First published: Tue Dec 17 2024(Updated: )
It was discovered that the Spring Framework incorrectly handled web requests via data binding. An attacker could possibly use this issue to achieve remote code execution and obtain sensitive information.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libspring-aop-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-beans-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-context-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-context-support-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-core-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-expression-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-instrument-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-jdbc-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-jms-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-messaging-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-orm-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-oxm-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-transaction-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-web-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-web-portlet-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-web-servlet-java | <4.3.30-2ubuntu0.24.10.1 | 4.3.30-2ubuntu0.24.10.1 |
Ubuntu Ubuntu | =24.10 | |
All of | ||
ubuntu/libspring-aop-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-beans-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-context-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-context-support-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-core-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-expression-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-instrument-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-jdbc-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-jms-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-messaging-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-orm-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-oxm-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-transaction-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-web-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-web-portlet-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-web-servlet-java | <4.3.30-2ubuntu0.24.04.1~esm1 | 4.3.30-2ubuntu0.24.04.1~esm1 |
Ubuntu Ubuntu | =24.04 | |
All of | ||
ubuntu/libspring-aop-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-beans-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-context-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-context-support-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-core-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-expression-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-instrument-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-jdbc-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-jms-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-messaging-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-orm-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-oxm-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-transaction-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-web-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-web-portlet-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-web-servlet-java | <4.3.30-1ubuntu0.1~esm1 | 4.3.30-1ubuntu0.1~esm1 |
Ubuntu Ubuntu | =22.04 | |
All of | ||
ubuntu/libspring-aop-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-beans-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-context-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-context-support-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-core-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-expression-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-instrument-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-jdbc-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-jms-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-messaging-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-orm-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-oxm-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-transaction-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-web-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-web-portlet-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-web-servlet-java | <4.3.22-4ubuntu0.1~esm1 | 4.3.22-4ubuntu0.1~esm1 |
Ubuntu Ubuntu | =20.04 | |
All of | ||
ubuntu/libspring-aop-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-beans-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-context-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-context-support-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-core-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-expression-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-instrument-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-jdbc-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-jms-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-messaging-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-orm-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-oxm-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-transaction-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-web-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-web-portlet-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 | |
All of | ||
ubuntu/libspring-web-servlet-java | <4.3.22-1~18.04.1~esm1 | 4.3.22-1~18.04.1~esm1 |
Ubuntu Ubuntu | =18.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.