CVE-2014-0792
Publication date 17 January 2014
Last updated 24 July 2024
Ubuntu priority
Sonatype Nexus 1.x and 2.x before 2.7.1 allows remote attackers to create arbitrary objects and execute arbitrary code via unspecified vectors related to unmarshalling of unintended Object types.
Status
Package | Ubuntu Release | Status |
---|---|---|
maven-indexer | ||
18.04 LTS bionic | Ignored | |
16.04 LTS xenial | Ignored | |
14.04 LTS trusty | Not in release | |
Notes
sarnold
I'm unclear on the relationship between Maven Indexer and Sonatype Nexus; so I'm marking maven-indexer as an involved package because I haven't seen any information to the contrary. More research is needed.