Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-47248 PoC — Apache Arrow 代码问题漏洞

Source
Associated Vulnerability
Title:Apache Arrow 代码问题漏洞 (CVE-2023-47248)
Description:Apache Arrow是美国阿帕奇(Apache)基金会的一款用于内存数据处理的跨语言开发平台。该平台支持C、C++、C#、Go和Java等编程语言,并提供进程间通信等功能。 Apache Arrow 0.14.0版本至14.0.0版本存在安全漏洞,该漏洞源于存在不受信任的数据反序列化,允许攻击者执行任意代码。
Description
PyArrow Flight RPC from v0.14.0 through v14.0.0 allows remote attackers to execute arbitrary code via a maliciously crafted Python-defined extension type.
File Snapshot

id: CVE-2023-47248 info: name: PyArrow Flight RPC - Remote Code Execution author: smolse seve ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.