漏洞信息详情
Apache Batik 代码问题漏洞
漏洞简介
Apache XML Graphics Batik是美国阿帕奇(Apache)基金会的一套基于Java的主要用于处理SVG格式图像的应用程序。
Apache XML Graphics Batik 存在代码问题漏洞,该漏洞源于不正确的输入验证。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://xmlgraphics.apache.org/security.html
参考网址
来源:MISC
链接:https://xmlgraphics.apache.org/security.html
来源:FEDORA
链接:https://lists.fedoraproject.org/archives/list/[email protected]/message/JEDID4DAVPECE6O4QQCSIS75BLLBUUAM/
来源:FEDORA
链接:https://lists.fedoraproject.org/archives/list/[email protected]/message/W7EAYO5XIHD6OIEA3HPK64UDDBSLNAC5/
来源:N/A
链接:https://www.oracle.com//security-alerts/cpujul2021.html
来源:MLIST
链接:https://lists.apache.org/thread.html/r2877ae10e8be56a3c52d03e373512ddd32f16b863f24c2e22f5a5ba2@%3Cdev.poi.apache.org%3E
来源:MLIST
链接:https://lists.apache.org/thread.html/r588d05a0790b40a0eb81088252e1e8c1efb99706631421f17038eb05@%3Cdev.poi.apache.org%3E
来源:MISC
链接:https://www.oracle.com/security-alerts/cpuoct2021.html
来源:MISC
链接:https://www.oracle.com/security-alerts/cpuApr2021.html
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021042315
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021042514
来源:www.oracle.com
链接:https://www.oracle.com/security-alerts/cpuapr2021.html
来源:www.oracle.com
链接:https://www.oracle.com/security-alerts/cpuoct2021.html
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2020-11987
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Apache-Batik-information-disclosure-via-NodePickerPanel-SSRF-35102
来源:www.oracle.com
链接:https://www.oracle.com/security-alerts/cpujul2021.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.2525
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021072125
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-ibm-qradar-siem-is-vulnerable-to-using-components-with-known-vulnerabilities-10/
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021072775
来源:www.cybersecurity-help.cz
链接:https://www.cybersecurity-help.cz/vdb/SB2021042638
受影响实体
暂无
补丁
- Apache Batik 代码问题漏洞的修复措施<!--2021-2-24-->
还没有评论,来说两句吧...