UbuntuUpdates.org

Package "libhtmlunit-java"

Name: libhtmlunit-java

Description:

GUI-Less browser for Java programs

Latest version: 2.8-1ubuntu2.1
Release: xenial (16.04)
Level: security
Repository: universe
Head package: htmlunit
Homepage: http://htmlunit.sourceforge.net/

Links


Download "libhtmlunit-java"


Other versions of "libhtmlunit-java" in Xenial

Repository Area Version
base universe 2.8-1ubuntu2
updates universe 2.8-1ubuntu2.1

Changelog

Version: 2.8-1ubuntu2.1 2020-10-14 22:07:02 UTC

  htmlunit (2.8-1ubuntu2.1) xenial-security; urgency=medium

  * Fix FTBFS because of mime4j.
  * Ignore the dependency on maven-assembly-plugin and maven-antrun-plugin.
  * SECURITY UPDATE: Arbitrary code execution.
    - d/p/0001-disable-java-access-to-avoid-execution-of-arbitrary-.patch:
      disable java access to avoid execution of arbitrary (java) code.
    - CVE-2020-5529

 -- Eduardo Barretto <email address hidden> Fri, 09 Oct 2020 15:26:22 -0300

CVE-2020-5529 HtmlUnit prior to 2.37.0 contains code execution vulnerabilities. HtmlUnit initializes Rhino engine improperly, hence a malicious JavScript code can



About   -   Send Feedback to @ubuntu_updates