Configuration in Pivotal Spring Framework - CVE-2011-2730

 

Configuration in Pivotal Spring Framework - CVE-2011-2730

Published: April 24, 2024


Vulnerability identifier: #VU88954
CSH Severity: Medium
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2011-2730
CWE-ID: CWE-16
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vendor: Pivotal
Affected software:
Pivotal Spring Framework

Detailed vulnerability description

The issue may allow a local user to bypass implemented security restrictions.

The issue exists due to the possibility to bypass implemented security restrictions, related to secure boot. it was addressed by rebuilding the package with the new secure boot key.


How to mitigate CVE-2011-2730

Install updates from vendor's website.

Sources