imPC@ndo IT

Tracker / CVE-2019-10172

CVE-2019-10172

High 7.5

A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes.

Affected products and versions

apache spark
debian debian_linux
fasterxml jackson-mapper-asl · 1.9.0 → 1.9.13
redhat jboss_enterprise_application_platform
redhat jboss_fuse

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References