vulnerability

Rocky Linux: CVE-2020-36518: pki-core-10.6-and-pki-deps-10.6 (RLSA-2024-3061)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
03/11/2022
Added
06/17/2024
Modified
11/26/2024

Description

jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.

Solution(s)

rocky-upgrade-idm-jssrocky-upgrade-idm-jss-debuginforocky-upgrade-idm-jss-javadocrocky-upgrade-idm-pki-symkeyrocky-upgrade-idm-pki-symkey-debuginforocky-upgrade-idm-pki-toolsrocky-upgrade-idm-pki-tools-debuginforocky-upgrade-jss-debugsourcerocky-upgrade-pki-core-debuginforocky-upgrade-pki-core-debugsource
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.