geronimo-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Jarek Gawor (JIRA)" <j...@apache.org>
Subject [jira] [Created] (GERONIMO-6477) Misconfigured RMI classloader
Date Mon, 01 Jul 2013 16:04:21 GMT
Jarek Gawor created GERONIMO-6477:
-------------------------------------

             Summary: Misconfigured RMI classloader
                 Key: GERONIMO-6477
                 URL: https://issues.apache.org/jira/browse/GERONIMO-6477
             Project: Geronimo
          Issue Type: Bug
      Security Level: public (Regular issues)
          Components: core
    Affects Versions: 3.0-beta-1, 3.0.0, 3.0-M1
            Reporter: Jarek Gawor
            Assignee: Jarek Gawor
             Fix For: 3.0.1


A misconfigured RMI classloader in Apache Geronimo 3.0 may enable an attacker to send a serialized
object via JMX that could compromise the system.


--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira

Mime
View raw message