vulnerability

Huawei EulerOS: CVE-2016-7050: resteasy-base security update

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Jun 8, 2017
Added
Nov 30, 2017
Modified
Aug 13, 2025

Description

It was discovered that under certain conditions RESTEasy could be forced to parse a request with SerializableProvider, resulting in deserialization of potentially untrusted data. An attacker could possibly use this flaw execute arbitrary code with the permissions of the application using RESTEasy.

Solutions

huawei-euleros-2_0_sp1-upgrade-resteasy-base-atom-providerhuawei-euleros-2_0_sp1-upgrade-resteasy-base-clienthuawei-euleros-2_0_sp1-upgrade-resteasy-base-jackson-providerhuawei-euleros-2_0_sp1-upgrade-resteasy-base-jaxb-providerhuawei-euleros-2_0_sp1-upgrade-resteasy-base-jaxrshuawei-euleros-2_0_sp1-upgrade-resteasy-base-jaxrs-apihuawei-euleros-2_0_sp1-upgrade-resteasy-base-jettison-provider
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.