Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Fedora 24: Security Advisory for Groovy Remote Code Execution

fedora
Calendar Grey January 25, 2017
Dist Fedora Esm H88
An important patch for Fedora 24 fixes a severe vulnerability in Groovy that could enable remote code execution. Update immediately.
Security fix for CVE-2016-6814

Summary

Groovy is an agile and dynamic language for the Java Virtual Machine,

built upon Java with features inspired by languages like Python, Ruby and

Smalltalk. It seamlessly integrates with all existing Java objects and

libraries and compiles straight to Java bytecode so you can use it anywhere

you can use Java.

Update Information:

Security fix for CVE-2016-6814

Change Log

References


[ 1 ] Bug #1413466 - CVE-2016-6814 Apache Groovy: Remote code execution via deserialization https://bugzilla.redhat.com/show_bug.cgi?id=1413466

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade groovy' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: groovy
Product: Fedora 24
Version: 2.4.5
Release: 8.fc24
Summary: Dynamic language for the Java Platform

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here