CVE-2020-36518
11.03.2022, 07:15
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.Enginsight
Vendor | Product | Version |
---|---|---|
fasterxml | jackson-databind | 𝑥 < 2.12.6.1 |
fasterxml | jackson-databind | 2.13.0 ≤ 𝑥 < 2.13.2.1 |
oracle | big_data_spatial_and_graph | 𝑥 < 23.1 |
oracle | coherence | 14.1.1.0.0 |
oracle | commerce_platform | 11.3.0 |
oracle | commerce_platform | 11.3.1 |
oracle | commerce_platform | 11.3.2 |
oracle | communications_billing_and_revenue_management | 12.0.0.4.0 ≤ 𝑥 ≤ 12.0.0.6.0 |
oracle | communications_cloud_native_core_binding_support_function | 22.1.3 |
oracle | communications_cloud_native_core_console | 1.9.0 |
oracle | communications_cloud_native_core_network_repository_function | 22.1.2 |
oracle | communications_cloud_native_core_network_repository_function | 22.2.0 |
oracle | communications_cloud_native_core_network_slice_selection_function | 22.1.0 |
oracle | communications_cloud_native_core_network_slice_selection_function | 22.1.1 |
oracle | communications_cloud_native_core_security_edge_protection_proxy | 22.1.1 |
oracle | communications_cloud_native_core_service_communication_proxy | 22.2.0 |
oracle | communications_cloud_native_core_unified_data_repository | 22.2.0 |
oracle | financial_services_analytical_applications_infrastructure | 8.0.7 ≤ 𝑥 ≤ 8.1.0.0 |
oracle | financial_services_analytical_applications_infrastructure | 8.1.1.0 |
oracle | financial_services_analytical_applications_infrastructure | 8.1.2.0 |
oracle | financial_services_analytical_applications_infrastructure | 8.1.2.1 |
oracle | financial_services_behavior_detection_platform | 8.1.1.0 ≤ 𝑥 ≤ 8.1.2.1 |
oracle | financial_services_behavior_detection_platform | 8.0.7.0.0 |
oracle | financial_services_behavior_detection_platform | 8.0.8 |
oracle | financial_services_crime_and_compliance_management_studio | 8.0.8.2.0 |
oracle | financial_services_crime_and_compliance_management_studio | 8.0.8.3.0 |
oracle | financial_services_enterprise_case_management | 8.1.1.0 ≤ 𝑥 ≤ 8.1.2.1 |
oracle | financial_services_enterprise_case_management | 8.0.7.1 |
oracle | financial_services_enterprise_case_management | 8.0.7.2 |
oracle | financial_services_enterprise_case_management | 8.0.8.0 |
oracle | financial_services_enterprise_case_management | 8.0.8.1 |
oracle | financial_services_trade-based_anti_money_laundering | 8.0.7 |
oracle | financial_services_trade-based_anti_money_laundering | 8.0.8 |
oracle | global_lifecycle_management_nextgen_oui_framework | 𝑥 < 13.9.4.2.2 |
oracle | global_lifecycle_management_nextgen_oui_framework | 13.9.4.2.2 |
oracle | global_lifecycle_management_opatch | 𝑥 < 12.2.0.1.30 |
oracle | graph_server_and_client | 𝑥 < 22.2.0 |
oracle | health_sciences_empirica_signal | 9.1.0.5.2 |
oracle | peoplesoft_enterprise_peopletools | 8.58 |
oracle | peoplesoft_enterprise_peopletools | 8.59 |
oracle | primavera_gateway | 17.12.0 ≤ 𝑥 ≤ 17.12.11 |
oracle | primavera_gateway | 18.8.0 ≤ 𝑥 ≤ 18.8.14 |
oracle | primavera_gateway | 19.12.0 ≤ 𝑥 ≤ 19.12.13 |
oracle | primavera_gateway | 20.12.0 ≤ 𝑥 ≤ 20.12.18 |
oracle | primavera_gateway | 21.12.0 ≤ 𝑥 ≤ 21.12.1 |
oracle | primavera_p6_enterprise_project_portfolio_management | 17.12.0.0 ≤ 𝑥 ≤ 17.12.20.4 |
oracle | primavera_p6_enterprise_project_portfolio_management | 18.8.0.0 ≤ 𝑥 ≤ 18.8.25.4 |
oracle | primavera_p6_enterprise_project_portfolio_management | 19.12.0 ≤ 𝑥 ≤ 19.12.19.0 |
oracle | primavera_p6_enterprise_project_portfolio_management | 20.12.0.0 ≤ 𝑥 ≤ 21.12.4.0 |
oracle | primavera_unifier | 17.0 ≤ 𝑥 ≤ 17.12 |
oracle | primavera_unifier | 18.0 |
oracle | primavera_unifier | 19.12 |
oracle | primavera_unifier | 20.12 |
oracle | primavera_unifier | 21.12 |
oracle | retail_sales_audit | 15.0.3.1 |
oracle | sd-wan_edge | 9.0 |
oracle | sd-wan_edge | 9.1 |
oracle | spatial_studio | 𝑥 < 20.1.0 |
oracle | utilities_framework | 4.3.0.5.0 |
oracle | utilities_framework | 4.3.0.6.0 |
oracle | utilities_framework | 4.4.0.0.0 |
oracle | utilities_framework | 4.4.0.2.0 |
oracle | utilities_framework | 4.4.0.3.0 |
oracle | utilities_framework | 4.4.0.5.0 |
oracle | weblogic_server | 12.2.1.3.0 |
oracle | weblogic_server | 12.2.1.4.0 |
oracle | weblogic_server | 14.1.1.0.0 |
debian | debian_linux | 9.0 |
debian | debian_linux | 10.0 |
debian | debian_linux | 11.0 |
netapp | active_iq_unified_manager | - |
netapp | active_iq_unified_manager | - |
netapp | active_iq_unified_manager | - |
netapp | cloud_insights_acquisition_unit | - |
netapp | oncommand_insight | - |
netapp | oncommand_workflow_automation | - |
netapp | snap_creator_framework | - |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References