rpm package
suse/gradle&distro=SUSE Linux Enterprise Module for Development Tools 15 SP6
pkg:rpm/suse/gradle&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP6
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-35947 | Med | 6.9 | < 4.4.1-150200.3.27.1 | 4.4.1-150200.3.27.1 | Jun 30, 2023 | Gradle is a build tool with a focus on build automation and support for multi-language development. In affected versions when unpacking Tar archives, Gradle did not check that files could be written outside of the unpack location. This could lead to important files being overwrit | |
| CVE-2023-35946 | Med | 6.9 | < 4.4.1-150200.3.24.1 | 4.4.1-150200.3.24.1 | Jun 30, 2023 | Gradle is a build tool with a focus on build automation and support for multi-language development. When Gradle writes a dependency into its dependency cache, it uses the dependency's coordinates to compute a file location. With specially crafted dependency coordinates, Gradle ca |
- affected < 4.4.1-150200.3.27.1fixed 4.4.1-150200.3.27.1
Gradle is a build tool with a focus on build automation and support for multi-language development. In affected versions when unpacking Tar archives, Gradle did not check that files could be written outside of the unpack location. This could lead to important files being overwrit
- affected < 4.4.1-150200.3.24.1fixed 4.4.1-150200.3.24.1
Gradle is a build tool with a focus on build automation and support for multi-language development. When Gradle writes a dependency into its dependency cache, it uses the dependency's coordinates to compute a file location. With specially crafted dependency coordinates, Gradle ca