CVE-2020-1945
14.05.2020, 16:15
Apache Ant 1.1 to 1.9.14 and 1.10.0 to 1.10.7 uses the default temporary directory identified by the Java system property java.io.tmpdir for several tasks and may thus leak sensitive information. The fixcrlf and replaceregexp tasks also copy files from the temporary directory back into the build tree allowing an attacker to inject modified source files into the build process.Enginsight
Vendor | Product | Version |
---|---|---|
apache | ant | 1.1 ≤ 𝑥 ≤ 1.9.14 |
apache | ant | 1.10.0 ≤ 𝑥 ≤ 1.10.7 |
canonical | ubuntu_linux | 19.10 |
opensuse | leap | 15.2 |
oracle | agile_engineering_data_management | 6.2.1.0 |
oracle | banking_enterprise_collections | 2.7.0 ≤ 𝑥 ≤ 2.9.0 |
oracle | banking_liquidity_management | 14.0.0 ≤ 𝑥 ≤ 14.4.0 |
oracle | banking_platform | 2.4.0 ≤ 𝑥 ≤ 2.9.0 |
oracle | business_process_management_suite | 12.2.1.3.0 |
oracle | business_process_management_suite | 12.2.1.4.0 |
oracle | category_management_planning_\&_optimization | 15.0.3 |
oracle | communications_asap | 7.3 |
oracle | communications_diameter_signaling_router | 8.0.0 ≤ 𝑥 ≤ 8.2.2 |
oracle | communications_metasolv_solution | 6.3.0 |
oracle | communications_order_and_service_management | 7.3 |
oracle | communications_order_and_service_management | 7.4 |
oracle | data_integrator | 12.2.1.3.0 |
oracle | data_integrator | 12.2.1.4.0 |
oracle | endeca_information_discovery_studio | 3.2.0 |
oracle | enterprise_manager_ops_center | 12.4.0.0 |
oracle | enterprise_repository | 11.1.1.7.0 |
oracle | financial_services_analytical_applications_infrastructure | 8.0.6 ≤ 𝑥 ≤ 8.1.0 |
oracle | flexcube_investor_servicing | 12.1.0 |
oracle | flexcube_investor_servicing | 12.3.0 |
oracle | flexcube_investor_servicing | 12.4.0 |
oracle | flexcube_investor_servicing | 14.0.0 |
oracle | flexcube_investor_servicing | 14.1.0 |
oracle | flexcube_private_banking | 12.0.0 |
oracle | flexcube_private_banking | 12.1.0 |
oracle | health_sciences_information_manager | 3.0 ≤ 𝑥 ≤ 3.0.2 |
oracle | primavera_gateway | 16.2.0 ≤ 𝑥 ≤ 16.2.11 |
oracle | primavera_gateway | 17.12.0 ≤ 𝑥 ≤ 17.12.7 |
oracle | primavera_unifier | 17.7 ≤ 𝑥 ≤ 17.12 |
oracle | primavera_unifier | 16.1 |
oracle | primavera_unifier | 16.2 |
oracle | primavera_unifier | 18.8 |
oracle | primavera_unifier | 19.12 |
oracle | rapid_planning | 12.1 |
oracle | rapid_planning | 12.2 |
oracle | real-time_decision_server | 3.2.1.0 |
oracle | retail_advanced_inventory_planning | 14.1 |
oracle | retail_advanced_inventory_planning | 15.0 |
oracle | retail_advanced_inventory_planning | 16.0 |
oracle | retail_assortment_planning | 15.0.3 |
oracle | retail_assortment_planning | 16.0.3 |
oracle | retail_back_office | 14.0 |
oracle | retail_back_office | 14.1 |
oracle | retail_bulk_data_integration | 15.0 |
oracle | retail_bulk_data_integration | 16.0 |
oracle | retail_bulk_data_integration | 16.0.3.0 |
oracle | retail_bulk_data_integration | 19.0.1 |
oracle | retail_central_office | 14.0 |
oracle | retail_central_office | 14.1 |
oracle | retail_data_extractor_for_merchandising | 1.9 |
oracle | retail_data_extractor_for_merchandising | 1.10 |
oracle | retail_extract_transform_and_load | 13.2.5 |
oracle | retail_extract_transform_and_load | 13.2.8 |
oracle | retail_financial_integration | 14.1.3.2 |
oracle | retail_financial_integration | 15.0 |
oracle | retail_financial_integration | 15.0.4.0 |
oracle | retail_financial_integration | 16.0 |
oracle | retail_financial_integration | 16.0.3.0 |
oracle | retail_integration_bus | 14.1 |
oracle | retail_integration_bus | 14.1.3.2 |
oracle | retail_integration_bus | 15.0 |
oracle | retail_integration_bus | 15.0.4.0 |
oracle | retail_integration_bus | 16.0 |
oracle | retail_integration_bus | 16.0.3.0 |
oracle | retail_integration_bus | 19.0.1.0 |
oracle | retail_item_planning | 15.0.3 |
oracle | retail_macro_space_optimization | 15.0.3 |
oracle | retail_merchandise_financial_planning | 15.0.3 |
oracle | retail_merchandising_system | 19.0.1 |
oracle | retail_point-of-service | 14.0 |
oracle | retail_point-of-service | 14.1 |
oracle | retail_point-of-service | 15.0 |
oracle | retail_point-of-service | 16.0 |
oracle | retail_predictive_application_server | 14.0.3 |
oracle | retail_predictive_application_server | 14.1.3 |
oracle | retail_predictive_application_server | 15.0.3 |
oracle | retail_predictive_application_server | 16.0.3 |
oracle | retail_predictive_application_server | 16.0.3.0 |
oracle | retail_regular_price_optimization | 15.0.3 |
oracle | retail_regular_price_optimization | 16.0.3 |
oracle | retail_replenishment_optimization | 15.0.3 |
oracle | retail_returns_management | 14.0 |
oracle | retail_returns_management | 14.1 |
oracle | retail_service_backbone | 14.1.3.2 |
oracle | retail_service_backbone | 15.0 |
oracle | retail_service_backbone | 15.0.4.0 |
oracle | retail_service_backbone | 16.0 |
oracle | retail_service_backbone | 16.0.3.0 |
oracle | retail_service_backbone | 19.0.1.0 |
oracle | retail_size_profile_optimization | 15.0.3 |
oracle | retail_size_profile_optimization | 16.0.3 |
oracle | retail_store_inventory_management | 14.0.4 |
oracle | retail_store_inventory_management | 14.1 |
oracle | retail_store_inventory_management | 14.1.3 |
oracle | retail_store_inventory_management | 15.0 |
oracle | retail_store_inventory_management | 15.0.3 |
oracle | retail_store_inventory_management | 16.0 |
oracle | retail_store_inventory_management | 16.0.3 |
oracle | retail_xstore_point_of_service | 15.0.4 |
oracle | retail_xstore_point_of_service | 16.0.6 |
oracle | retail_xstore_point_of_service | 17.0.4 |
oracle | retail_xstore_point_of_service | 18.0.3 |
oracle | retail_xstore_point_of_service | 19.0.2 |
oracle | timesten_in-memory_database | 𝑥 < 11.2.2.8.27 |
oracle | timesten_in-memory_database | 11.2.2.8.49 |
oracle | utilities_framework | 4.3.0.1.0 ≤ 𝑥 ≤ 4.3.0.6.0 |
oracle | utilities_framework | 2.2.0.0.0 |
oracle | utilities_framework | 4.2.0.2.0 |
oracle | utilities_framework | 4.2.0.3.0 |
oracle | utilities_framework | 4.4.0.0.0 |
oracle | utilities_framework | 4.4.0.2.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
ant |
|
Common Weakness Enumeration
References