VDB

RHSA-2020%3A4312

RHSA-2020%3A4312 PUBLISHED CVSS 7.5 HIGH

An update for rh-maven35-jackson-databind is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Affected Products

VendorProductVersions
Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v. 7.7)
Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v. 7.6)
Red Hat Software Collections for Red Hat Enterprise Linux Server (v. 7)
Red Hat Software Collections for Red Hat Enterprise Linux Workstation (v. 7)
rh

Timeline

  • Oct 22, 2020 CVE Published
  • Feb 8, 2024 PoC Published
  • Mar 5, 2026 CVE Updated
  • Apr 22, 2026 Distribution Patch
  • Apr 22, 2026 Distribution Patch
  • Apr 22, 2026 Security Advisory
  • May 1, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›