[ https://issues.apache.org/jira/browse/GERONIMO-6477?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Jarek Gawor resolved GERONIMO-6477. ----------------------------------- Resolution: Fixed CVE-2013-1777 was assigned for this issue. The original issue was discovered by Pierre Ernst of IBM Canada Ltd. > Misconfigured RMI classloader > ----------------------------- > > Key: GERONIMO-6477 > URL: https://issues.apache.org/jira/browse/GERONIMO-6477 > Project: Geronimo > Issue Type: Bug > Security Level: public(Regular issues) > Components: core > Affects Versions: 3.0-M1, 3.0.0, 3.0-beta-1 > Reporter: Jarek Gawor > Assignee: Jarek Gawor > Fix For: 3.0.1 > > > A misconfigured RMI classloader in Apache Geronimo 3.0 may enable an attacker > to send a serialized object via JMX that could compromise the system. -- This message is automatically generated by JIRA. If you think it was sent incorrectly, please contact your JIRA administrators For more information on JIRA, see: http://www.atlassian.com/software/jira