Lucene search

K
osvGoogleOSV:GHSA-PPC3-FPVH-7396
HistoryFeb 09, 2022 - 10:25 p.m.

Improper synchronization in Apache Netbeans HTML/Java API

2022-02-0922:25:18
Google
osv.dev
7

0.0004 Low

EPSS

Percentile

5.1%

There exists a race condition between the deletion of the temporary file and the creation of the temporary directory in webkit subproject of HTML/Java API version 1.7. A similar vulnerability has recently been disclosed in other Java projects and the fix in HTML/Java API version 1.7.1 follows theirs: To avoid local privilege escalation version 1.7.1 creates the temporary directory atomically without dealing with the temporary file.

0.0004 Low

EPSS

Percentile

5.1%

Related for OSV:GHSA-PPC3-FPVH-7396