CVE-2020-25649

Published: Dic 03, 2020 Last Modified: Nov 21, 2024 EU-VD ID: EUVD-2021-0525 Aliases: GHSA-288c-cq4h-88gq
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 7,5
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: high
Availability: none
MEDIUM 5,0
Access Vector: network
Access Complexity: low
Authentication: none
Confidentiality: none
Integrity: partial
Availability: none

Description

AI Translation Available

A flaw was found in FasterXML Jackson Databind, where it did not have entity expansion secured properly. This flaw allows vulnerability to XML external entity (XXE) attacks. The highest threat from this vulnerability is data integrity.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0002
Percentile
0,0th
Updated

EPSS Score Trend (Last 90 Days)

611

Improper Restriction of XML External Entity Reference

Draft
Common Consequences
Security Scopes Affected:
Confidentiality Integrity Availability
Potential Impacts:
Read Application Data Read Files Or Directories Bypass Protection Mechanism Dos: Resource Consumption (Cpu) Dos: Resource Consumption (Memory)
Applicable Platforms
Languages: Not Language-Specific, XML
Technologies: Not Technology-Specific, Web Based
View CWE Details
Application

Communications Services Gatekeeper by Oracle

cpe:2.3:a:oracle:communications_services_gatekeeper:7.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Retail Xstore Point Of Service by Oracle

cpe:2.3:a:oracle:retail_xstore_point_of_service:19.0.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Apis by Oracle

cpe:2.3:a:oracle:banking_apis:21.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Insurance Policy Administration by Oracle

cpe:2.3:a:oracle:insurance_policy_administration:11.0.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Platform by Oracle

cpe:2.3:a:oracle:banking_platform:2.6.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Treasury Management by Oracle

cpe:2.3:a:oracle:banking_treasury_management:4.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Insurance Policy Administration by Oracle

Version Range Affected
From 11.1.0 (inclusive)
To 11.3.0 (inclusive)
cpe:2.3:a:oracle:insurance_policy_administration:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Health Sciences Empirica Signal by Oracle

cpe:2.3:a:oracle:health_sciences_empirica_signal:9.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Commerce Platform by Oracle

cpe:2.3:a:oracle:commerce_platform:11.2.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Platform by Oracle

cpe:2.3:a:oracle:banking_platform:2.7.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Network Charging And Control by Oracle

cpe:2.3:a:oracle:communications_network_charging_and_control:12.0.4.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Jackson-Databind by Fasterxml

Version Range Affected
From 2.10.0 (inclusive)
To 2.10.5.1 (exclusive)
cpe:2.3:a:fasterxml:jackson-databind:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Jackson-Databind by Fasterxml

Version Range Affected
From 2.6.0 (inclusive)
To 2.6.7.4 (exclusive)
cpe:2.3:a:fasterxml:jackson-databind:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Coherence by Oracle

cpe:2.3:a:oracle:coherence:12.2.1.4.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Fedora by Fedoraproject

cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Platform by Oracle

cpe:2.3:a:oracle:banking_platform:2.10.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Primavera Gateway by Oracle

Version Range Affected
From 19.12.0 (inclusive)
To 19.12.10 (inclusive)
cpe:2.3:a:oracle:primavera_gateway:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Retail Service Backbone by Oracle

cpe:2.3:a:oracle:retail_service_backbone:15.0.3.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Utilities Framework by Oracle

cpe:2.3:a:oracle:utilities_framework:4.4.0.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Convergent Charging Controller by Oracle

cpe:2.3:a:oracle:communications_convergent_charging_controller:12.0.4.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Interactive Session Recorder by Oracle

cpe:2.3:a:oracle:communications_interactive_session_recorder:6.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Retail Xstore Point Of Service by Oracle

cpe:2.3:a:oracle:retail_xstore_point_of_service:18.0.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Retail Xstore Point Of Service by Oracle

cpe:2.3:a:oracle:retail_xstore_point_of_service:16.0.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Primavera Gateway by Oracle

cpe:2.3:a:oracle:primavera_gateway:20.12.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Jd Edwards Enterpriseone Tools by Oracle

Version Range Affected
To 9.2.5.3 (exclusive)
cpe:2.3:a:oracle:jd_edwards_enterpriseone_tools:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Primavera Gateway by Oracle

Version Range Affected
From 18.8.0 (inclusive)
To 18.8.11 (inclusive)
cpe:2.3:a:oracle:primavera_gateway:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Oncommand Workflow Automation by Netapp

cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Webcenter Portal by Oracle

cpe:2.3:a:oracle:webcenter_portal:12.2.1.4.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Agile Product Lifecycle Management Integration Pack by Oracle

cpe:2.3:a:oracle:agile_product_lifecycle_management_integration_pack:3.6:*:*:*:*:e-business_suite:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Insurance Rules Palette by Oracle

Version Range Affected
From 11.1.0 (inclusive)
To 11.3.0 (inclusive)
cpe:2.3:a:oracle:insurance_rules_palette:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Oncommand Api Services by Netapp

cpe:2.3:a:netapp:oncommand_api_services:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Coherence by Oracle

cpe:2.3:a:oracle:coherence:14.1.1.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Platform by Oracle

cpe:2.3:a:oracle:banking_platform:2.7.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Primavera Gateway by Oracle

Version Range Affected
From 17.7 (inclusive)
To 17.12 (inclusive)
cpe:2.3:a:oracle:primavera_gateway:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Apis by Oracle

Version Range Affected
From 18.1 (inclusive)
To 18.3 (inclusive)
cpe:2.3:a:oracle:banking_apis:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Service Level Manager by Netapp

cpe:2.3:a:netapp:service_level_manager:-:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Communications Messaging Server by Oracle

cpe:2.3:o:oracle:communications_messaging_server:8.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Jackson-Databind by Fasterxml

Version Range Affected
From 2.9.0 (inclusive)
To 2.9.10.7 (exclusive)
cpe:2.3:a:fasterxml:jackson-databind:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Sd-Wan Edge by Oracle

cpe:2.3:a:oracle:sd-wan_edge:9.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Billing And Revenue Management by Oracle

cpe:2.3:a:oracle:communications_billing_and_revenue_management:7.5.0.23.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Utilities Framework by Oracle

cpe:2.3:a:oracle:utilities_framework:4.4.0.2.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Apis by Oracle

cpe:2.3:a:oracle:banking_apis:20.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Utilities Framework by Oracle

cpe:2.3:a:oracle:utilities_framework:4.4.0.3.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Apis by Oracle

cpe:2.3:a:oracle:banking_apis:19.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Primavera Gateway by Oracle

Version Range Affected
From 17.12.0 (inclusive)
To 17.12.11 (inclusive)
cpe:2.3:a:oracle:primavera_gateway:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Iotdb by Apache

Version Range Affected
To 0.12.0 (exclusive)
cpe:2.3:a:apache:iotdb:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Utilities Framework by Oracle

cpe:2.3:a:oracle:utilities_framework:4.3.0.6.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Evolved Communications Application Server by Oracle

cpe:2.3:a:oracle:communications_evolved_communications_application_server:7.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Health Sciences Empirica Signal by Oracle

cpe:2.3:a:oracle:health_sciences_empirica_signal:9.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Jd Edwards Enterpriseone Orchestrator by Oracle

Version Range Affected
To 9.2.5.3 (exclusive)
cpe:2.3:a:oracle:jd_edwards_enterpriseone_orchestrator:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Offline Mediation Controller by Oracle

cpe:2.3:a:oracle:communications_offline_mediation_controller:12.0.0.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Pricing Design Center by Oracle

cpe:2.3:a:oracle:communications_pricing_design_center:12.0.0.4.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Utilities Framework by Oracle

cpe:2.3:a:oracle:utilities_framework:4.3.0.5.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Retail Xstore Point Of Service by Oracle

cpe:2.3:a:oracle:retail_xstore_point_of_service:20.0.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Unified Inventory Management by Oracle

cpe:2.3:a:oracle:communications_unified_inventory_management:7.4.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Cloud Native Core Unified Data Repository by Oracle

cpe:2.3:a:oracle:communications_cloud_native_core_unified_data_repository:1.4.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Platform by Oracle

cpe:2.3:a:oracle:banking_platform:2.9.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Quarkus by Quarkus

Version Range Affected
To 1.6.1 (inclusive)
cpe:2.3:a:quarkus:quarkus:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Instant Messaging Server by Oracle

cpe:2.3:a:oracle:communications_instant_messaging_server:10.0.1.5.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Agile Plm by Oracle

cpe:2.3:a:oracle:agile_plm:9.3.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Apis by Oracle

cpe:2.3:a:oracle:banking_apis:19.1:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Blockchain Platform by Oracle

Version Range Affected
To 21.1.2 (exclusive)
cpe:2.3:a:oracle:blockchain_platform:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Webcenter Portal by Oracle

cpe:2.3:a:oracle:webcenter_portal:12.2.1.3.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Retail Xstore Point Of Service by Oracle

cpe:2.3:a:oracle:retail_xstore_point_of_service:17.0.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Retail Service Backbone by Oracle

cpe:2.3:a:oracle:retail_service_backbone:16.0.3:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Billing And Revenue Management by Oracle

cpe:2.3:a:oracle:communications_billing_and_revenue_management:12.0.0.3.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Retail Service Backbone by Oracle

cpe:2.3:a:oracle:retail_service_backbone:14.1.3.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Goldengate Application Adapters by Oracle

cpe:2.3:a:oracle:goldengate_application_adapters:19.1.0.0.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Communications Interactive Session Recorder by Oracle

cpe:2.3:a:oracle:communications_interactive_session_recorder:6.4:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Communications Messaging Server by Oracle

cpe:2.3:o:oracle:communications_messaging_server:8.0.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Commerce Platform by Oracle

Version Range Affected
From 11.3.0 (inclusive)
To 11.3.2 (inclusive)
cpe:2.3:a:oracle:commerce_platform:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Insurance Rules Palette by Oracle

cpe:2.3:a:oracle:insurance_rules_palette:11.0.2:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Banking Platform by Oracle

cpe:2.3:a:oracle:banking_platform:2.8.0:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://bugzilla.redhat.com/show_bug.cgi?id=1887664
Issue Tracking Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1887664
https://github.com/FasterXML/jackson-databind/issues/2589
https://lists.apache.org/thread.html/r011d1430e8f40dff9550c3bc5d0f48b14c01ba8ae…
https://lists.apache.org/thread.html/r024b7bda9c43c5560d81238748775c5ecfe01b572…
https://lists.apache.org/thread.html/r04529cedaca40c2ff90af4880493f9c88a8ebf4d1…
https://lists.apache.org/thread.html/r0881e23bd9034c8f51fdccdc8f4d085ba985dcd73…
https://lists.apache.org/thread.html/r0b8dc3acd4503e4ecb6fbd6ea7d95f59941168d84…
https://lists.apache.org/thread.html/r1b7ed0c4b6c4301d4dfd6fdbc5581b0a789d3240c…
https://lists.apache.org/thread.html/r2882fc1f3032cd7be66e28787f04ec6f1874ac68d…
https://lists.apache.org/thread.html/r2b6ddb3a4f4cd11d8f6305011e1b7438ba813511f…
https://lists.apache.org/thread.html/r2eb66c182853c69ecfb52f63d3dec09495e9b65be…
https://lists.apache.org/thread.html/r2f5c5479f99398ef344b7ebd4d90bc3316236c45d…
https://lists.apache.org/thread.html/r31f4ee7d561d56a0c2c2c6eb1d6ce3e05917ff965…
https://lists.apache.org/thread.html/r3e6ae311842de4e64c5d560a475b7f9cc7e0a9a86…
https://lists.apache.org/thread.html/r407538adec3185dd35a05c9a26ae2f74425b15132…
https://lists.apache.org/thread.html/r45e7350dfc92bb192f3f88e9971c11ab2be0953cc…
https://lists.apache.org/thread.html/r5b130fe668503c4b7e2caf1b16f86b7f2070fd1b7…
https://lists.apache.org/thread.html/r5f8a1608d758936bd6bbc5eed980777437b611537…
https://lists.apache.org/thread.html/r605764e05e201db33b3e9c2e66ff620658f07ad74…
https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01…
https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01…
https://lists.apache.org/thread.html/r63c87aab97155f3f3cbe11d030c4a184ea0de440e…
https://lists.apache.org/thread.html/r68d029ee74ab0f3b0569d0c05f5688cb45dd3abe9…
https://lists.apache.org/thread.html/r6a4f3ef6edfed2e0884269d84798f766779bbbc10…
https://lists.apache.org/thread.html/r6a6df5647583541e3cb71c75141008802f7025cee…
https://lists.apache.org/thread.html/r6b11eca1d646f45eb0d35d174e6b1e47cfae5295b…
https://lists.apache.org/thread.html/r6b11eca1d646f45eb0d35d174e6b1e47cfae5295b…
https://lists.apache.org/thread.html/r6cbd599b80e787f02ff7a1391d9278a03f37d6a6f…
https://lists.apache.org/thread.html/r6e3d4f7991542119a4ca6330271d7fbf7b9fb3aba…
https://lists.apache.org/thread.html/r73bef1bb601a9f093f915f8075eb49fcca51efade…
https://lists.apache.org/thread.html/r765283e145049df9b8998f14dcd444345555aae02…
https://lists.apache.org/thread.html/r78d53a0a269c18394daf5940105dc8c7f9a239950…
https://lists.apache.org/thread.html/r7cb5b4b3e4bd41a8042e5725b7285877a17bcbf07…
https://lists.apache.org/thread.html/r86c78bf7656fdb2dab69cbf17f3d7492300f77102…
https://lists.apache.org/thread.html/r8764bb835bcb8e311c882ff91dd3949c9824e905e…
https://lists.apache.org/thread.html/r8937a7160717fe8b2221767163c4de4f65bc54664…
https://lists.apache.org/thread.html/r8937a7160717fe8b2221767163c4de4f65bc54664…
https://lists.apache.org/thread.html/r8ae961c80930e2717c75025414ce48a432cea1137…
https://lists.apache.org/thread.html/r900d4408c4189b376d1ec580ea7740ea6f8710dc2…
https://lists.apache.org/thread.html/r90d1e97b0a743cf697d89a792a9b669909cc5a169…
https://lists.apache.org/thread.html/r91722ecfba688b0c565675f8bf380269fde8ec62b…
https://lists.apache.org/thread.html/r94c7e86e546120f157264ba5ba61fd29b3a8d530e…
https://lists.apache.org/thread.html/r95a297eb5fd1f2d3a2281f15340e2413f952e9d55…
https://lists.apache.org/thread.html/r98bfe3b90ea9408f12c4b447edcb5638703d80bc7…
https://lists.apache.org/thread.html/ra1157e57a01d25e36b0dc17959ace758fc21ba367…
https://lists.apache.org/thread.html/ra409f798a1e5a6652b7097429b388650ccd65fd95…
https://lists.apache.org/thread.html/ra95faf968f3463acb3f31a6fbec31453fc5045325…
https://lists.apache.org/thread.html/raf13235de6df1d47a717199e1ecd700dff3236632…
https://lists.apache.org/thread.html/rb674520b9f6c808c1bf263b1369e14048ec324361…
https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c…
https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c…
https://lists.apache.org/thread.html/rc15e90bbef196a5c6c01659e015249d6c9a73581c…
https://lists.apache.org/thread.html/rc82ff47853289e9cd17f5cfbb053c04cafc75ee32…
https://lists.apache.org/thread.html/rc88f2fa2b7bd6443921727aeee7704a1fb02433e7…
https://lists.apache.org/thread.html/rc959cdb57c4fe198316130ff4a5ecbf9d680e3560…
https://lists.apache.org/thread.html/rd317f15a675d114dbf5b488d27eeb2467b4424356…
https://lists.apache.org/thread.html/rd57c7582adc90e233f23f3727db3df9115b27a823…
https://lists.apache.org/thread.html/rd6f6bf848c2d47fa4a85c27d011d948778b8f7e58…
https://lists.apache.org/thread.html/rdca8711bb7aa5d47a44682606cd0ea3497e2e922f…
https://lists.apache.org/thread.html/rdf9a34726482222c90d50ae1b9847881de67dde8c…
https://lists.apache.org/thread.html/re16f81d3ad49a93dd2f0cba9f8fc88e5fb89f30bf…
https://lists.apache.org/thread.html/re96dc7a13e13e56190a5d80f9e5440a0d0c83aeec…
https://lists.apache.org/thread.html/rf1809a1374041a969d77afab21fc38925de066bc9…
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorapr…
https://security.netapp.com/advisory/ntap-20210108-0007/
https://www.oracle.com/security-alerts/cpuApr2021.html
https://www.oracle.com/security-alerts/cpuapr2022.html
https://www.oracle.com/security-alerts/cpujan2022.html
https://www.oracle.com//security-alerts/cpujul2021.html
https://www.oracle.com/security-alerts/cpujul2022.html
https://www.oracle.com/security-alerts/cpuoct2021.html
https://bugzilla.redhat.com/show_bug.cgi?id=1887664
Issue Tracking Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1887664
https://github.com/FasterXML/jackson-databind/issues/2589
https://lists.apache.org/thread.html/r011d1430e8f40dff9550c3bc5d0f48b14c01ba8ae…
https://lists.apache.org/thread.html/r024b7bda9c43c5560d81238748775c5ecfe01b572…
https://lists.apache.org/thread.html/r04529cedaca40c2ff90af4880493f9c88a8ebf4d1…
https://lists.apache.org/thread.html/r0881e23bd9034c8f51fdccdc8f4d085ba985dcd73…
https://lists.apache.org/thread.html/r0b8dc3acd4503e4ecb6fbd6ea7d95f59941168d84…
https://lists.apache.org/thread.html/r1b7ed0c4b6c4301d4dfd6fdbc5581b0a789d3240c…
https://lists.apache.org/thread.html/r2882fc1f3032cd7be66e28787f04ec6f1874ac68d…
https://lists.apache.org/thread.html/r2b6ddb3a4f4cd11d8f6305011e1b7438ba813511f…
https://lists.apache.org/thread.html/r2eb66c182853c69ecfb52f63d3dec09495e9b65be…
https://lists.apache.org/thread.html/r2f5c5479f99398ef344b7ebd4d90bc3316236c45d…
https://lists.apache.org/thread.html/r31f4ee7d561d56a0c2c2c6eb1d6ce3e05917ff965…
https://lists.apache.org/thread.html/r3e6ae311842de4e64c5d560a475b7f9cc7e0a9a86…
https://lists.apache.org/thread.html/r407538adec3185dd35a05c9a26ae2f74425b15132…
https://lists.apache.org/thread.html/r45e7350dfc92bb192f3f88e9971c11ab2be0953cc…
https://lists.apache.org/thread.html/r5b130fe668503c4b7e2caf1b16f86b7f2070fd1b7…
https://lists.apache.org/thread.html/r5f8a1608d758936bd6bbc5eed980777437b611537…
https://lists.apache.org/thread.html/r605764e05e201db33b3e9c2e66ff620658f07ad74…
https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01…
https://lists.apache.org/thread.html/r61db8e7dcb56dc000a5387a88f7a473bacec5ee01…
https://lists.apache.org/thread.html/r63c87aab97155f3f3cbe11d030c4a184ea0de440e…
https://lists.apache.org/thread.html/r68d029ee74ab0f3b0569d0c05f5688cb45dd3abe9…
https://lists.apache.org/thread.html/r6a4f3ef6edfed2e0884269d84798f766779bbbc10…
https://lists.apache.org/thread.html/r6a6df5647583541e3cb71c75141008802f7025cee…
https://lists.apache.org/thread.html/r6b11eca1d646f45eb0d35d174e6b1e47cfae5295b…
https://lists.apache.org/thread.html/r6b11eca1d646f45eb0d35d174e6b1e47cfae5295b…
https://lists.apache.org/thread.html/r6cbd599b80e787f02ff7a1391d9278a03f37d6a6f…
https://lists.apache.org/thread.html/r6e3d4f7991542119a4ca6330271d7fbf7b9fb3aba…
https://lists.apache.org/thread.html/r73bef1bb601a9f093f915f8075eb49fcca51efade…
https://lists.apache.org/thread.html/r765283e145049df9b8998f14dcd444345555aae02…
https://lists.apache.org/thread.html/r78d53a0a269c18394daf5940105dc8c7f9a239950…
https://lists.apache.org/thread.html/r7cb5b4b3e4bd41a8042e5725b7285877a17bcbf07…
https://lists.apache.org/thread.html/r86c78bf7656fdb2dab69cbf17f3d7492300f77102…
https://lists.apache.org/thread.html/r8764bb835bcb8e311c882ff91dd3949c9824e905e…
https://lists.apache.org/thread.html/r8937a7160717fe8b2221767163c4de4f65bc54664…
https://lists.apache.org/thread.html/r8937a7160717fe8b2221767163c4de4f65bc54664…
https://lists.apache.org/thread.html/r8ae961c80930e2717c75025414ce48a432cea1137…
https://lists.apache.org/thread.html/r900d4408c4189b376d1ec580ea7740ea6f8710dc2…
https://lists.apache.org/thread.html/r90d1e97b0a743cf697d89a792a9b669909cc5a169…
https://lists.apache.org/thread.html/r91722ecfba688b0c565675f8bf380269fde8ec62b…
https://lists.apache.org/thread.html/r94c7e86e546120f157264ba5ba61fd29b3a8d530e…
https://lists.apache.org/thread.html/r95a297eb5fd1f2d3a2281f15340e2413f952e9d55…
https://lists.apache.org/thread.html/r98bfe3b90ea9408f12c4b447edcb5638703d80bc7…
https://lists.apache.org/thread.html/ra1157e57a01d25e36b0dc17959ace758fc21ba367…
https://lists.apache.org/thread.html/ra409f798a1e5a6652b7097429b388650ccd65fd95…
https://lists.apache.org/thread.html/ra95faf968f3463acb3f31a6fbec31453fc5045325…
https://lists.apache.org/thread.html/raf13235de6df1d47a717199e1ecd700dff3236632…
https://lists.apache.org/thread.html/rb674520b9f6c808c1bf263b1369e14048ec324361…
https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c…
https://lists.apache.org/thread.html/rbf4ce74b0d1fa9810dec50ba3ace0caeea677af7c…
https://lists.apache.org/thread.html/rc15e90bbef196a5c6c01659e015249d6c9a73581c…
https://lists.apache.org/thread.html/rc82ff47853289e9cd17f5cfbb053c04cafc75ee32…
https://lists.apache.org/thread.html/rc88f2fa2b7bd6443921727aeee7704a1fb02433e7…
https://lists.apache.org/thread.html/rc959cdb57c4fe198316130ff4a5ecbf9d680e3560…
https://lists.apache.org/thread.html/rd317f15a675d114dbf5b488d27eeb2467b4424356…
https://lists.apache.org/thread.html/rd57c7582adc90e233f23f3727db3df9115b27a823…
https://lists.apache.org/thread.html/rd6f6bf848c2d47fa4a85c27d011d948778b8f7e58…
https://lists.apache.org/thread.html/rdca8711bb7aa5d47a44682606cd0ea3497e2e922f…
https://lists.apache.org/thread.html/rdf9a34726482222c90d50ae1b9847881de67dde8c…
https://lists.apache.org/thread.html/re16f81d3ad49a93dd2f0cba9f8fc88e5fb89f30bf…
https://lists.apache.org/thread.html/re96dc7a13e13e56190a5d80f9e5440a0d0c83aeec…
https://lists.apache.org/thread.html/rf1809a1374041a969d77afab21fc38925de066bc9…
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorapr…
https://security.netapp.com/advisory/ntap-20210108-0007/
https://www.oracle.com/security-alerts/cpuApr2021.html
https://www.oracle.com/security-alerts/cpuapr2022.html
https://www.oracle.com/security-alerts/cpujan2022.html
https://www.oracle.com//security-alerts/cpujul2021.html
https://www.oracle.com/security-alerts/cpujul2022.html
https://www.oracle.com/security-alerts/cpuoct2021.html