UBUNTU-CVE-2019-10103

Source
https://ubuntu.com/security/CVE-2019-10103
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-10103.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2019-10103
Upstream
Published
2019-07-03T20:15:00Z
Modified
2026-01-20T16:44:38.912536Z
Severity
  • 8.1 (High) CVSS_V3 - CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • Ubuntu - low
Summary
[none]
Details

JetBrains IntelliJ IDEA projects created using the Kotlin (JS Client/JVM Server) IDE Template were resolving Gradle artifacts using an http connection, potentially allowing an MITM attack. This issue, which was fixed in Kotlin plugin version 1.3.30, is similar to CVE-2019-10101.

References

Affected packages

Ubuntu:22.04:LTS / intellij-community-idea

Package

Name
intellij-community-idea
Purl
pkg:deb/ubuntu/intellij-community-idea@183.5153.4-2?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

183.*
183.5153.4-2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "183.5153.4-2",
            "binary_name": "libintellij-core-java"
        },
        {
            "binary_version": "183.5153.4-2",
            "binary_name": "libintellij-extensions-java"
        },
        {
            "binary_version": "183.5153.4-2",
            "binary_name": "libintellij-jps-model-java"
        },
        {
            "binary_version": "183.5153.4-2",
            "binary_name": "libintellij-platform-api-java"
        },
        {
            "binary_version": "183.5153.4-2",
            "binary_name": "libintellij-platform-impl-java"
        },
        {
            "binary_version": "183.5153.4-2",
            "binary_name": "libintellij-utils-java"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-10103.json"

Ubuntu:24.04:LTS / intellij-community-idea

Package

Name
intellij-community-idea
Purl
pkg:deb/ubuntu/intellij-community-idea@183.5153.4-4ubuntu1?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

183.*
183.5153.4-3
183.5153.4-4
183.5153.4-4ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "183.5153.4-4ubuntu1",
            "binary_name": "libintellij-core-java"
        },
        {
            "binary_version": "183.5153.4-4ubuntu1",
            "binary_name": "libintellij-extensions-java"
        },
        {
            "binary_version": "183.5153.4-4ubuntu1",
            "binary_name": "libintellij-jps-model-java"
        },
        {
            "binary_version": "183.5153.4-4ubuntu1",
            "binary_name": "libintellij-platform-api-java"
        },
        {
            "binary_version": "183.5153.4-4ubuntu1",
            "binary_name": "libintellij-platform-impl-java"
        },
        {
            "binary_version": "183.5153.4-4ubuntu1",
            "binary_name": "libintellij-utils-java"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-10103.json"

Ubuntu:25.10 / intellij-community-idea

Package

Name
intellij-community-idea
Purl
pkg:deb/ubuntu/intellij-community-idea@183.5153.4-6?arch=source&distro=questing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

183.*
183.5153.4-5
183.5153.4-6

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "183.5153.4-6",
            "binary_name": "libintellij-core-java"
        },
        {
            "binary_version": "183.5153.4-6",
            "binary_name": "libintellij-extensions-java"
        },
        {
            "binary_version": "183.5153.4-6",
            "binary_name": "libintellij-jps-model-java"
        },
        {
            "binary_version": "183.5153.4-6",
            "binary_name": "libintellij-platform-api-java"
        },
        {
            "binary_version": "183.5153.4-6",
            "binary_name": "libintellij-platform-impl-java"
        },
        {
            "binary_version": "183.5153.4-6",
            "binary_name": "libintellij-utils-java"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-10103.json"