QID 981975
QID 981975: Java (maven) Security Update for net.sf.robocode:robocode.api (GHSA-q2xp-75m7-gv52)
Robocode through 1.9.3.5 allows remote attackers to cause external service interaction (DNS), as demonstrated by a query for a unique subdomain name within an attacker-controlled DNS zone, because of a .openStream call within java.net.URL.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-q2xp-75m7-gv52 for updates pertaining to this vulnerability.
Vendor References
- GHSA-q2xp-75m7-gv52 -
github.com/advisories/GHSA-q2xp-75m7-gv52
CVEs related to QID 981975
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-q2xp-75m7-gv52 | net.sf.robocode:robocode.api |
|