_load
Version:
13.2
CPE:
cpe:2.3:a:oracle:retail_extract_transform_and_load:13.2:*:*:*:*:*:*:*
policy_automation
Version:
12.2.9
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.9:*:*:*:*:*:*:*
weblogic_server
Version:
12.2.1.4.0
CPE:
cpe:2.3:a:oracle:weblogic_server:12.2.1.4.0:*:*:*:*:*:*:*
soa_suite
Version:
12.1.3.0.0
CPE:
cpe:2.3:a:oracle:soa_suite:12.1.3.0.0:*:*:*:*:*:*:*
retail_extract_transform_and_load
Version:
13.0
CPE:
cpe:2.3:a:oracle:retail_extract_transform_and_load:13.0:*:*:*:*:*:*:*
jdeveloper
Version:
12.2.1.3.0
CPE:
cpe:2.3:a:oracle:jdeveloper:12.2.1.3.0:*:*:*:*:*:*:*
weblogic_server
Version:
14.1.1.0.0
CPE:
cpe:2.3:a:oracle:weblogic_server:14.1.1.0.0:*:*:*:*:*:*:*
retail_extract_transform_and_load
Version:
13.1
CPE:
cpe:2.3:a:oracle:retail_extract_transform_and_load:13.1:*:*:*:*:*:*:*
enterprise_manager_for_fusion_middleware
Version:
12.1.0.5
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_fusion_middleware:12.1.0.5:*:*:*:*:*:*:*
insurance_rules_palette
Version:
11.0
CPE:
cpe:2.3:a:oracle:insurance_rules_palette:11.0:*:*:*:*:*:*:*
communications_service_broker
Version:
6.0
CPE:
cpe:2.3:a:oracle:communications_service_broker:6.0:*:*:*:*:*:*:*
policy_automation
Version:
12.1.0
CPE:
cpe:2.3:a:oracle:policy_automation:12.1.0:*:*:*:*:*:*:*
jd_edwards_enterpriseone_tools
Version:
4.0.1.0
CPE:
cpe:2.3:a:oracle:jd_edwards_enterpriseone_tools:4.0.1.0:*:*:*:*:*:*:*
financial_services_profitability_management
Version:
6.1.1
CPE:
cpe:2.3:a:oracle:financial_services_profitability_management:6.1.1:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.5
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.5:*:*:*:*:*:*:*
retail_clearance_optimization_engine
Version:
14.0.5
CPE:
cpe:2.3:a:oracle:retail_clearance_optimization_engine:14.0.5:*:*:*:*:*:*:*
enterprise_manager_for_mysql_database
Version:
12.1.0.4.0
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_mysql_database:12.1.0.4.0:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.2
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.2:*:*:*:*:*:*:*
flexcube_investor_servicing
Version:
12.0.4
CPE:
cpe:2.3:a:oracle:flexcube_investor_servicing:12.0.4:*:*:*:*:*:*:*
identity_manager_connector
Version:
9.0
CPE:
cpe:2.3:a:oracle:identity_manager_connector:9.0:*:*:*:*:*:*:*
insurance_policy_administration
Version:
11.0
CPE:
cpe:2.3:a:oracle:insurance_policy_administration:11.0:*:*:*:*:*:*:*
enterprise_manager_for_peoplesoft
Version:
13.2.1.1
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_peoplesoft:13.2.1.1:*:*:*:*:*:*:*
weblogic_server
Version:
12.1.3.0.0
CPE:
cpe:2.3:a:oracle:weblogic_server:12.1.3.0.0:*:*:*:*:*:*:*
communications_online_mediation_controller
Version:
6.1
CPE:
cpe:2.3:a:oracle:communications_online_mediation_controller:6.1:*:*:*:*:*:*:*
enterprise_manager_for_mysql_database
Version:
13.2
CPE:
cpe:2.3:a:oracle:enterprise_manager_for_mysql_database:13.2:*:*:*:*:*:*:*
insurance_policy_administration
Version:
10.0
CPE:
cpe:2.3:a:oracle:insurance_policy_administration:10.0:*:*:*:*:*:*:*
insurance_policy_administration
Version:
10.1
CPE:
cpe:2.3:a:oracle:insurance_policy_administration:10.1:*:*:*:*:*:*:*
rapid_planning
Version:
12.2
CPE:
cpe:2.3:a:oracle:rapid_planning:12.2:*:*:*:*:*:*:*
primavera_gateway
Version:
16.2.0
CPE:
cpe:2.3:a:oracle:primavera_gateway:16.2.0:*:*:*:*:*:*:*
policy_automation
Version:
12.2.5
CPE:
cpe:2.3:a:oracle:policy_automation:12.2.5:*:*:*:*:*:*:*
communications_pricing_design_center
Version:
11.1
CPE:
cpe:2.3:a:oracle:communications_pricing_design_center:11.1:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.9
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.9:*:*:*:*:*:*:*
primavera_gateway
Version:
17.12.6
CPE:
cpe:2.3:a:oracle:primavera_gateway:17.12.6:*:*:*:*:*:*:*
configuration_manager
Version:
12.1.2.0.5
CPE:
cpe:2.3:a:oracle:configuration_manager:12.1.2.0.5:*:*:*:*:*:*:*
policy_automation_for_mobile_devices
Version:
12.2.10
CPE:
cpe:2.3:a:oracle:policy_automation_for_mobile_devices:12.2.10:*:*:*:*:*:*:*
jdeveloper
Version:
11.1.1.9.0
CPE:
cpe:2.3:a:oracle:jdeveloper:11.1.1.9.0:*:*:*:*:*:*:*
banking_platform
Version:
2.6.0
CPE:
cpe:2.3:a:oracle:banking_platform:2.6.0:*:*:*:*:*:*:*
weblogic_server
Version:
12.2.1.3.0
CPE:
cpe:2.3:a:oracle:weblogic_server:12.2.1.3.0:*:*:*:*:*:*:*
primavera_gateway
Version:
17.12
CPE:
cpe:2.3:a:oracle:primavera_gateway:17.12:*:*:*:*:*:*:*
financial_services_loan_loss_forecasting_and_provisioning
Version:
8.0.4
CPE:
cpe:2.3:a:oracle:financial_services_loan_loss_forecasting_and_provisioning:8.0.4:*:*:*:*:*:*:*
goldengate_application_adapters
Version:
12.3.2.1.1
CPE:
cpe:2.3:a:oracle:goldengate_application_adapters:12.3.2.1.1:*:*:*:*:*:*:*
fuse
Version:
1.0
CPE:
cpe:2.3:a:redhat:fuse:1.0:*:*:*:*:*:*:*
enterprise_linux
Version:
7.0
CPE:
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:intel64:*
enterprise_linux
Version:
7.3
CPE:
cpe:2.3:o:redhat:enterprise_linux:7.3:*:*:*:*:*:*:*
enterprise_linux_server_eus
Version:
7.6
CPE:
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*
enterprise_linux_workstation
Version:
7.0
CPE:
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:x64:*
enterprise_linux_server_tus
Version:
7.4
CPE:
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*
enterprise_linux_server_eus
Version:
7.4
CPE:
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*
enterprise_linux
Version:
6.7
CPE:
cpe:2.3:o:redhat:enterprise_linux:6.7:*:*:*:*:*:*:*
enterprise_linux_server_aus
Version:
7.4
CPE:
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*
enterprise_linux
Version:
7.4
CPE:
cpe:2.3:o:redhat:enterprise_linux:7.4:*:*:*:*:*:*:*
enterprise_linux_server_tus
Version:
7.6
CPE:
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*
enterprise_linux
Version:
7.5
CPE:
cpe:2.3:o:redhat:enterprise_linux:7.5:*:*:*:*:*:*:*
enterprise_linux_server
Version:
7.0
CPE:
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:x64:*
enterprise_linux
Version:
6.0
CPE:
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:intel64:*
enterprise_linux
Version:
7.6
CPE:
cpe:2.3:o:redhat:enterprise_linux:7.6:*:*:*:*:*:*:*
enterprise_linux_server_aus
Version:
7.6
CPE:
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*
enterprise_linux_desktop
Version:
7.0
CPE:
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:x64:*
enterprise_linux_server_eus
Version:
7.5
CPE:
cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*
This vulnerability affects 189 software configuration(s). Ensure you patch all affected systems.
References & Resources
-
http://www.openwall.com/lists/oss-security/2019/12/19/2security@apache.org Mailing List Third Party Advisory
-
http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.htmlsecurity@apache.org Patch
-
http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.htmlsecurity@apache.org Patch
-
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlsecurity@apache.org Patch
-
http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.htmlsecurity@apache.org Patch Third Party Advisory
-
http://www.securityfocus.com/bid/97702security@apache.org Third Party Advisory VDB Entry
-
http://www.securitytracker.com/id/1040200security@apache.org Third Party Advisory VDB Entry
-
http://www.securitytracker.com/id/1041294security@apache.org Third Party Advisory VDB Entry
-
https://access.redhat.com/errata/RHSA-2017:1417security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:1801security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:1802security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2423security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2633security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2635security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2636security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2637security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2638security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2808security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2809security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2810security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2811security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2888security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2889security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:3244security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:3399security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:3400security@apache.org Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2019:1545security@apache.org Third Party Advisory
-
https://issues.apache.org/jira/browse/LOG4J2-1863security@apache.org Issue Tracking Vendor Advisory
-
https://lists.apache.org/thread.html/0dcca05274d20ef2d72584edcf8c917bbb13dbbd7eb35cae909d02e9%40%3Cdev.logging.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/277b4b5c2b0e06a825ccec565fa65bd671f35a4d58e3e2ec5d0618e1%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/44491fb9cc19acc901f7cff34acb7376619f15638439416e3e14761c%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/479471e6debd608c837b9815b76eab24676657d4444fcfd5ef96d6e6%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/6114ce566200d76e3cc45c521a62c2c5a4eac15738248f58a99f622c%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/84cc4266238e057b95eb95dfd8b29d46a2592e7672c12c92f68b2917%40%3Cannounce.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/8ab32b4c9f1826f20add7c40be08909de9f58a89dc1de9c09953f5ac%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/9317fd092b257a0815434b116a8af8daea6e920b6673f4fd5583d5fe%40%3Ccommits.druid.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/e8fb7d76a244ee997ba4b217d6171227f7c2521af8c7c5b16cba27bc%40%3Cdev.logging.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/eea03d504b36e8f870e8321d908e1def1addda16adda04327fe7c125%40%3Cdev.logging.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r0831e2e52a390758ce39a6193f82c11c295175adce6e6307de28c287%40%3Cissues.beam.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r18f1c010b554a3a2d761e8ffffd8674fd4747bcbcf16c643d708318c%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r1b103833cb5bc8466e24ff0ecc5e75b45a705334ab6a444e64e840a0%40%3Cissues.bookkeeper.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r23369fd603eb6d62d3b883a0a28d12052dcbd1d6d531137124cd7f83%40%3Cgithub.beam.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r2ce8d26154bea939536e6cf27ed02d3192bf5c5d04df885a80fe89b3%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r2ff63f210842a3c5e42f03a35d8f3a345134d073c80a04077341c211%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r3784834e80df2f284577a5596340fb84346c91a2dea6a073e65e3397%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r3a85514a518f3080ab1fc2652cfe122c2ccf67cfb32356acb1b08fe8%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r3d666e4e8905157f3c046d31398b04f2bfd4519e31f266de108c6919%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r4b25538be50126194cc646836c718b1a4d8f71bd9c912af5b59134ad%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r61590890edcc64140e0c606954b29a063c3d08a2b41d447256d51a78%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r681b4432d0605f327b68b9f8a42662993e699d04614de4851c35ffd1%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r746fbc3fc13aee292ae6851f7a5080f592fa3a67b983c6887cdb1fc5%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r7bcdc710857725c311b856c0b82cee6207178af5dcde1bd43d289826%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r94b5aae09c4bcff5d06cf641be17b00bd83ba7e10cad737bf16a1b8f%40%3Cgithub.beam.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/r9d5c1b558a15d374bd5abd2d3ae3ca7e50e796a0efdcf91e9c5b4cdd%40%3Cgithub.beam.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/ra38785cfc0e7f17f8e24bebf775dd032c033fadcaea29e5bc9fffc60%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/ra9a682bc0a8dff1c5cefdef31c7c25f096d9121207cf2d74e2fc563d%40%3Ccommits.logging.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/raedd12dc24412b3780432bf202a2618a21a727788543e5337a458ead%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rb1b29aee737e1c37fe1d48528cb0febac4f5deed51f5412e6fdfe2bf%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rbfa7a0742be4981a3f9356a23d0e1a5f2e1eabde32a1a3d8e41420f8%40%3Cgithub.beam.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rc1eaed7f7d774d5d02f66e49baced31e04827a1293d61a70bd003ca7%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rca24a281000fb681d7e26e5c031a21eb4b0593a7735f781b53dae4e2%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rcbb79023a7c8494cb389cd3d95420fa9e0d531ece0b780b8c1f99422%40%3Ccommits.doris.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rd5dbeee4808c0f2b9b51479b50de3cc6adb1072c332a200d9107f13e%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rdbd579dc223f06af826d7de340218ee2f80d8b43fa7e4decb2a63f44%40%3Cgithub.beam.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rdec0d8ac1f03e6905b0de2df1d5fcdb98b94556e4f6cccf7519fdb26%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/re8c21ed9dd218c217d242ffa90778428e446b082b5e1c29f567e8374%40%3Cissues.activemq.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rf1bbc0ea4a9f014cf94df9a12a6477d24a27f52741dbc87f2fd52ff2%40%3Cissues.geode.apache.org%3Esecurity@apache.org
-
https://lists.apache.org/thread.html/rf2567488cfc9212b42e34c6393cfa1c14e30e4838b98dda84d71041f%40%3Cdev.tika.apache.org%3Esecurity@apache.org
-
https://security.netapp.com/advisory/ntap-20180726-0002/security@apache.org Third Party Advisory
-
https://security.netapp.com/advisory/ntap-20181107-0002/security@apache.org Third Party Advisory
-
https://www.oracle.com/security-alerts/cpuApr2021.htmlsecurity@apache.org Third Party Advisory
-
https://www.oracle.com/security-alerts/cpuapr2020.htmlsecurity@apache.org Third Party Advisory
-
https://www.oracle.com/security-alerts/cpujan2020.htmlsecurity@apache.org Third Party Advisory
-
https://www.oracle.com/security-alerts/cpujan2021.htmlsecurity@apache.org Third Party Advisory
-
https://www.oracle.com/security-alerts/cpujan2022.htmlsecurity@apache.org Third Party Advisory
-
https://www.oracle.com/security-alerts/cpujul2020.htmlsecurity@apache.org Third Party Advisory
-
https://www.oracle.com/security-alerts/cpuoct2020.htmlsecurity@apache.org Third Party Advisory
-
https://www.oracle.com/security-alerts/cpuoct2021.htmlsecurity@apache.org Third Party Advisory
-
https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.htmlsecurity@apache.org Patch Third Party Advisory
-
https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.htmlsecurity@apache.org Patch Third Party Advisory
-
https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.htmlsecurity@apache.org Patch Third Party Advisory
-
https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.htmlsecurity@apache.org Patch Third Party Advisory
-
http://www.openwall.com/lists/oss-security/2019/12/19/2af854a3a-2127-422b-91ae-364da2661108 Mailing List Third Party Advisory
-
http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.htmlaf854a3a-2127-422b-91ae-364da2661108 Patch
-
http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.htmlaf854a3a-2127-422b-91ae-364da2661108 Patch
-
http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlaf854a3a-2127-422b-91ae-364da2661108 Patch
-
http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.htmlaf854a3a-2127-422b-91ae-364da2661108 Patch Third Party Advisory
-
http://www.securityfocus.com/bid/97702af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory VDB Entry
-
http://www.securitytracker.com/id/1040200af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory VDB Entry
-
http://www.securitytracker.com/id/1041294af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory VDB Entry
-
https://access.redhat.com/errata/RHSA-2017:1417af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:1801af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:1802af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2423af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2633af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2635af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2636af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2637af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2638af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2808af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2809af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2810af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2811af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2888af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:2889af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:3244af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:3399af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2017:3400af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://access.redhat.com/errata/RHSA-2019:1545af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://issues.apache.org/jira/browse/LOG4J2-1863af854a3a-2127-422b-91ae-364da2661108 Issue Tracking Vendor Advisory
-
https://lists.apache.org/thread.html/0dcca05274d20ef2d72584edcf8c917bbb13dbbd7eb35cae909d02e9%40%3Cdev.logging.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/277b4b5c2b0e06a825ccec565fa65bd671f35a4d58e3e2ec5d0618e1%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/44491fb9cc19acc901f7cff34acb7376619f15638439416e3e14761c%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/479471e6debd608c837b9815b76eab24676657d4444fcfd5ef96d6e6%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/6114ce566200d76e3cc45c521a62c2c5a4eac15738248f58a99f622c%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/84cc4266238e057b95eb95dfd8b29d46a2592e7672c12c92f68b2917%40%3Cannounce.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/8ab32b4c9f1826f20add7c40be08909de9f58a89dc1de9c09953f5ac%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/9317fd092b257a0815434b116a8af8daea6e920b6673f4fd5583d5fe%40%3Ccommits.druid.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/e8fb7d76a244ee997ba4b217d6171227f7c2521af8c7c5b16cba27bc%40%3Cdev.logging.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/eea03d504b36e8f870e8321d908e1def1addda16adda04327fe7c125%40%3Cdev.logging.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r0831e2e52a390758ce39a6193f82c11c295175adce6e6307de28c287%40%3Cissues.beam.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r18f1c010b554a3a2d761e8ffffd8674fd4747bcbcf16c643d708318c%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r1b103833cb5bc8466e24ff0ecc5e75b45a705334ab6a444e64e840a0%40%3Cissues.bookkeeper.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r23369fd603eb6d62d3b883a0a28d12052dcbd1d6d531137124cd7f83%40%3Cgithub.beam.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r2ce8d26154bea939536e6cf27ed02d3192bf5c5d04df885a80fe89b3%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r2ff63f210842a3c5e42f03a35d8f3a345134d073c80a04077341c211%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r3784834e80df2f284577a5596340fb84346c91a2dea6a073e65e3397%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r3a85514a518f3080ab1fc2652cfe122c2ccf67cfb32356acb1b08fe8%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r3d666e4e8905157f3c046d31398b04f2bfd4519e31f266de108c6919%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r4b25538be50126194cc646836c718b1a4d8f71bd9c912af5b59134ad%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r61590890edcc64140e0c606954b29a063c3d08a2b41d447256d51a78%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r681b4432d0605f327b68b9f8a42662993e699d04614de4851c35ffd1%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r746fbc3fc13aee292ae6851f7a5080f592fa3a67b983c6887cdb1fc5%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r7bcdc710857725c311b856c0b82cee6207178af5dcde1bd43d289826%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r94b5aae09c4bcff5d06cf641be17b00bd83ba7e10cad737bf16a1b8f%40%3Cgithub.beam.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/r9d5c1b558a15d374bd5abd2d3ae3ca7e50e796a0efdcf91e9c5b4cdd%40%3Cgithub.beam.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/ra38785cfc0e7f17f8e24bebf775dd032c033fadcaea29e5bc9fffc60%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/ra9a682bc0a8dff1c5cefdef31c7c25f096d9121207cf2d74e2fc563d%40%3Ccommits.logging.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/raedd12dc24412b3780432bf202a2618a21a727788543e5337a458ead%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rb1b29aee737e1c37fe1d48528cb0febac4f5deed51f5412e6fdfe2bf%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rbfa7a0742be4981a3f9356a23d0e1a5f2e1eabde32a1a3d8e41420f8%40%3Cgithub.beam.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rc1eaed7f7d774d5d02f66e49baced31e04827a1293d61a70bd003ca7%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rca24a281000fb681d7e26e5c031a21eb4b0593a7735f781b53dae4e2%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rcbb79023a7c8494cb389cd3d95420fa9e0d531ece0b780b8c1f99422%40%3Ccommits.doris.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rd5dbeee4808c0f2b9b51479b50de3cc6adb1072c332a200d9107f13e%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rdbd579dc223f06af826d7de340218ee2f80d8b43fa7e4decb2a63f44%40%3Cgithub.beam.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rdec0d8ac1f03e6905b0de2df1d5fcdb98b94556e4f6cccf7519fdb26%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/re8c21ed9dd218c217d242ffa90778428e446b082b5e1c29f567e8374%40%3Cissues.activemq.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rf1bbc0ea4a9f014cf94df9a12a6477d24a27f52741dbc87f2fd52ff2%40%3Cissues.geode.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://lists.apache.org/thread.html/rf2567488cfc9212b42e34c6393cfa1c14e30e4838b98dda84d71041f%40%3Cdev.tika.apache.org%3Eaf854a3a-2127-422b-91ae-364da2661108
-
https://security.netapp.com/advisory/ntap-20180726-0002/af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://security.netapp.com/advisory/ntap-20181107-0002/af854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://www.oracle.com/security-alerts/cpuApr2021.htmlaf854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://www.oracle.com/security-alerts/cpuapr2020.htmlaf854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://www.oracle.com/security-alerts/cpujan2020.htmlaf854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://www.oracle.com/security-alerts/cpujan2021.htmlaf854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://www.oracle.com/security-alerts/cpujan2022.htmlaf854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://www.oracle.com/security-alerts/cpujul2020.htmlaf854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://www.oracle.com/security-alerts/cpuoct2020.htmlaf854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://www.oracle.com/security-alerts/cpuoct2021.htmlaf854a3a-2127-422b-91ae-364da2661108 Third Party Advisory
-
https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.htmlaf854a3a-2127-422b-91ae-364da2661108 Patch Third Party Advisory
-
https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.htmlaf854a3a-2127-422b-91ae-364da2661108 Patch Third Party Advisory
-
https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.htmlaf854a3a-2127-422b-91ae-364da2661108 Patch Third Party Advisory
-
https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.htmlaf854a3a-2127-422b-91ae-364da2661108 Patch Third Party Advisory
Severity Details
9.8
out of 10.0
Critical
Weakness Type (CWE)
CWE-502
Top 25 #15
Deserialization of Untrusted Data
- Description
- The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
- Exploit Likelihood
- Medium
- Typical Severity
- Medium
- OWASP Top 10
- A08:2021-Software/Data Integrity Failures
- Abstraction Level
- Base
Key Information
- Published Date
- April 17, 2017
