GHSA-98hq-4wmw-98w9

    Dashboard / Vulnerabilities / GHSA-98hq-4wmw-98w9

    GHSA-98hq-4wmw-98w9

    Published: 10 Feb 2023Last Modified: 8 Jul 2026

    Summary: Arbitrary code execution in de.tum.in.ase:artemis-java-test-sandbox

    Details: ### Summary Because of the missing `checkLink(String)` override in the SecurityManager, students can load libraries and execute arbitrary code. ### Details Using `System.load(String)` or `System.loadLibrary​(String)` students can load and execute arbitrary code. ```java private static native void start(List<String> args); public static void main(String[] args) { System.load(new File("path_to_lib.so").getAbsolutePath()); start(List.of(args)); } ``` Adding this to the security manager (and a translation) should fix the issue: ```java @Override public void checkExec(String cmd) { try { if (enterPublicInterface()) return; throw new SecurityException(localized("security.error_link")); //$NON-NLS-1$ } finally { exitPublicInterface(); } } ``` ### PoC See details. ### Impact Arbitrary code execution.

    Affected packages

    Package

    Name: de.tum.in.ase:artemis-java-test-sandbox

    Purl: pkg:maven/de.tum.in.ase/artemis-java-test-sandbox

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -1.11.2

    Affected versions

    1.0.0
    1.0.1

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    GHSA-98hq-4wmw-98w9 | CVE-DB