vulnerability

Oracle Linux: CVE-2020-36518: ELSA-2023-2312: jackson security update (MODERATE) (Multiple Advisories)

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
2020-08-13
Added
2023-05-17
Modified
2024-12-17

Description

jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
A flaw was found in the Jackson Databind package. This cause of the issue is due to a Java StackOverflow exception and a denial of service via a significant depth of nested objects.

Solution(s)

oracle-linux-upgrade-apache-commons-collectionsoracle-linux-upgrade-apache-commons-langoracle-linux-upgrade-apache-commons-netoracle-linux-upgrade-bea-stax-apioracle-linux-upgrade-fasterxml-oss-parentoracle-linux-upgrade-glassfish-fastinfosetoracle-linux-upgrade-glassfish-jaxb-apioracle-linux-upgrade-glassfish-jaxb-coreoracle-linux-upgrade-glassfish-jaxb-runtimeoracle-linux-upgrade-glassfish-jaxb-txw2oracle-linux-upgrade-idm-jssoracle-linux-upgrade-idm-jss-javadocoracle-linux-upgrade-idm-ldapjdkoracle-linux-upgrade-idm-ldapjdk-javadocoracle-linux-upgrade-idm-pki-acmeoracle-linux-upgrade-idm-pki-baseoracle-linux-upgrade-idm-pki-base-javaoracle-linux-upgrade-idm-pki-caoracle-linux-upgrade-idm-pki-kraoracle-linux-upgrade-idm-pki-serveroracle-linux-upgrade-idm-pki-symkeyoracle-linux-upgrade-idm-pki-toolsoracle-linux-upgrade-idm-tomcatjssoracle-linux-upgrade-jackson-annotationsoracle-linux-upgrade-jackson-bomoracle-linux-upgrade-jackson-coreoracle-linux-upgrade-jackson-databindoracle-linux-upgrade-jackson-jaxrs-json-provideroracle-linux-upgrade-jackson-jaxrs-providersoracle-linux-upgrade-jackson-module-jaxb-annotationsoracle-linux-upgrade-jackson-modules-baseoracle-linux-upgrade-jackson-parentoracle-linux-upgrade-jakarta-commons-httpclientoracle-linux-upgrade-javassistoracle-linux-upgrade-javassist-javadocoracle-linux-upgrade-pki-jackson-annotationsoracle-linux-upgrade-pki-jackson-coreoracle-linux-upgrade-pki-jackson-databindoracle-linux-upgrade-pki-jackson-jaxrs-json-provideroracle-linux-upgrade-pki-jackson-jaxrs-providersoracle-linux-upgrade-pki-jackson-module-jaxb-annotationsoracle-linux-upgrade-pki-servlet-engineoracle-linux-upgrade-python3-idm-pkioracle-linux-upgrade-relaxngdatatypeoracle-linux-upgrade-resteasyoracle-linux-upgrade-resteasy-javadocoracle-linux-upgrade-slf4joracle-linux-upgrade-slf4j-jdk14oracle-linux-upgrade-stax-exoracle-linux-upgrade-velocityoracle-linux-upgrade-xalan-j2oracle-linux-upgrade-xerces-j2oracle-linux-upgrade-xml-commons-apisoracle-linux-upgrade-xml-commons-resolveroracle-linux-upgrade-xmlstreambufferoracle-linux-upgrade-xsom
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.