Back to bug 1393607

Who When What Removed Added
Hooman Broujerdi 2016-11-10 00:20:24 UTC Blocks 1391371
Tomas Hoger 2016-11-10 09:00:17 UTC Summary CVE-2016-9177 Directory traversal vulnerability in Spark 2.5 CVE-2016-9177 Spark: Directory traversal vulnerability in version 2.5
Hooman Broujerdi 2017-02-27 01:42:38 UTC Doc Text A path traversal issue was found in Spark version 2.5 and potentially earlier versions. The vulnerability resides in the functionality to serve static files where there's no protection against directory traversal attacks. This could allow attackers access to private files including sensitive data.
Product Security DevOps Team 2019-09-29 13:59:56 UTC Whiteboard impact=moderate,public=20161104,reported=20161102,source=internet,cvss2=5.0/AV:N/AC:L/Au:N/C:P/I:N/A:N,cvss3=7.5/CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N,fuse-6/Camel=affected
Joshua Padman 2021-10-21 11:48:08 UTC Resolution --- ERRATA
Status NEW CLOSED
Last Closed 2021-10-21 11:48:08 UTC

Back to bug 1393607