Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclosure to other local users. This issue affects Apache James MIME4J version 0.8.8 and prior versions.
We recommend users to upgrade to MIME4j version 0.8.9 or later.
We recommend users to upgrade to MIME4j version 0.8.9 or later.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0529 | Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclosure to other local users. This issue affects Apache James MIME4J version 0.8.8 and prior versions. We recommend users to upgrade to MIME4j version 0.8.9 or later. |
Github GHSA |
GHSA-q84x-3476-8ff2 | Apache James MIME4J vulnerable to information disclosure to local users |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 09 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2025-04-09T19:32:09.206Z
Reserved: 2022-11-22T08:49:26.227Z
Link: CVE-2022-45787
Updated: 2024-08-03T14:17:04.186Z
Status : Modified
Published: 2023-01-06T10:15:10.383
Modified: 2025-04-09T20:15:22.730
Link: CVE-2022-45787
OpenCVE Enrichment
No data.
EUVD
Github GHSA