blogs.apache.org/foundation/entry/apache_commons_statement_to_widespread
Preview meta tags from the blogs.apache.org website.
Linked Hostnames
15- 203 links tonews.apache.org
- 4 links toapache.org
- 3 links totwitter.com
- 2 links tocommons.apache.org
- 1 link toblogs.apache.org
- 1 link todocs.oracle.com
- 1 link tofoxglovesecurity.com
- 1 link tofrohoff.github.io
Thumbnail
Search Engine Appearance
Apache Commons statement to widespread Java object de-serialisation vulnerability - The Apache Software Foundation Blog
Authors: Bernd Eckenfels, Committer, and Gary Gregory, Vice President of Apache Commons In their talk "Marshalling Pickles – how deserializing objects will ruin your day" at AppSecCali2015 Gabriel Lawrence (@gebl) and Chris Frohoff (@frohoff) presented various security problems when applications accept serialized objects from untrusted source. A major finding describes a way to execute arbitrary […]
Bing
Apache Commons statement to widespread Java object de-serialisation vulnerability - The Apache Software Foundation Blog
Authors: Bernd Eckenfels, Committer, and Gary Gregory, Vice President of Apache Commons In their talk "Marshalling Pickles – how deserializing objects will ruin your day" at AppSecCali2015 Gabriel Lawrence (@gebl) and Chris Frohoff (@frohoff) presented various security problems when applications accept serialized objects from untrusted source. A major finding describes a way to execute arbitrary […]
DuckDuckGo
Apache Commons statement to widespread Java object de-serialisation vulnerability - The Apache Software Foundation Blog
Authors: Bernd Eckenfels, Committer, and Gary Gregory, Vice President of Apache Commons In their talk "Marshalling Pickles – how deserializing objects will ruin your day" at AppSecCali2015 Gabriel Lawrence (@gebl) and Chris Frohoff (@frohoff) presented various security problems when applications accept serialized objects from untrusted source. A major finding describes a way to execute arbitrary […]
General Meta Tags
11- titleApache Commons statement to widespread Java object de-serialisation vulnerability - The Apache Software Foundation Blog
- charsetUTF-8
- viewportwidth=device-width, initial-scale=1
- robotsindex, follow, max-image-preview:large, max-snippet:-1, max-video-preview:-1
- article:published_time2015-11-10T10:15:48+00:00
Open Graph Meta Tags
7- og:localeen_US
- og:typearticle
- og:titleApache Commons statement to widespread Java object de-serialisation vulnerability - The Apache Software Foundation Blog
- og:descriptionAuthors: Bernd Eckenfels, Committer, and Gary Gregory, Vice President of Apache Commons In their talk "Marshalling Pickles – how deserializing objects will ruin your day" at AppSecCali2015 Gabriel Lawrence (@gebl) and Chris Frohoff (@frohoff) presented various security problems when applications accept serialized objects from untrusted source. A major finding describes a way to execute arbitrary […]
- og:urlhttps://news.apache.org/foundation/entry/apache_commons_statement_to_widespread
Twitter Meta Tags
7- twitter:cardsummary_large_image
- twitter:creator@TheASF
- twitter:site@TheASF
- twitter:label1Written by
- twitter:data1Sally
Item Prop Meta Tags
2- position1
- position2
Link Tags
17- EditURIhttps://news.apache.org/xmlrpc.php?rsd
- alternatehttps://news.apache.org/feed
- alternatehttps://news.apache.org/comments/feed
- alternatehttps://news.apache.org/wp-json/wp/v2/posts/4237
- alternatehttps://news.apache.org/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fnews.apache.org%2Ffoundation%2Fentry%2Fapache_commons_statement_to_widespread
Links
223- http://docs.oracle.com/javase/7/docs/api/java/io/ObjectInputStream.html#resolveClass%28java.io.ObjectStreamClass%29
- http://foxglovesecurity.com/2015/11/06/what-do-weblogic-websphere-jboss-jenkins-opennms-and-your-application-have-in-common-this-vulnerability
- http://frohoff.github.io/appseccali-marshalling-pickles
- http://svn.apache.org/viewvc/commons/proper/collections/branches/COLLECTIONS_3_2_X/src/java/org/apache/commons/collections/functors/InvokerTransformer.java?r1=1713136&r2=1713307&pathrev=1713307&diff_format=h)
- http://www.ibm.com/developerworks/library/se-lookahead