Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability

2020-06-15 Thread Denis Magda
hes and patch instructions >>> for previous Ignite versions? >>> >>> >>> >>> Regards, >>> >>> -Nick >>> >>> >>> >>> *From:* Sriveena Mattaparthi >>> *Sent:* Wednesday, June 3, 2020 9:04 AM >

Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability

2020-06-08 Thread Юрий
riveena Mattaparthi >> *Sent:* Wednesday, June 3, 2020 9:04 AM >> *To:* u...@ignite.apache.org; dev ; >> annou...@apache.org; Apache Security Team >> *Subject:* COMMERCIAL:RE: [CVE-2020-1963] Apache Ignite access to file >> system disclosure vulnerability >> >

Re: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability

2020-06-05 Thread Denis Magda
t; > Regards, > Sriveena > > > > *From:* Юрий > *Sent:* 03 June 2020 16:02 > *To:* dev ; u...@ignite.apache.org; > annou...@apache.org; Apache Security Team ; Sriveena > Mattaparthi > *Subject:* [CVE-2020-1963] Apache Ignite access to file system disclos

RE: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability

2020-06-03 Thread Nick Popov
-1963] Apache Ignite access to file system disclosure vulnerability Thanks, Could you please confirm when the analysis will be updated here for the CVE logged. https://nvd.nist.gov/vuln/detail/CVE-2020-1963 Regards, Sriveena From: Юрий mailto:jury.gerzhedow...@gmail.com>> Sent: 03 June 2020

RE: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability

2020-06-03 Thread Sriveena Mattaparthi
Subject: [CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability Hi All, Apache Ignite 2.8.1 has been released. The release contain fix of critical vulnerability CVE-2020-1963: Apache Ignite access to file system through predefined H2 SQL functions Severity: Critical

[CVE-2020-1963] Apache Ignite access to file system disclosure vulnerability

2020-06-03 Thread Юрий
Hi All, Apache Ignite 2.8.1 has been released. The release contain fix of critical vulnerability CVE-2020-1963: Apache Ignite access to file system through predefined H2 SQL functions Severity: Critical Vendor: The Apache Software Foundation Versions Affected: All versions of Apache Ignite up