Sesame Unauthorized Repository Access Vulnerability
BID:10239
Info
Sesame Unauthorized Repository Access Vulnerability
| Bugtraq ID: | 10239 |
| Class: | Environment Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 29 2004 12:00AM |
| Updated: | Apr 29 2004 12:00AM |
| Credit: | This issue was disclosed by the vendor in the referenced change log. |
| Vulnerable: |
Sesame RDF container 1.0 PRE-4 Sesame RDF container 1.0 PRE-3 Sesame RDF container 1.0 PRE-2 Sesame RDF container 1.0 PRE-1 Sesame RDF container 1.0 |
| Not Vulnerable: |
Sesame RDF container 1.0.1 |
Discussion
Sesame Unauthorized Repository Access Vulnerability
It has been reported that the Sesame RDF repository application is prone to an unauthorized repository access vulnerability. This issue is due to a failure of the application to properly secure repository contents in memory once they have been accessed.
This issue might allow an attacker to gain access to other users repositories; potentially leading to the disclosure of sensitive information.
It has been reported that the Sesame RDF repository application is prone to an unauthorized repository access vulnerability. This issue is due to a failure of the application to properly secure repository contents in memory once they have been accessed.
This issue might allow an attacker to gain access to other users repositories; potentially leading to the disclosure of sensitive information.
Exploit / POC
Sesame Unauthorized Repository Access Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Sesame Unauthorized Repository Access Vulnerability
Solution:
The vendor has released an upgrade dealing with this issue.
Sesame RDF container 1.0 PRE-1
Sesame RDF container 1.0 PRE-3
Sesame RDF container 1.0 PRE-2
Sesame RDF container 1.0 PRE-4
Sesame RDF container 1.0
Solution:
The vendor has released an upgrade dealing with this issue.
Sesame RDF container 1.0 PRE-1
-
Sesame sesame-1.0.1-bin.tar.gz
http://heanet.dl.sourceforge.net/sourceforge/sesame/sesame-1.0.1-bin.t ar.gz
Sesame RDF container 1.0 PRE-3
-
Sesame sesame-1.0.1-bin.tar.gz
http://heanet.dl.sourceforge.net/sourceforge/sesame/sesame-1.0.1-bin.t ar.gz
Sesame RDF container 1.0 PRE-2
-
Sesame sesame-1.0.1-bin.tar.gz
http://heanet.dl.sourceforge.net/sourceforge/sesame/sesame-1.0.1-bin.t ar.gz
Sesame RDF container 1.0 PRE-4
-
Sesame sesame-1.0.1-bin.tar.gz
http://heanet.dl.sourceforge.net/sourceforge/sesame/sesame-1.0.1-bin.t ar.gz
Sesame RDF container 1.0
-
Sesame sesame-1.0.1-bin.tar.gz
http://heanet.dl.sourceforge.net/sourceforge/sesame/sesame-1.0.1-bin.t ar.gz
References
Sesame Unauthorized Repository Access Vulnerability
References:
References:
- Product 1.0.1 changelog (Sesame)
- Project Home Page (Sesame)