CVE-2022-45470

missing input validation in Apache Hama may cause information disclosure through path traversal and XSS. Since Apache Hama is EOL, we do not expect these issues to be fixed.
References
Link Resource
http://www.openwall.com/lists/oss-security/2022/11/21/1 Mailing List Third Party Advisory
http://www.openwall.com/lists/oss-security/2022/11/21/1 Mailing List Third Party Advisory
https://lists.apache.org/thread/ztvoshd4kxvp5vlro52mpgpfxct4ft8l Issue Tracking Mailing List Vendor Advisory
https://lists.apache.org/thread/ztvoshd4kxvp5vlro52mpgpfxct4ft8l Issue Tracking Mailing List Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:hama:*:*:*:*:*:*:*:*

History

29 Apr 2025, 14:15

Type Values Removed Values Added
CWE CWE-20
References (MLIST) http://www.openwall.com/lists/oss-security/2022/11/21/1 - Mailing List, Third Party Advisory () http://www.openwall.com/lists/oss-security/2022/11/21/1 - Mailing List, Third Party Advisory
References (MISC) https://lists.apache.org/thread/ztvoshd4kxvp5vlro52mpgpfxct4ft8l - Issue Tracking, Mailing List, Vendor Advisory () https://lists.apache.org/thread/ztvoshd4kxvp5vlro52mpgpfxct4ft8l - Issue Tracking, Mailing List, Vendor Advisory

07 Nov 2023, 03:54

Type Values Removed Values Added
Summary ** UNSUPPPORTED WHEN ASSIGNED **missing input validation in Apache Hama may cause information disclosure through path traversal and XSS. Since Apache Hama is EOL, we do not expect these issues to be fixed. missing input validation in Apache Hama may cause information disclosure through path traversal and XSS. Since Apache Hama is EOL, we do not expect these issues to be fixed.

Information

Published : 2022-11-21 16:15

Updated : 2025-04-29 14:15


NVD link : CVE-2022-45470

Mitre link : CVE-2022-45470


JSON object : View

Products Affected

apache

  • hama
CWE

No CWE.