PT-2023-1346 · Oracle+1 · Mysql Connector/J+1
Department
+1
·
Published
2023-01-31
·
Updated
2023-03-15
·
CVE-2022-44644
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apache Linkis versions prior to 1.3.1
Description
The issue is related to insufficient protection of service data when handling the
allowLoadLocalInfile parameter with a value of true in the MySQL Connector/J component of Apache Linkis. This could allow a remote attacker to read arbitrary local files by connecting a rogue MySQL server and adding allowLoadLocalInfile to true in the JDBC parameter. The parameters in the JDBC URL should be blacklisted to prevent exploitation.Recommendations
For Apache Linkis versions prior to 1.3.1, upgrade the version of Linkis to version 1.3.1 to resolve the issue. As a temporary workaround, consider blacklisting the parameters in the JDBC URL, specifically the
allowLoadLocalInfile parameter, to minimize the risk of exploitation. Restrict access to the MySQL Connector/J component to prevent attackers from connecting a rogue MySQL server.Fix
RCE
Information Disclosure
Cleartext Storage of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Apache Linkis
Mysql Connector/J