[Forgot Password]
Login  Register Subscribe

24003

 
 

131517

 
 

106647

 
 

909

 
 

84688

 
 

134

 
 
Paid content will be excluded from the download.

Filter
Matches : 84556 Download | Alert*

General data-binding functionality for Jackson: works on core streaming API.

General data-binding functionality for Jackson: works on core streaming API.

General data-binding functionality for Jackson: works on core streaming API.

General data-binding functionality for Jackson: works on core streaming API.

General data-binding functionality for Jackson: works on core streaming API.

General data-binding functionality for Jackson: works on core streaming API.

General data-binding functionality for Jackson: works on core streaming API.

Liao Xinxi discovered that jackson-databind, a Java library used to parse JSON and other data formats, did not properly validate user input before attemtping deserialization. This allowed an attacker to perform code execution by providing maliciously crafted input.

It was discovered that jackson-databind, a Java library used to parse JSON and other data formats, improperly validated user input prior to deserializing: following DSA-4004-1 for CVE-2017-7525, an additional set of classes was identified as unsafe for deserialization.

It was discovered that jackson-databind, a Java library used to parse JSON and other data formats, improperly validated user input prior to deserializing because of an incomplete fix for CVE-2017-7525.


Pages:      Start    8    9    10    11    12    13    14    15    16    17    18    19    20    21    ..   8455

© 2013 SecPod Technologies