XStream newest version have Remote Code execute Security Bugs

32 views
Skip to first unread message

r00t 4dm

unread,
Jan 6, 2020, 9:26:29 AM1/6/20
to XStream User
Hi, 

   I found the XStream newest version have Remote Code execute Security Bugs.

   Who shall I report to?
Message has been deleted

r00t 4dm

unread,
Jan 6, 2020, 9:44:34 AM1/6/20
to XStream User
I test found the Vulnerability can bypass the XStream 1.4.11 security function.

在 2020年1月6日星期一 UTC+8下午10:26:29,r00t 4dm写道:

Jörg Schaible

unread,
Jan 8, 2020, 6:33:16 PM1/8/20
to xstrea...@googlegroups.com

Hi,

 

confirmation depends whether we can reproduce anything. You've been invited to the security channel, please give details there.

 

Regards,

Jörg

--
You received this message because you are subscribed to the Google Groups "XStream User" group.
To unsubscribe from this group and stop receiving emails from it, send an email to xstream-user...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/xstream-user/50ed217d-5148-4e11-a856-c6bbd40b6bd2%40googlegroups.com.



Reply all
Reply to author
Forward
0 new messages