QID 980949
QID 980949: Java (maven) Security Update for org.apache.storm:storm-core (GHSA-q35p-chc6-7x57)
Apache Storm version 1.0.6 and earlier, 1.2.1 and earlier, and version 1.1.2 and earlier expose a vulnerability that could allow a user to impersonate another user when communicating with some Storm Daemons.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-q35p-chc6-7x57 for updates pertaining to this vulnerability.
Vendor References
- GHSA-q35p-chc6-7x57 -
github.com/advisories/GHSA-q35p-chc6-7x57
CVEs related to QID 980949
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-q35p-chc6-7x57 | org.apache.storm:storm-core |
|