Back to bug 2227782

Who When What Removed Added
Patrick Del Bello 2023-07-31 12:51:54 UTC Fixed In Version camel-jira 3.14.9, 3.18.8, 3.20.6 or 3.21.0 camel-jira 3.14.9, camel-jira 3.18.8, camel-jira 3.20.6, camel-jira 3.21.0
Patrick Del Bello 2023-07-31 12:52:27 UTC Fixed In Version camel-jira 3.14.9, camel-jira 3.18.8, camel-jira 3.20.6, camel-jira 3.21.0 camel-jira 3.14.9, camel-jira 3.18.8, camel-jira 3.20.6, camel-jira 3.21.0
Patrick Del Bello 2023-07-31 12:55:22 UTC CC anstephe, avibelli, bgeorges, clement.escoffier, dandread, dkreling, fmongiar, gsmet, hamadhan, hbraun, jmartisk, jnethert, jpoth, lthon, max.andersen, pdelbell, peholase, pgallagh, pjindal, probinso, rruss, rsvoboda, sbiarozk, sdouglas, tcunning, tqvarnst, yfang
Patrick Del Bello 2023-08-11 18:47:20 UTC Summary TRIAGE-CVE-2023-34442 camel-jira: Temporary file information disclosure in Camel-Jira CVE-2023-34442 camel-jira: Temporary file information disclosure in Camel-Jira
Alias TRIAGE-2023-34442 CVE-2023-34442
Paige Jung 2023-08-11 19:02:47 UTC Doc Text A flaw was found under camel-jira package. The package was creating file directly instead of using Files.createTempFile in FileConverter and this could lead to unexpected creation of file in a vulnerable directory, leading access to unauthorized actors. A flaw was found in the camel-jira package. The package was creating a file directly instead of using Files.createTempFile in FileConverter, which could lead to the unexpected creation of a file in a vulnerable directory, giving access to unauthorized actors.

Back to bug 2227782