CVE-2018-11798
published 2019-01-07CVE-2018-11798: The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 have been determined to contain a security vulnerability in which a remote user…
PriorityP339medium6.5CVSS 3.0
AVNACLPRLUINSUCHINAN
EPSS
4.88%
91.1th percentile
The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 have been determined to contain a security vulnerability in which a remote user has the ability to access files outside the set webservers docroot path.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | thrift | 0.9.2 – 0.11.0 | — |
| apache_software_foundation | apache_thrift | — | — |
| debian | thrift | < thrift 0.11.0-4 (bookworm) | thrift 0.11.0-4 (bookworm) |
| thrift | >= 0 < 0.11.0-4 | 0.11.0-4 | |
| thrift | >= 0 < 0.11.0-4 | 0.11.0-4 | |
| thrift | >= 0 < 0.11.0-4 | 0.11.0-4 | |
| thrift | >= 0 < 0.11.0-4 | 0.11.0-4 |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
osv6.5MEDIUM
vendor_debian6.5LOW
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
thrift: Improper Access Control grants access to files outside the webservers docroot path
vendor_redhat·2018-10-05·CVSS 6.5
CVE-2018-11798 [MEDIUM] CWE-284 thrift: Improper Access Control grants access to files outside the webservers docroot path
thrift: Improper Access Control grants access to files outside the webservers docroot path
The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 have been determined to contain a security vulnerability in which a remote user has the ability to access files outside the set webservers docroot path.
A flaw was found in the Node.js static web server in Apache Thrift, where it allowed a remote user to access files outside of the set web servers' docroot path. An attacker could use this flaw to possibly access unauthorized files and sensitive information.
Statement: OpenStack and OpenDaylight:
The Java implementation of thrift is used in OpenDaylight by parts of the vpnservice functionality. This flaw refers to the JavaScript (node.js) server for Thrift, which is not us
Debian
CVE-2018-11798: thrift - The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 hav...
vendor_debian·2018·CVSS 6.5
CVE-2018-11798 [MEDIUM] CVE-2018-11798: thrift - The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 hav...
The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 have been determined to contain a security vulnerability in which a remote user has the ability to access files outside the set webservers docroot path.
Scope: local
bookworm: resolved (fixed in 0.11.0-4)
bullseye: resolved (fixed in 0.11.0-4)
forky: resolved (fixed in 0.11.0-4)
sid: resolved (fixed in 0.11.0-4)
trixie: resolved (fixed in 0.11.0-4)
OSV
Apache Thrift Node.js static web server sandbox escape
osv·2019-01-17
CVE-2018-11798 [MEDIUM] Apache Thrift Node.js static web server sandbox escape
Apache Thrift Node.js static web server sandbox escape
The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 have been determined to contain a security vulnerability in which a remote user has the ability to access files outside the set webservers docroot path.
GHSA
Apache Thrift Node.js static web server sandbox escape
ghsa·2019-01-17
CVE-2018-11798 [MEDIUM] CWE-538 Apache Thrift Node.js static web server sandbox escape
Apache Thrift Node.js static web server sandbox escape
The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 have been determined to contain a security vulnerability in which a remote user has the ability to access files outside the set webservers docroot path.
OSV
CVE-2018-11798: The Apache Thrift Node
osv·2019-01-07·CVSS 6.5
CVE-2018-11798 [MEDIUM] CVE-2018-11798: The Apache Thrift Node
The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 have been determined to contain a security vulnerability in which a remote user has the ability to access files outside the set webservers docroot path.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-11798 thrift: Improper Access Control grants access to files outside the webservers docroot path [fedora-all]
bugzilla·2019-01-17·CVSS 6.5
CVE-2018-11798 [MEDIUM] CVE-2018-11798 thrift: Improper Access Control grants access to files outside the webservers docroot path [fedora-all]
CVE-2018-11798 thrift: Improper Access Control grants access to files outside the webservers docroot path [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this
Bugzilla
CVE-2018-11798 thrift: Improper Access Control grants access to files outside the webservers docroot path [epel-7]
bugzilla·2019-01-17·CVSS 6.5
CVE-2018-11798 [MEDIUM] CVE-2018-11798 thrift: Improper Access Control grants access to files outside the webservers docroot path [epel-7]
CVE-2018-11798 thrift: Improper Access Control grants access to files outside the webservers docroot path [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use th
Bugzilla
CVE-2018-11798 thrift: Improper Access Control grants access to files outside the webservers docroot path
bugzilla·2019-01-17·CVSS 6.5
CVE-2018-11798 [MEDIUM] CVE-2018-11798 thrift: Improper Access Control grants access to files outside the webservers docroot path
CVE-2018-11798 thrift: Improper Access Control grants access to files outside the webservers docroot path
The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 have been determined to contain a security vulnerability in which a remote user has the ability to access files outside the set webservers docroot path.
References:
https://lists.apache.org/thread.html/6e9edd282684896cedf615fb67a02bebfe6007f2d5baf03ba52e34fd@%3Cuser.thrift.apache.org%3E
Upstream Patch:
https://github.com/apache/thrift/pull/1606
Discussion:
Created thrift tracking bugs for this issue:
Affects: epel-7 [bug 1667189]
Affects: fedora-all [bug 1667190]
---
Statement:
OpenStack and OpenDaylight:
The Java implementation of thrift is used in OpenDaylight by parts of the vpnservice functionali
arXiv
Tracking Patches for Open Source Software Vulnerabilities
arxiv_fulltext·2023-09-30
Tracking Patches for Open Source Software Vulnerabilities
Tracking Patches for Open Source Software Vulnerabilities
Congying Xu
Also with Shanghai Key Laboratory of Data Science, and Shanghai Collaborative Innovation Center of Intelligent Visual Computing.
School of Computer Science
Fudan University
Shanghai
China
Bihuan Chen
[1]
Bihuan Chen is the corresponding author.
School of Computer Science
Fudan University
Shanghai
China
Chenhao Lu
[1]
School of Computer Science
Fudan University
Shanghai
China
Kaifeng Huang
[1]
School of Computer Science
Fudan University
Shanghai
China
Xin Peng
[1]
School of Computer Science
Fudan University
Shanghai
China
Yang Liu
School of Computer Science and Engineering
Nanyang Technological University
Singapore
## Abstract
Open source software (OSS) vulnerabilities threaten the security of software syste
http://www.securityfocus.com/bid/106501https://access.redhat.com/errata/RHSA-2019:1545https://access.redhat.com/errata/RHSA-2019:3140https://lists.apache.org/thread.html/6e9edd282684896cedf615fb67a02bebfe6007f2d5baf03ba52e34fd%40%3Cuser.thrift.apache.org%3Ehttps://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.htmlhttp://www.securityfocus.com/bid/106501https://access.redhat.com/errata/RHSA-2019:1545https://access.redhat.com/errata/RHSA-2019:3140https://lists.apache.org/thread.html/6e9edd282684896cedf615fb67a02bebfe6007f2d5baf03ba52e34fd%40%3Cuser.thrift.apache.org%3Ehttps://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
2019-01-07
Published