First published: Tue Jul 19 2022(Updated: )
This release of Red Hat build of Quarkus 2.7.6 includes security updates, bug<br>fixes, and enhancements. For more information, see the release notes page listed<br>in the References section.<br>Security Fix(es):<br><li> CVE-2020-36518 jackson-databind: denial of service via a large depth of nested objects [quarkus-2]</li>
Affected Software | Affected Version | How to fix |
---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2022:5596 is classified as moderate.
To fix RHSA-2022:5596, update your Red Hat build of Quarkus to version 2.7.6 or later.
RHSA-2022:5596 addresses CVE-2020-36518, which can lead to a denial of service via large input.
The RHSA-2022:5596 release includes security updates, bug fixes, and enhancements.
RHSA-2022:5596 is specifically for the Red Hat build of Quarkus version 2.7.6.