GHSA-xx65-cc7g-9pfp

    Dashboard / Vulnerabilities / GHSA-xx65-cc7g-9pfp

    GHSA-xx65-cc7g-9pfp

    Published: 18 Oct 2018Last Modified: 8 Nov 2023
    Aliases:

    Summary: Moderate severity vulnerability that affects org.springframework.boot:spring-boot

    Details: Spring Boot supports an embedded launch script that can be used to easily run the application as a systemd or init.d linux service. The script included with Spring Boot 1.5.9 and earlier and 2.0.0.M1 through 2.0.0.M7 is susceptible to a symlink attack which allows the "run_user" to overwrite and take ownership of any file on the same system. In order to instigate the attack, the application must be installed as a service and the "run_user" requires shell access to the server. Spring Boot application that are not installed as a service, or are not using the embedded launch script are not susceptible.

    Affected packages

    Package

    Name: org.springframework.boot:spring-boot

    Purl: pkg:maven/org.springframework.boot/spring-boot

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 1.5.0
    Fixed -1.5.10

    Affected versions

    1.5.0.RELEASE
    1.5.1.RELEASE
    1.5.2.RELEASE
    1.5.3.RELEASE
    1.5.4.RELEASE
    1.5.5.RELEASE
    1.5.6.RELEASE
    1.5.7.RELEASE
    1.5.8.RELEASE
    1.5.9.RELEASE

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High