binary_package_name: null
trusted_certs: null
Format: 1.8
Date: Sun, 11 Jun 2023 15:38:24 -0700
Source: libjettison-java
Binary: libjettison-java
Architecture: all
Version: 1.5.4-1
Distribution: sid
Urgency: medium
Maintainer: Debian Java Maintainers <pkg-java-maintainers@lists.alioth.debian.org>
Changed-By: tony mancill <tmancill@debian.org>
Description:
libjettison-java - collection of StAX parsers and writers for JSON
Closes: 1033846
Changes:
libjettison-java (1.5.4-1) unstable; urgency=medium
.
* Team upload.
* New upstream version 1.5.4 (Closes: #1033846)
- Fix CVE-2023-1436 - Infinite recursion in Jettison leads
to denial of service when creating a crafted JSONArray
Checksums-Sha1:
9bd30ebba0a343e6b71f092dad4fa727125cda8e 85452 libjettison-java_1.5.4-1_all.deb
787608190ec1ee665d5d204433d9ed41f3e9f88c 14317 libjettison-java_1.5.4-1_arm64.buildinfo
Checksums-Sha256:
a0dcb77b7941f1f94d441e13afc5f58e7fee8f20a06fc114ada9ca2948a54796 85452 libjettison-java_1.5.4-1_all.deb
10a14171fef8e31dd1daeec15014ee977d935ac35f8c7bac7c51ac2dbe3fea7e 14317 libjettison-java_1.5.4-1_arm64.buildinfo
Files:
ef4faa6e97e6ee5bf054e3c088645101 85452 java optional libjettison-java_1.5.4-1_all.deb
f90fbcc51a215911244e6fbc0c013c78 14317 java optional libjettison-java_1.5.4-1_arm64.buildinfo
Relation | Direction | Type | Name | |
---|---|---|---|---|
relates-to | Package upload | libjettison-java_1.5.4-1 |
|