CVE-2018-1258 (retired)

Priority
Description
Spring Framework version 5.0.5 when used in combination with any versions
of Spring Security contains an authorization bypass when using method
security. An unauthorized malicious user can gain unauthorized access to
methods that should be restricted.
Notes
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 ESM (Trusty Tahr):DNE (trusty was needs-triage)
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Ubuntu 19.04 (Disco Dingo):DNE
Ubuntu 19.10 (Eoan):DNE
More Information

Updated: 2019-10-09 08:02:57 UTC (commit 33aea848a182c0afcd0a3f927a01a7ecd9a061ee)