|
|
Log in / Subscribe / Register

bsh: code execution

Package(s):bsh CVE #(s):CVE-2016-2510
Created:February 29, 2016 Updated:August 1, 2016
Description: From the Debian LTS advisory:

An application that includes BeanShell on the classpath may be vulnerable if another part of the application uses Java serialization or XStream to deserialize data from an untrusted source. A vulnerable application could be exploited for remote code execution, including executing arbitrary shell commands.

Alerts:
Gentoo 201607-17 bsh 2016-07-30
openSUSE openSUSE-SU-2016:0833-1 bsh2 2016-03-19
openSUSE openSUSE-SU-2016:0788-1 bsh2 2016-03-16
SUSE SUSE-SU-2016:0699-1 bsh2 2016-03-09
SUSE SUSE-SU-2016:0700-1 bsh2 2016-03-09
Ubuntu USN-2923-1 bsh 2016-03-08
Debian DSA-3504-1 bsh 2016-03-04
Debian-LTS DLA-443-1 bsh 2016-02-29

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds