CVE-2017-5641
Last modified
CVE-2017-5641 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. Previous versions of Apache Flex BlazeDS (4.7.2 and earlier) did not restrict which types were allowed for AMF(X) object deserialization by default. During the deserialization process code is executed that for several known types has undesired side-effects. EPSS estimates a 21.27% chance of exploitation in the next 30 days.
Description
Previous versions of Apache Flex BlazeDS (4.7.2 and earlier) did not restrict which types were allowed for AMF(X) object deserialization by default. During the deserialization process code is executed that for several known types has undesired side-effects. Other, unknown types may also exhibit such behaviors. One vector in the Java standard library exists that allows an attacker to trigger possibly further exploitable Java deserialization of untrusted data. Other known vectors in third party libraries can be used to trigger remote code execution.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Apache | Flex Blazeds | <= 4.7.2 |
| Hp | Xp Command View Advanced Edition | < 8.5.3-00 |
References
- http://www.securityfocus.com/bid/97383Broken Link
- http://www.securitytracker.com/id/1038273Broken Link
- https://issues.apache.org/jira/browse/FLEX-35290Issue Tracking, Vendor Advisory
- https://www.kb.cert.org/vuls/id/307983Third Party Advisory, US Government Resource
- https://www.zerodayinitiative.com/advisories/ZDI-22-506/Third Party Advisory, VDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-22-507/Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/97383Broken Link
- http://www.securitytracker.com/id/1038273Broken Link
- https://issues.apache.org/jira/browse/FLEX-35290Issue Tracking, Vendor Advisory
- https://www.kb.cert.org/vuls/id/307983Third Party Advisory, US Government Resource
- https://www.zerodayinitiative.com/advisories/ZDI-22-506/Third Party Advisory, VDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-22-507/Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-5641?
How severe is CVE-2017-5641?
How do I fix CVE-2017-5641?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-5635In Apache NiFi before 0.7.2 and 1.x before 1.1.2 in a cluste…
- CVE-2017-5636In Apache NiFi before 0.7.2 and 1.x before 1.1.2 in a cluste…
- CVE-2017-5637Two four letter word commands "wchp/wchc" are CPU intensive …
- CVE-2017-5638The Jakarta Multipart parser in Apache Struts 2 2.3.x before…9.8
- CVE-2017-5639Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2017-5640It was noticed that a malicious process impersonating an Imp…
- CVE-2017-5642During installation of Ambari 2.4.0 through 2.4.2, Ambari Se…
- CVE-2017-5643Apache Camel's Validation Component is vulnerable against SS…
- CVE-2017-5644Apache POI in versions prior to release 3.15 allows remote a…
- CVE-2017-5645In Apache Log4j 2.x before 2.8.2, when using the TCP socket …9.8
- CVE-2017-5646For versions of Apache Knox from 0.2.0 to 0.11.0 - an authen…6.8
- CVE-2017-5647A bug in the handling of the pipelined requests in Apache To…
Are you affected by CVE-2017-5641?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
