CGA-xfmx-f393-gwc7
Dashboard / Vulnerabilities / CGA-xfmx-f393-gwc7
CGA-xfmx-f393-gwc7
Summary:
Details:
References: https://infosecwriteups.com/%EF%B8%8F-inside-the-160-comment-fight-to-fix-snakeyamls-rce-default-1a20c5ca4d4c, http://packetstormsecurity.com/files/175095/PyTorch-Model-Server-Registration-Deserialization-Remote-Code-Execution.html, https://confluence.atlassian.com/security/cve-2022-1471-snakeyaml-library-rce-vulnerability-in-multiple-products-1296171009.html, https://groups.google.com/g/kubernetes-security-announce/c/mwrakFaEdnc, http://www.openwall.com/lists/oss-security/2023/11/19/1, https://security.netapp.com/advisory/ntap-20230818-0015/, https://security.netapp.com/advisory/ntap-20240621-0006/, https://bitbucket.org/snakeyaml/snakeyaml/issues/561/cve-2022-1471-vulnerability-in#comment-64581479, https://www.github.com/mbechler/marshalsec/blob/master/marshalsec.pdf?raw=true, https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/1xxx/CVE-2022-1471.json, https://github.com/google/security-research/security/advisories/GHSA-mjmj-j48q-9wg2, https://nvd.nist.gov/vuln/detail/CVE-2022-1471, https://github.com/mbechler/marshalsec
Affected packages
Package
Name: eco-java-gradle-4.9
Purl: pkg:apk/chainguard/eco-java-gradle-4.9?arch=aarch64
Affected ranges
Type: ECOSYSTEM
Events:
