Forums

Skip to content

Advanced search
  • Quick links
    • Unanswered topics
    • Active topics
    • Search
  • FAQ
  • Login
  • Register
  • Board index Assistance News & Announcements
  • Search

[ GLSA 202107-39 ] Apache Commons FileUpload

Read this before submitting your first post to any forum
Post Reply
Advanced search
1 post • Page 1 of 1
Author
Message
GLSA
Advocate
Advocate
Posts: 2663
Joined: Wed May 12, 2004 4:41 pm

[ GLSA 202107-39 ] Apache Commons FileUpload

  • Quote

Post by GLSA » Sat Jul 17, 2021 6:26 am

Gentoo Linux Security Advisory

Title: Apache Commons FileUpload: Multiple vulnerabilities ([glsa=202107-39]GLSA 202107-39[/glsa])
Severity: low
Exploitable: remote
Date: 2021-07-17
Bug(s): #739350
ID: 202107-39

Synopsis

Multiple vulnerabilities have been found in Apache Commons
FileUpload, the worst of which could result in a Denial of Service
condition.


Background

The Apache Commons FileUpload package makes it easy to add robust,
high-performance, file upload capability to your servlets and web
applications.


Affected Packages

Package: dev-java/commons-fileupload
Vulnerable: <= 1.3
Architectures: All supported architectures


Description

Multiple vulnerabilities have been discovered in Apache Commons
FileUpload. Please review the CVE identifiers referenced below for
details.


Impact

Please review the referenced CVE identifiers for details.

Workaround

There is no known workaround at this time.

Resolution

Gentoo has discontinued support for Apache Commons FileUpload. We
recommend that users unmerge it:

Code: Select all

# emerge --ask --depclean "dev-java/commons-fileupload"
    
NOTE: The Gentoo developer(s) maintaining Apache Commons FileUpload have
discontinued support at this time. It may be possible that a new Gentoo
developer will update Apache Commons FileUpload at a later date. We do
not have a suggestion for a replacement at this time.


References

CVE-2013-0248
CVE-2014-0050
CVE-2016-3092
Last edited by GLSA on Sat Jan 22, 2022 5:11 am, edited 2 times in total.
Top
Post Reply
1 post • Page 1 of 1

Return to “News & Announcements”

Jump to
  • Assistance
  • ↳   News & Announcements
  • ↳   Frequently Asked Questions
  • ↳   Installing Gentoo
  • ↳   Multimedia
  • ↳   Desktop Environments
  • ↳   Networking & Security
  • ↳   Kernel & Hardware
  • ↳   Portage & Programming
  • ↳   Gamers & Players
  • ↳   Other Things Gentoo
  • ↳   Unsupported Software
  • Discussion & Documentation
  • ↳   Documentation, Tips & Tricks
  • ↳   Gentoo Chat
  • ↳   Gentoo Forums Feedback
  • ↳   Duplicate Threads
  • International Gentoo Users
  • ↳   中文 (Chinese)
  • ↳   Dutch
  • ↳   Finnish
  • ↳   French
  • ↳   Deutsches Forum (German)
  • ↳   Diskussionsforum
  • ↳   Deutsche Dokumentation
  • ↳   Greek
  • ↳   Forum italiano (Italian)
  • ↳   Forum di discussione italiano
  • ↳   Risorse italiane (documentazione e tools)
  • ↳   Polskie forum (Polish)
  • ↳   Instalacja i sprzęt
  • ↳   Polish OTW
  • ↳   Portuguese
  • ↳   Documentação, Ferramentas e Dicas
  • ↳   Russian
  • ↳   Scandinavian
  • ↳   Spanish
  • ↳   Other Languages
  • Architectures & Platforms
  • ↳   Gentoo on ARM
  • ↳   Gentoo on PPC
  • ↳   Gentoo on Sparc
  • ↳   Gentoo on Alternative Architectures
  • ↳   Gentoo on AMD64
  • ↳   Gentoo for Mac OS X (Portage for Mac OS X)
  • Board index
  • All times are UTC
  • Delete cookies

© 2001–2026 Gentoo Foundation, Inc.

Powered by phpBB® Forum Software © phpBB Limited

Privacy Policy

 

 

magic