CVE-2019-10172
18.11.2019, 17:15
A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes.Enginsight
| Vendor | Product | Version |
|---|---|---|
| fasterxml | jackson-mapper-asl | 1.9.0 ≤ 𝑥 ≤ 1.9.13 |
| redhat | jboss_enterprise_application_platform | 7.0 |
| redhat | jboss_fuse | 7.0.0 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| apache | spark | 3.0.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libjackson-json-java |
|
References