Description
Apache Commons BCEL has a number of APIs that would normally only allow changing specific class characteristics. However, due to an out-of-bounds writing issue, these APIs can be used to produce arbitrary bytecode. This could be abused in applications that pass attacker-controllable data to those APIs, giving the attacker more control over the resulting bytecode than otherwise expected. Update to Apache Commons BCEL 6.6.0.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-97xg-phpr-rg8q | Apache Commons BCEL vulnerable to out-of-bounds write |
Ubuntu USN |
USN-7208-1 | Apache Commons BCEL vulnerability |
References
History
No history.
Subscriptions
Apache
Subscribe
Commons Bcel
Subscribe
Fedoraproject
Subscribe
Fedora
Subscribe
Redhat
Subscribe
Amq Streams
Subscribe
Enterprise Linux
Subscribe
Jboss Enterprise Bpms Platform
Subscribe
Jboss Fuse
Subscribe
Migration Toolkit Applications
Subscribe
Migration Toolkit Runtimes
Subscribe
Rhel Eus
Subscribe
Rhel Software Collections
Subscribe
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-03T13:19:05.457Z
Reserved: 2022-10-14T00:00:00.000Z
Link: CVE-2022-42920
No data.
Status : Modified
Published: 2022-11-07T13:15:10.270
Modified: 2024-11-21T07:25:35.887
Link: CVE-2022-42920
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA
Ubuntu USN