CVE-2017-7536

EUVD-2020-0525
In Hibernate Validator 5.2.x before 5.2.5 final, 5.3.x, and 5.4.x, it was found that when the security manager's reflective permissions, which allows it to access the private members of the class, are granted to Hibernate Validator, a potential privilege escalation can occur. By allowing the calling code to access those private members without the permission an attacker may be able to validate an invalid instance and access the private member value via ConstraintViolation#getInvalidValue().
Unsafe Reflection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7 HIGH
LOCAL
HIGH
LOW
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 28%
Affected Products (NVD)
VendorProductVersion
redhathibernate_validator
5.2.0 ≤
𝑥
< 5.2.5
redhathibernate_validator
5.3.0 ≤
𝑥
< 5.3.6
redhathibernate_validator
5.4.0 ≤
𝑥
< 5.4.2
redhatsatellite
6.4
redhatsatellite_capsule
6.4
redhatjboss_enterprise_application_platform
6.0.0
redhatjboss_enterprise_application_platform
6.4.0
redhatjboss_enterprise_application_platform
7.0
redhatjboss_enterprise_application_platform
7.1
redhatvirtualization
4.0
redhatvirtualization_host
4.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
libhibernate-validator-java
bookworm
5.3.6-2
fixed
bullseye
5.3.6-1
fixed
jessie
not-affected
sid
5.3.6-3
fixed
trixie
5.3.6-3
fixed
wheezy
not-affected
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libhibernate-validator-java
artful
ignored
bionic
not-affected
cosmic
not-affected
trusty
dne
xenial
not-affected
zesty
ignored
References