OESA-2022-1759

Source
https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2022-1759
Import Source
https://repo.openeuler.org/security/data/osv/OESA-2022-1759.json
JSON Data
https://api.osv.dev/v1/vulns/OESA-2022-1759
Upstream
  • CVE-2020-27225
Published
2022-07-22T11:04:00Z
Modified
2025-09-03T06:17:05.986149Z
Summary
eclipse security update
Details

The Eclipse platform is designed for building integrated development environments (IDEs), server-side applications, desktop applications, and everything in between.

Security Fix(es):

In versions 4.18 and earlier of the Eclipse Platform, the Help Subsystem does not authenticate active help requests to the local help web server, allowing an unauthenticated local attacker to issue active help commands to the associated Eclipse Platform process or Eclipse Rich Client Platform process.(CVE-2020-27225)

Database specific
{
    "severity": "High"
}
References

Affected packages

openEuler:20.03-LTS-SP1 / eclipse

Package

Name
eclipse
Purl
pkg:rpm/openEuler/eclipse&distro=openEuler-20.03-LTS-SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.11-4.oe1

Ecosystem specific

{
    "src": [
        "eclipse-4.11-4.oe1.src.rpm"
    ],
    "aarch64": [
        "eclipse-platform-4.11-4.oe1.aarch64.rpm",
        "eclipse-equinox-osgi-4.11-4.oe1.aarch64.rpm",
        "eclipse-pde-4.11-4.oe1.aarch64.rpm",
        "eclipse-swt-4.11-4.oe1.aarch64.rpm",
        "eclipse-debugsource-4.11-4.oe1.aarch64.rpm",
        "eclipse-debuginfo-4.11-4.oe1.aarch64.rpm",
        "eclipse-tests-4.11-4.oe1.aarch64.rpm",
        "eclipse-contributor-tools-4.11-4.oe1.aarch64.rpm"
    ],
    "x86_64": [
        "eclipse-debuginfo-4.11-4.oe1.x86_64.rpm",
        "eclipse-pde-4.11-4.oe1.x86_64.rpm",
        "eclipse-equinox-osgi-4.11-4.oe1.x86_64.rpm",
        "eclipse-swt-4.11-4.oe1.x86_64.rpm",
        "eclipse-tests-4.11-4.oe1.x86_64.rpm",
        "eclipse-contributor-tools-4.11-4.oe1.x86_64.rpm",
        "eclipse-debugsource-4.11-4.oe1.x86_64.rpm",
        "eclipse-platform-4.11-4.oe1.x86_64.rpm"
    ],
    "noarch": [
        "eclipse-p2-discovery-4.11-4.oe1.noarch.rpm",
        "eclipse-jdt-4.11-4.oe1.noarch.rpm"
    ]
}

Database specific

source
"https://repo.openeuler.org/security/data/osv/OESA-2022-1759.json"

openEuler:20.03-LTS-SP3 / eclipse

Package

Name
eclipse
Purl
pkg:rpm/openEuler/eclipse&distro=openEuler-20.03-LTS-SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.11-4.oe1

Ecosystem specific

{
    "src": [
        "eclipse-4.11-4.oe1.src.rpm"
    ],
    "aarch64": [
        "eclipse-equinox-osgi-4.11-4.oe1.aarch64.rpm",
        "eclipse-pde-4.11-4.oe1.aarch64.rpm",
        "eclipse-platform-4.11-4.oe1.aarch64.rpm",
        "eclipse-contributor-tools-4.11-4.oe1.aarch64.rpm",
        "eclipse-debuginfo-4.11-4.oe1.aarch64.rpm",
        "eclipse-debugsource-4.11-4.oe1.aarch64.rpm",
        "eclipse-swt-4.11-4.oe1.aarch64.rpm",
        "eclipse-tests-4.11-4.oe1.aarch64.rpm"
    ],
    "x86_64": [
        "eclipse-debuginfo-4.11-4.oe1.x86_64.rpm",
        "eclipse-pde-4.11-4.oe1.x86_64.rpm",
        "eclipse-swt-4.11-4.oe1.x86_64.rpm",
        "eclipse-equinox-osgi-4.11-4.oe1.x86_64.rpm",
        "eclipse-debugsource-4.11-4.oe1.x86_64.rpm",
        "eclipse-contributor-tools-4.11-4.oe1.x86_64.rpm",
        "eclipse-tests-4.11-4.oe1.x86_64.rpm",
        "eclipse-platform-4.11-4.oe1.x86_64.rpm"
    ],
    "noarch": [
        "eclipse-jdt-4.11-4.oe1.noarch.rpm",
        "eclipse-p2-discovery-4.11-4.oe1.noarch.rpm"
    ]
}

Database specific

source
"https://repo.openeuler.org/security/data/osv/OESA-2022-1759.json"

openEuler:22.03-LTS / eclipse

Package

Name
eclipse
Purl
pkg:rpm/openEuler/eclipse&distro=openEuler-22.03-LTS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.11-5.oe2203

Ecosystem specific

{
    "src": [
        "eclipse-4.11-5.oe2203.src.rpm"
    ],
    "aarch64": [
        "eclipse-debugsource-4.11-5.oe2203.aarch64.rpm",
        "eclipse-platform-4.11-5.oe2203.aarch64.rpm",
        "eclipse-equinox-osgi-4.11-5.oe2203.aarch64.rpm",
        "eclipse-swt-4.11-5.oe2203.aarch64.rpm",
        "eclipse-tests-4.11-5.oe2203.aarch64.rpm",
        "eclipse-debuginfo-4.11-5.oe2203.aarch64.rpm",
        "eclipse-pde-4.11-5.oe2203.aarch64.rpm",
        "eclipse-contributor-tools-4.11-5.oe2203.aarch64.rpm"
    ],
    "x86_64": [
        "eclipse-swt-4.11-5.oe2203.x86_64.rpm",
        "eclipse-debugsource-4.11-5.oe2203.x86_64.rpm",
        "eclipse-pde-4.11-5.oe2203.x86_64.rpm",
        "eclipse-debuginfo-4.11-5.oe2203.x86_64.rpm",
        "eclipse-contributor-tools-4.11-5.oe2203.x86_64.rpm",
        "eclipse-equinox-osgi-4.11-5.oe2203.x86_64.rpm",
        "eclipse-platform-4.11-5.oe2203.x86_64.rpm",
        "eclipse-tests-4.11-5.oe2203.x86_64.rpm"
    ],
    "noarch": [
        "eclipse-p2-discovery-4.11-5.oe2203.noarch.rpm",
        "eclipse-jdt-4.11-5.oe2203.noarch.rpm"
    ]
}

Database specific

source
"https://repo.openeuler.org/security/data/osv/OESA-2022-1759.json"