Bug#870848: marked as done (jackson-databind: CVE-2017-7525: Deserialization vulnerability via readValue method of ObjectMapper)

Debian Bug Tracking System owner at bugs.debian.org
Sat Nov 18 22:21:12 UTC 2017


Your message dated Sat, 18 Nov 2017 22:19:00 +0000
with message-id <E1eGBS0-0005u9-4t at fasolo.debian.org>
and subject line Bug#870848: fixed in jackson-databind 2.4.2-2+deb8u1
has caused the Debian Bug report #870848,
regarding jackson-databind: CVE-2017-7525: Deserialization vulnerability via readValue method of ObjectMapper
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner at bugs.debian.org
immediately.)


-- 
870848: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=870848
Debian Bug Tracking System
Contact owner at bugs.debian.org with problems
-------------- next part --------------
An embedded message was scrubbed...
From: Salvatore Bonaccorso <carnil at debian.org>
Subject: jackson-databind: CVE-2017-7525: Deserialization vulnerability via readValue method of ObjectMapper
Date: Sat, 05 Aug 2017 21:16:26 +0200
Size: 2573
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20171118/e3191a4e/attachment-0002.mht>
-------------- next part --------------
An embedded message was scrubbed...
From: Markus Koschany <apo at debian.org>
Subject: Bug#870848: fixed in jackson-databind 2.4.2-2+deb8u1
Date: Sat, 18 Nov 2017 22:19:00 +0000
Size: 6339
URL: <http://lists.alioth.debian.org/pipermail/pkg-java-maintainers/attachments/20171118/e3191a4e/attachment-0003.mht>


More information about the pkg-java-maintainers mailing list