| Vulnerability Name: | CVE-2017-5661 (CCN-124797) | ||||||||||||||||||||||||||||||||||||||||||||
| Assigned: | 2017-04-18 | ||||||||||||||||||||||||||||||||||||||||||||
| Published: | 2017-04-18 | ||||||||||||||||||||||||||||||||||||||||||||
| Updated: | 2021-07-22 | ||||||||||||||||||||||||||||||||||||||||||||
| Summary: | In Apache FOP before 2.2, files lying on the filesystem of the server which uses FOP can be revealed to arbitrary users who send maliciously formed SVG files. The file types that can be shown depend on the user context in which the exploitable application is running. If the user is root a full compromise of the server - including confidential or sensitive files - would be possible. XXE can also be used to attack the availability of the server via denial of service as the references within a xml document can trivially trigger an amplification attack. | ||||||||||||||||||||||||||||||||||||||||||||
| CVSS v3 Severity: | 7.3 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:H) 6.4 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:H/E:U/RL:O/RC:C)
4.6 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C)
| ||||||||||||||||||||||||||||||||||||||||||||
| CVSS v2 Severity: | 7.9 High (CVSS v2 Vector: AV:N/AC:M/Au:S/C:C/I:N/A:C)
| ||||||||||||||||||||||||||||||||||||||||||||
| Vulnerability Type: | CWE-611 | ||||||||||||||||||||||||||||||||||||||||||||
| Vulnerability Consequences: | Obtain Information | ||||||||||||||||||||||||||||||||||||||||||||
| References: | Source: MITRE Type: CNA CVE-2017-5661 Source: CCN Type: BugTraq Mailing List, Tue, 18 Apr 2017 09:18:04 +0100 [CVE-2017-5661] Apache XML Graphics FOP information disclosure vulnerability Source: DEBIAN Type: UNKNOWN DSA-3864 Source: CCN Type: IBM Security Bulletin 880881 (Rational Quality Manager) Security vulnerability in Apache FOP affects IBM Rational Quality Manager Source: CCN Type: IBM Security Bulletin 2006871 (WebSphere Portal) Security Vulnerabilities in Apache FOP and Apache Batik affect IBM WebSphere Portal (CVE-2017-5661, CVE-2017-5662) Source: CCN Type: IBM Security Bulletin 2008734 (Cram Social Program Management) Vulnerability in Apache FOP affects IBM Cram Social Program Management (CVE-2017-5661) Source: BID Type: UNKNOWN 97947 Source: CCN Type: BID-97947 Apache FOP CVE-2017-5661 XML External Entity Information Disclosure Vulnerability Source: XF Type: UNKNOWN apache-fop-cve20175661-xxe-info-disc(124797) Source: CCN Type: Apache Web site Apache(tm) FOP - a print formatter driven by XSL formatting objects (XSL-FO) and an output independent formatter. Source: CONFIRM Type: Patch, Vendor Advisory https://xmlgraphics.apache.org/security.html | ||||||||||||||||||||||||||||||||||||||||||||
| Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||||||||||||||||||
| Oval Definitions | |||||||||||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||||||||||
| BACK | |||||||||||||||||||||||||||||||||||||||||||||