Critical Apache Avro SDK Flaw Allows Remote Code Execution in Java Applications

Discussion in 'News Aggregator' started by The Hacker News, 7 Oct 2024.

  1. A critical security flaw has been disclosed in the Apache Avro Java Software Development Kit (SDK) that, if successfully exploited, could allow the execution of arbitrary code on susceptible instances. The flaw, tracked as CVE-2024-47561, impacts all versions of the software prior to 1.11.4. "Schema parsing in the Java SDK of Apache Avro 1.11.3 and previous versions allows bad actors to execute

    Continue reading...
     

Share This Page

Loading...