Ubuntu - Apache Ant vulnerability (2020-06-01)

情报来源:TSRC

发布时间:2020-06-01

基本信息
  • 发布日期2020-06-01
  • 感知时间2020-06-01
  • 漏洞类型安全更新
  • 风险等级未知
  • 更新版本未知
  • 情报贡献TSRC
更新标题

USN-4380-1: Apache Ant vulnerability

更新详情

Apache Ant vulnerability<br/>A security issue affects these releases of Ubuntu and its derivatives:<br/>Ubuntu 19.10<br/>Summary<br/>Apache Ant could leak sensitive information or be made to run programs as your login.<br/>Software Description<br/>ant - Java based build tool like make<br/>Details<br/>It was discovered that Apache Ant created temporary files with insecure permissions. An attacker could use this vulnerability to read sensitive information leaked into /tmp, or potentially inject malicious code into a project that is built with Apache Ant.<br/>Update instructions<br/>The problem can be corrected by updating your system to the following package versions:<br/>Ubuntu 19.10<br/>ant - 1.10.6-1ubuntu0.1<br/>ant-doc - 1.10.6-1ubuntu0.1<br/>ant-optional - 1.10.6-1ubuntu0.1<br/>To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.<br/>In general, a standard system update will make all the necessary changes.<br/>References<br/>CVE-2020-1945<br/>]]&gt;

软件描述

Ubuntu是一个以桌面应用为主的Linux操作系统

CVE编号

<p><a target="_blank" href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1945">CVE-2020-1945</a></p>

Knowsafe分析

暂无

业界资讯

暂无

来源链接

https://usn.ubuntu.com/4380-1/