First published: Mon Oct 23 2017(Updated: )
In Apache Derby 10.1.2.1, 10.2.2.0, 10.3.1.4, and 10.4.1.3, Export processing may allow an attacker to overwrite an existing file.
Credit: security@apache.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache Derby | =10.4.1.3 | |
Apache Derby | =10.2.2.0 | |
Apache Derby | =10.1.2.1 | |
Apache Derby | =10.3.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2232 is classified as a high severity vulnerability due to its potential to allow unauthorized file overwriting.
To fix CVE-2010-2232, upgrade to a patched version of Apache Derby that addresses the export processing issue.
The affected versions of Apache Derby listed in CVE-2010-2232 are 10.1.2.1, 10.2.2.0, 10.3.1.4, and 10.4.1.3.
CVE-2010-2232 can compromise data security by allowing an attacker to overwrite existing files, which may lead to data loss or corruption.
Users and administrators of the mentioned versions of Apache Derby are directly impacted by CVE-2010-2232 due to the vulnerability in export processing.