VDB

BDU%3A2019-04087

BDU%3A2019-04087 PUBLISHED CVSS 10 CRITICAL

Уязвимость функции FasterXM Java-библиотеки для грамматического разбора JSON файлов jackson-databind, позволяющая нарушителю выполнить произвольный код

Risk Scores

CVSS 2.0
10

Affected Products

VendorProductVersions
Oracle Corp., Fedora Project, Red Hat Inc., Сообщество свободного программного обеспечения, FasterXML, LLC, АО «Концерн ВНИИНС»JD Edwards EnterpriseOne Tools, Primavera Unifier, Fedora, Oracle Retail Customer Management and Segmentation Foundation, Red Hat Enterprise Linux, Red Hat JBoss Fuse, Debian GNU/Linux, OpenShift Container Platform, Primavera Gateway, Retail Xstore Point of Service, Banking Platform, OpenShift Application Runtimes, Jackson-databind, Financial Services Analytical Applications Infrastructure, Red Hat Process Automation Manager, Communications Instant Messaging Server, Siebel UI Framework, Red Hat AMQ Streams, JBoss Enterprise Application Platform, Red Hat Single Sign-On, Red Hat Descision Manager, JD Edwards EnterpriseOne Orchestrator, Siebel Engineering - Installer & Deployment, JBoss EAP, ОС ОН «Стрелец» (запись в едином реестре российских программ №6177)

Timeline

  • Nov 19, 2019 CVE Published
  • Nov 21, 2023 CVE Updated
  • Mar 18, 2026 Distribution Patch
  • Mar 18, 2026 Distribution Patch
  • Mar 18, 2026 Distribution Patch
  • Mar 18, 2026 Distribution Patch
  • Mar 18, 2026 Distribution Patch
  • Mar 18, 2026 Distribution Patch
  • Mar 18, 2026 Distribution Patch
  • Mar 18, 2026 Distribution Patch
  • Mar 18, 2026 Distribution Patch
  • Mar 18, 2026 Distribution Patch
Open in Interactive Console →
$ Console Community · 100/wk Open console ›