openSUSE-SU-2019:2058-1
Dashboard / Vulnerabilities / openSUSE-SU-2019:2058-1
openSUSE-SU-2019:2058-1
Summary: Security update for apache-commons-beanutils
Details: This update for apache-commons-beanutils fixes the following issues: Security issue fixed: - CVE-2019-10086: Added special BeanIntrospector class which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects (bsc#1146657). This update was imported from the SUSE:SLE-15:Update update project.
References: https://lists.opensuse.org/archives/list/[email protected]/thread/ZY7XA5ODCMNPHIE2KXBFLLPP6RFCHE62/#ZY7XA5ODCMNPHIE2KXBFLLPP6RFCHE62, https://bugzilla.suse.com/1146657, https://www.suse.com/security/cve/CVE-2019-10086
Affected packages
Package
Name: apache-commons-beanutils
Purl: pkg:rpm/opensuse/apache-commons-beanutils&distro=openSUSE%20Leap%2015.0
Affected ranges
Type: ECOSYSTEM
Events:
