Vulnerability Database
Blog
FAQ
Docs
CVE-2019-9658
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2019-9658
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-9658.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2019-9658
Aliases
GHSA-gp32-7h29-rpxm
Related
DLA-1768-1
UBUNTU-CVE-2019-9658
Published
2019-03-11T05:29:00Z
Modified
2024-10-12T05:25:45.349949Z
Severity
5.3 (Medium)
CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS Calculator
Summary
[none]
Details
Checkstyle before 8.18 loads external DTDs by default.
References
https://checkstyle.org/releasenotes.html#Release_8.18
https://github.com/checkstyle/checkstyle/issues/6474
https://github.com/checkstyle/checkstyle/issues/6478
https://github.com/checkstyle/checkstyle/pull/6476
https://lists.apache.org/thread.html/6bf8bbbca826e883f09ba40bc0d319350e1d6d4cf4df7c9e399b2699%40%3Ccommits.fluo.apache.org%3E
https://lists.apache.org/thread.html/7eea10e7be4c21060cb1e79f6524c6e6559ba833b1465cd2870a56b9%40%3Cserver-dev.james.apache.org%3E
https://lists.apache.org/thread.html/994221405e940e148adcfd9cb24ffc6700bed70c7820c55a22559d26%40%3Cnotifications.fluo.apache.org%3E
https://lists.apache.org/thread.html/a35a8ccb316d4c2340710f610cba8058e87d5376259b35ef3ed2bf89%40%3Cnotifications.accumulo.apache.org%3E
https://lists.apache.org/thread.html/fff26ee7b59360a0264fef4e8ed9454ef652db2c39f2892a9ea1c9cb%40%3Cnotifications.fluo.apache.org%3E
https://lists.apache.org/thread.html/rda99599896c3667f2cc9e9d34c7b6ef5d2bbed1f4801e1d75a2b0679%40%3Ccommits.nifi.apache.org%3E
https://lists.debian.org/debian-lts-announce/2019/04/msg00029.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2BMOPJ2XYE4LB2HM7OMSUBBIYEDUTLWE/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AEYBAHYAV37WHMOXZYM2ZWF46FHON6YC/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VJPT54USMGWT3Y6XVXLDEHKRUY2EI4OE/
https://security-tracker.debian.org/tracker/CVE-2019-9658
Affected packages
Debian:11
/
checkstyle
Package
Name
checkstyle
Purl
pkg:deb/debian/checkstyle?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
8.26-1
Ecosystem specific
{ "urgency": "low" }
Debian:12
/
checkstyle
Package
Name
checkstyle
Purl
pkg:deb/debian/checkstyle?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
8.26-1
Ecosystem specific
{ "urgency": "low" }
Debian:13
/
checkstyle
Package
Name
checkstyle
Purl
pkg:deb/debian/checkstyle?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
8.26-1
Ecosystem specific
{ "urgency": "low" }
Git
/
github.com/checkstyle/checkstyle
Affected ranges
Type
GIT
Repo
https://github.com/checkstyle/checkstyle
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
252d29bdb6eb1984e115dc3f77114ec2ec7d10e7
Affected versions
Other
bcel
release1_1
release1_2
release1_3
release1_4
release2_0
release2_2
release2_4
release3_0
release3_1
release3_2
release3_3
release3_4
release4_0
release4_0_beta_1
release4_0_beta_2
release4_0_beta_3
release4_0_beta_4
release4_0_beta_5
release4_1
release4_2
release4_3
release4_4
release5_3
release5_4
release5_5
release5_6
release5_7
v2-branch_lmp
checkstyle-4.*
checkstyle-4.4
checkstyle-5.*
checkstyle-5.2
checkstyle-5.3
checkstyle-5.4
checkstyle-5.5
checkstyle-5.6
checkstyle-5.7
checkstyle-5.8
checkstyle-5.9
checkstyle-6.*
checkstyle-6.0
checkstyle-6.1
checkstyle-6.1.1
checkstyle-6.10
checkstyle-6.10.1
checkstyle-6.11
checkstyle-6.11.1
checkstyle-6.11.2
checkstyle-6.12
checkstyle-6.12.1
checkstyle-6.13
checkstyle-6.14
checkstyle-6.14.1
checkstyle-6.15
checkstyle-6.16
checkstyle-6.16.1
checkstyle-6.17
checkstyle-6.18
checkstyle-6.19
checkstyle-6.2
checkstyle-6.3
checkstyle-6.4
checkstyle-6.4.1
checkstyle-6.5
checkstyle-6.6
checkstyle-6.7
checkstyle-6.8
checkstyle-6.8.1
checkstyle-6.9
checkstyle-7.*
checkstyle-7.0
checkstyle-7.1
checkstyle-7.1.1
checkstyle-7.1.2
checkstyle-7.2
checkstyle-7.3
checkstyle-7.4
checkstyle-7.5
checkstyle-7.5.1
checkstyle-7.6
checkstyle-7.6.1
checkstyle-7.7
checkstyle-7.8
checkstyle-7.8.1
checkstyle-7.8.2
checkstyle-8.*
checkstyle-8.0
checkstyle-8.1
checkstyle-8.10
checkstyle-8.10.1
checkstyle-8.11
checkstyle-8.12
checkstyle-8.13
checkstyle-8.14
checkstyle-8.15
checkstyle-8.16
checkstyle-8.17
checkstyle-8.2
checkstyle-8.3
checkstyle-8.4
checkstyle-8.5
checkstyle-8.6
checkstyle-8.7
checkstyle-8.8
checkstyle-8.9
CVE-2019-9658 - OSV