Description
A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2091-1 | libjackson-json-java security update |
Debian DLA |
DLA-2342-1 | libjackson-json-java security update |
EUVD |
EUVD-2020-0314 | A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes. |
Github GHSA |
GHSA-r6j9-8759-g62w | Improper Restriction of XML External Entity Reference in jackson-mapper-asl |
Ubuntu USN |
USN-4741-1 | Jackson vulnerabilities |
References
History
No history.
Subscriptions
Apache
Subscribe
Spark
Subscribe
Debian
Subscribe
Debian Linux
Subscribe
Fasterxml
Subscribe
Jackson-mapper-asl
Subscribe
Redhat
Subscribe
Jboss Data Grid
Subscribe
Jboss Enterprise Application Platform
Subscribe
Jboss Enterprise Application Platform Cd
Subscribe
Jboss Fuse
Subscribe
Jboss Single Sign On
Subscribe
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T22:10:09.989Z
Reserved: 2019-03-27T00:00:00.000Z
Link: CVE-2019-10172
No data.
Status : Modified
Published: 2019-11-18T17:15:11.063
Modified: 2024-11-21T04:18:34.477
Link: CVE-2019-10172
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Github GHSA
Ubuntu USN