{"id":"GHSA-98hq-4wmw-98w9","summary":"Arbitrary code execution in de.tum.in.ase:artemis-java-test-sandbox","details":"### Summary\nBecause of the missing `checkLink(String)` override in the SecurityManager, students can load libraries and execute arbitrary code.\n\n### Details\nUsing `System.load(String)` or `System.loadLibrary\u200b(String)` students can load and execute arbitrary code.\n\n```java\nprivate static native void start(List\u003cString\u003e args);\n\npublic static void main(String[] args) {\n  System.load(new File(\"path_to_lib.so\").getAbsolutePath());\n  start(List.of(args));\n}\n```\n\nAdding this to the security manager (and a translation) should fix the issue:\n```java\n@Override\npublic void checkExec(String cmd) {\n  try {\n    if (enterPublicInterface())\n      return;\n    throw new SecurityException(localized(\"security.error_link\")); //$NON-NLS-1$\n  } finally {\n    exitPublicInterface();\n  }\n}\n```\n\n### PoC\nSee details.\n\n### Impact\nArbitrary code execution.","aliases":["CVE-2024-23681"],"modified":"2026-07-08T06:27:25.485385396Z","published":"2023-02-10T23:52:13Z","database_specific":{"github_reviewed":true,"github_reviewed_at":"2023-02-10T23:52:13Z","nvd_published_at":null,"cwe_ids":["CWE-284"],"severity":"HIGH"},"references":[{"type":"WEB","url":"https://github.com/ls1intum/Ares/security/advisories/GHSA-98hq-4wmw-98w9"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-23681"},{"type":"PACKAGE","url":"https://github.com/ls1intum/Ares"},{"type":"WEB","url":"https://vulncheck.com/advisories/vc-advisory-GHSA-98hq-4wmw-98w9"}],"affected":[{"package":{"name":"de.tum.in.ase:artemis-java-test-sandbox","ecosystem":"Maven","purl":"pkg:maven/de.tum.in.ase/artemis-java-test-sandbox"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.11.2"}]}],"versions":["1.0.0","1.0.1","1.1.0","1.1.1","1.10.0","1.10.1","1.11.0","1.11.1","1.2.0","1.2.1","1.2.2","1.3.0","1.3.1","1.3.2","1.3.3","1.3.4","1.4.0","1.4.1","1.4.2","1.4.3","1.4.4","1.4.5","1.4.6","1.4.7","1.5.0","1.5.1","1.5.2","1.5.3","1.5.4","1.5.5","1.6.0","1.7.0","1.7.1","1.7.2","1.7.3","1.7.5","1.7.6","1.8.0","1.9.0","1.9.1","1.9.2"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2023/02/GHSA-98hq-4wmw-98w9/GHSA-98hq-4wmw-98w9.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H"}]}