Required CVE Record Information
Description
Apache Ignite uses H2 database to build SQL distributed execution engine. H2 provides SQL functions which could be used by attacker to access to a filesystem.
References 10 Total
- openwall.com: [oss-security] 20200603 [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-list
- lists.apache.org: [ignite-user] 20200603 RE: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-list
- lists.apache.org: [ignite-dev] 20200603 RE: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-list
- lists.apache.org: [ignite-dev] 20200605 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-list
- lists.apache.org: [ignite-dev] 20200608 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-list
- lists.apache.org: [ignite-user] 20200609 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-list
- lists.apache.org: [ignite-dev] 20200615 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-list
- lists.apache.org: [ignite-user] 20200615 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-list
- https://www.oracle.com/security-alerts/cpujan2022.html
- https://lists.apache.org/thread.html/r1933faf8a26c431f38a5f8dbbfab80254454e54e33a79be474b67dc4%40%3Cdev.ignite.apache.org%3E
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 10 Total
- openwall.com: [oss-security] 20200603 [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-listx_transferred
- lists.apache.org: [ignite-user] 20200603 RE: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-listx_transferred
- lists.apache.org: [ignite-dev] 20200603 RE: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-listx_transferred
- lists.apache.org: [ignite-dev] 20200605 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-listx_transferred
- lists.apache.org: [ignite-dev] 20200608 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-listx_transferred
- lists.apache.org: [ignite-user] 20200609 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-listx_transferred
- lists.apache.org: [ignite-dev] 20200615 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-listx_transferred
- lists.apache.org: [ignite-user] 20200615 Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability mailing-listx_transferred
- https://www.oracle.com/security-alerts/cpujan2022.html x_transferred
- https://lists.apache.org/thread.html/r1933faf8a26c431f38a5f8dbbfab80254454e54e33a79be474b67dc4%40%3Cdev.ignite.apache.org%3E x_transferred