Description
A bad credential handling in the remote assets API for Bazel versions prior to 5.3.2 and 4.2.3 sends all user-provided credentials instead of only the required ones for the requests. We recommend upgrading to versions later than or equal to 5.3.2 or 4.2.3.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-42846 | A bad credential handling in the remote assets API for Bazel versions prior to 5.3.2 and 4.2.3 sends all user-provided credentials instead of only the required ones for the requests. We recommend upgrading to versions later than or equal to 5.3.2 or 4.2.3. |
References
History
No history.
Status: PUBLISHED
Assigner: Google
Published:
Updated: 2024-08-03T01:14:01.488Z
Reserved: 2022-10-12T00:00:00.000Z
Link: CVE-2022-3474
Updated: 2024-08-03T01:14:01.488Z
Status : Modified
Published: 2022-10-26T19:15:16.800
Modified: 2024-11-21T07:19:36.710
Link: CVE-2022-3474
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD