CVE-2023-0482
17.02.2023, 22:15
In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround classes which creates temp files with insecure permissions that could be read by a local user.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | resteasy | 3.15.4 |
redhat | resteasy | 4.7.7 |
redhat | resteasy | 5.0.5 |
redhat | resteasy | 6.2.2 |
netapp | active_iq_unified_manager | - |
netapp | active_iq_unified_manager | - |
netapp | active_iq_unified_manager | - |
netapp | oncommand_workflow_automation | - |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
resteasy |
| ||||||||||||||||||||
resteasy3.0 |
|
Common Weakness Enumeration
References