vulnerability

CentOS Linux: CVE-2016-5003: Important: xmlrpc3 security update (Multiple Advisories)

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Oct 27, 2017
Added
Jun 5, 2018
Modified
May 25, 2023

Description

The Apache XML-RPC (aka ws-xmlrpc) library 3.1.3, as used in Apache Archiva, allows remote attackers to execute arbitrary code via a crafted serialized Java object in an element.

Solution(s)

centos-upgrade-xmlrpc-clientcentos-upgrade-xmlrpc-commoncentos-upgrade-xmlrpc-javadoccentos-upgrade-xmlrpc-servercentos-upgrade-xmlrpc3-clientcentos-upgrade-xmlrpc3-client-develcentos-upgrade-xmlrpc3-commoncentos-upgrade-xmlrpc3-common-develcentos-upgrade-xmlrpc3-javadoccentos-upgrade-xmlrpc3-servercentos-upgrade-xmlrpc3-server-devel
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.