CVE-2023-0482
17.02.2023, 22:15
In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround classes which creates temp files with insecure permissions that could be read by a local user.Enginsight
| Vendor | Product | Version |
|---|---|---|
| redhat | resteasy | 3.15.4 |
| redhat | resteasy | 4.7.7 |
| redhat | resteasy | 5.0.5 |
| redhat | resteasy | 6.2.2 |
| netapp | active_iq_unified_manager | - |
| netapp | active_iq_unified_manager | - |
| netapp | active_iq_unified_manager | - |
| netapp | oncommand_workflow_automation | - |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| resteasy |
| ||||||||||||||||||||
| resteasy3.0 |
|
Common Weakness Enumeration
References