/
DirectorySecurity Advisories
Sign In
Security Advisories

CGA-wvxf-6793-cfqj

Published

Last updated

https://images.chainguard.dev/security/CGA-wvxf-6793-cfqj
Package

hadoop-fips-3.3.6

Repository

Chainguard

Latest Update
Fix not planned
Aliases
  • CVE-2015-7501
  • GHSA-fjq5-5j5f-mvxh

Severity

Unknown

Summary

Deserialization of Untrusted Data in Apache commons collections

Description

It was found that the Apache commons-collections library permitted code execution when deserializing objects involving a specially constructed chain of classes. A remote attacker could use this flaw to execute arbitrary code with the permissions of the application using the commons-collections library.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs