First published: Mon Jan 15 2024(Updated: )
Remote Code Execution vulnerability in Apache IoTDB. This issue affects Apache IoTDB from 1.0.0 through 1.2.2. Users are recommended to upgrade to version 1.3.0, which fixes the issue.
Credit: security@apache.org security@apache.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache IoTDB | >=1.0.0<1.3.0 | |
pip/apache-iotdb | >=1.0.0<1.3.0 | 1.3.0 |
maven/org.apache.iotdb:iotdb-core | >=1.0.0<=1.2.2 | 1.3.0 |
>=1.0.0<1.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-46226 is classified as a Remote Code Execution vulnerability, which is considered highly severe.
To fix CVE-2023-46226, upgrade Apache IoTDB to version 1.3.0 or later.
CVE-2023-46226 affects Apache IoTDB versions from 1.0.0 to 1.2.2.
CVE-2023-46226 is a Remote Code Execution vulnerability.
Yes, a patch is available in version 1.3.0 of Apache IoTDB.