Apache SolrGHSA-xhcq-fv7x-grr2
Critical severity vulnerability that affects org.apache.solr:solr-core
Critical9.8CVE-2019-0192 · Published Mar 14, 2019 · updated Feb 17, 2024
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| org.apache.solr:solr-core Maven | >= 5.0.0, < 7.0.0 | 7.0.0 |
| >= 6.0.0, < 7.0.0 | 7.0.0 |
Details and references
In Apache Solr versions 5.0.0 to 5.5.5 and 6.0.0 to 6.6.5, the Config API allows to configure the JMX server via an HTTP POST request. By pointing it to a malicious RMI server, an attacker could take advantage of Solr's unsafe deserialization to trigger remote code execution on the Solr side.
- CVSS 3.0
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-502
- Also known as
- CVE-2019-0192
- nvd.nist.gov/vuln/detail/CVE-2019-0192
- access.redhat.com/errata/RHSA-2019:2413
- github.com/advisories/GHSA-xhcq-fv7x-grr2
- lists.apache.org/thread.html/42c5682f4acd1d03bd963e4f47ae448d7cff66c16b19142773818892@%3Cdev.lucene.apache.org%3E
- lists.apache.org/thread.html/53e4744b14fb7f1810405f8ff5531ab0953a23dd09ce8071ce87e00d@%3Cdev.lucene.apache.org%3E
- lists.apache.org/thread.html/b0ace855f569c6b7a0b03ba68566e53b1a1a519abd536bf38978ce4a@%3Cdev.lucene.apache.org%3E
- lists.apache.org/thread.html/bcce5a9c532b386c68dab2f6b3ce8b0cc9b950ec551766e76391caa3@%3Ccommits.nifi.apache.org%3E
- lists.apache.org/thread.html/d0e608c681dfbb16b4da68d99d43fa0ddbd366bb3bcf5bc0d43c56d7@%3Cdev.lucene.apache.org%3E
- lists.apache.org/thread.html/ec9c572fb803b26ba0318777977ee6d6a2fb3a2c50d9b4224e541d5d@%3Cdev.lucene.apache.org%3E
- lists.apache.org/thread.html/rc400db37710ee79378b6c52de3640493ff538c2beb41cefdbbdf2ab8@%3Ccommits.submarine.apache.org%3E
- lists.apache.org/thread.html/rca37935d661f4689cb4119f1b3b224413b22be161b678e6e6ce0c69b@%3Ccommits.nifi.apache.org%3E
- security.netapp.com/advisory/ntap-20190327-0003
- www.oracle.com/security-alerts/cpuoct2020.html
- www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- mail-archives.us.apache.org/mod_mbox/www-announce/201903.mbox/%3CCAECwjAV1buZwg%2BMcV9EAQ19MeAWztPVJYD4zGK8kQdADFYij1w%40mail.gmail.com%3E
- www.securityfocus.com/bid/107318
More Apache Solr advisories
All Apache Solr| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Mar 142019 | Server-Side Request Forgery (SSRF) in org.apache.solr:solr-core CVE-2017-3164High7.5fixed in 7.7.0 | High7.5 | 7.7.0 |
| Aug 12019 | XML External Entity (XXE) Injection in Apache Solr CVE-2019-0193High7.2fixed in 8.2.0 | High7.2 | 8.2.0 |
| Oct 182018 | Improper Limitation of a Pathname ('Path Traversal') in org.apache.solr:solr-core CVE-2017-3163High7.5fixed in 5.5.4, 6.4.1 | High7.5 | 5.5.4, 6.4.1 |
| Oct 172018 | Remote code execution occurs in Apache Solr CVE-2017-12629Critical9.8fixed in 5.5.5, 6.6.2, 7.1.0 | Critical9.8 | 5.5.5, 6.6.2, 7.1.0 |
| Oct 172018 | There is a XML external entity expansion (XXE) vulnerability in Apache Solr config files CVE-2018-8010Medium5.5fixed in 6.6.4, 7.3.1 | Medium5.5 | 6.6.4, 7.3.1 |
| Oct 172018 | There is a XML external entity expansion (XXE) vulnerability in Apache Solr CVE-2018-1308High7.5fixed in 6.6.3, 7.3.0 | High7.5 | 6.6.3, 7.3.0 |