Описание
ELSA-2019-2720: pki-deps:10.6 security update (IMPORTANT)
jackson-databind
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
Module pki-deps:10.6 is enabled
apache-commons-collections
3.2.2-10.module+el8.0.0+5332+2d497d9a
apache-commons-lang
2.6-21.module+el8.0.0+5332+2d497d9a
bea-stax-api
1.2.0-16.module+el8.0.0+5332+2d497d9a
glassfish-fastinfoset
1.2.13-9.module+el8.0.0+5332+2d497d9a
glassfish-jaxb-api
2.2.12-8.module+el8.0.0+5332+2d497d9a
glassfish-jaxb-core
2.2.11-11.module+el8.0.0+5332+2d497d9a
glassfish-jaxb-runtime
2.2.11-11.module+el8.0.0+5332+2d497d9a
glassfish-jaxb-txw2
2.2.11-11.module+el8.0.0+5332+2d497d9a
jackson-annotations
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-core
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-databind
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-jaxrs-json-provider
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-jaxrs-providers
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-module-jaxb-annotations
2.7.6-4.module+el8.0.0+5332+2d497d9a
jakarta-commons-httpclient
3.1-28.module+el8.0.0+5332+2d497d9a
javassist
3.18.1-8.module+el8.0.0+5332+2d497d9a
javassist-javadoc
3.18.1-8.module+el8.0.0+5332+2d497d9a
pki-servlet-4.0-api
9.0.7-14.module+el8.0.0+5332+2d497d9a
pki-servlet-container
9.0.7-14.module+el8.0.0+5332+2d497d9a
python-nss-doc
1.0.1-10.module+el8.0.0+5332+2d497d9a
python3-nss
1.0.1-10.module+el8.0.0+5332+2d497d9a
relaxngDatatype
2011.1-7.module+el8.0.0+5332+2d497d9a
resteasy
3.0.26-3.module+el8.0.0+5332+2d497d9a
slf4j
1.7.25-4.module+el8.0.0+5332+2d497d9a
slf4j-jdk14
1.7.25-4.module+el8.0.0+5332+2d497d9a
stax-ex
1.7.7-8.module+el8.0.0+5332+2d497d9a
velocity
1.7-24.module+el8.0.0+5332+2d497d9a
xalan-j2
2.7.1-38.module+el8.0.0+5332+2d497d9a
xerces-j2
2.11.0-34.module+el8.0.0+5332+2d497d9a
xml-commons-apis
1.4.01-25.module+el8.0.0+5332+2d497d9a
xml-commons-resolver
1.2-26.module+el8.0.0+5332+2d497d9a
xmlstreambuffer
1.5.4-8.module+el8.0.0+5332+2d497d9a
xsom
0-19.20110809svn.module+el8.0.0+5332+2d497d9a
Oracle Linux x86_64
Module pki-deps:10.6 is enabled
apache-commons-collections
3.2.2-10.module+el8.0.0+5332+2d497d9a
apache-commons-lang
2.6-21.module+el8.0.0+5332+2d497d9a
bea-stax-api
1.2.0-16.module+el8.0.0+5332+2d497d9a
glassfish-fastinfoset
1.2.13-9.module+el8.0.0+5332+2d497d9a
glassfish-jaxb-api
2.2.12-8.module+el8.0.0+5332+2d497d9a
glassfish-jaxb-core
2.2.11-11.module+el8.0.0+5332+2d497d9a
glassfish-jaxb-runtime
2.2.11-11.module+el8.0.0+5332+2d497d9a
glassfish-jaxb-txw2
2.2.11-11.module+el8.0.0+5332+2d497d9a
jackson-annotations
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-core
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-databind
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-jaxrs-json-provider
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-jaxrs-providers
2.9.8-1.module+el8.0.0+5332+2d497d9a
jackson-module-jaxb-annotations
2.7.6-4.module+el8.0.0+5332+2d497d9a
jakarta-commons-httpclient
3.1-28.module+el8.0.0+5332+2d497d9a
javassist
3.18.1-8.module+el8.0.0+5332+2d497d9a
javassist-javadoc
3.18.1-8.module+el8.0.0+5332+2d497d9a
pki-servlet-4.0-api
9.0.7-14.module+el8.0.0+5332+2d497d9a
pki-servlet-container
9.0.7-14.module+el8.0.0+5332+2d497d9a
python-nss-doc
1.0.1-10.module+el8.0.0+5332+2d497d9a
python3-nss
1.0.1-10.module+el8.0.0+5332+2d497d9a
relaxngDatatype
2011.1-7.module+el8.0.0+5332+2d497d9a
resteasy
3.0.26-3.module+el8.0.0+5332+2d497d9a
slf4j
1.7.25-4.module+el8.0.0+5332+2d497d9a
slf4j-jdk14
1.7.25-4.module+el8.0.0+5332+2d497d9a
stax-ex
1.7.7-8.module+el8.0.0+5332+2d497d9a
velocity
1.7-24.module+el8.0.0+5332+2d497d9a
xalan-j2
2.7.1-38.module+el8.0.0+5332+2d497d9a
xerces-j2
2.11.0-34.module+el8.0.0+5332+2d497d9a
xml-commons-apis
1.4.01-25.module+el8.0.0+5332+2d497d9a
xml-commons-resolver
1.2-26.module+el8.0.0+5332+2d497d9a
xmlstreambuffer
1.5.4-8.module+el8.0.0+5332+2d497d9a
xsom
0-19.20110809svn.module+el8.0.0+5332+2d497d9a
Связанные CVE
Связанные уязвимости
FasterXML jackson-databind 2.x before 2.9.9.1 might allow attackers to have a variety of impacts by leveraging failure to block the logback-core class from polymorphic deserialization. Depending on the classpath content, remote code execution may be possible.
FasterXML jackson-databind 2.x before 2.9.9.1 might allow attackers to have a variety of impacts by leveraging failure to block the logback-core class from polymorphic deserialization. Depending on the classpath content, remote code execution may be possible.
FasterXML jackson-databind 2.x before 2.9.9.1 might allow attackers to have a variety of impacts by leveraging failure to block the logback-core class from polymorphic deserialization. Depending on the classpath content, remote code execution may be possible.
FasterXML jackson-databind 2.x before 2.9.9.1 might allow attackers to ...