[
https://issues.apache.org/jira/browse/JENA-1199?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15341584#comment-15341584
]
Andy Seaborne commented on JENA-1199:
-------------------------------------
{quote}
CVE-2016-3092: Apache Commons Fileupload information disclosure vulnerability
Severity: Moderate
Vendor:
The Apache Software Foundation
Versions Affected:
Apache Commons Fileupload 1.3 to 1.3.1
...
This flaw is not exploitable beyond causing the code to loop expending
CPU resources.
{quote}
> Upgrade Apache Commons fileupload to 1.3.2 or later.
> ----------------------------------------------------
>
> Key: JENA-1199
> URL: https://issues.apache.org/jira/browse/JENA-1199
> Project: Apache Jena
> Issue Type: Improvement
> Reporter: Andy Seaborne
> Assignee: Andy Seaborne
> Priority: Critical
>
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)