pki-deps:10.6 security update
エラータID: AXSA:2024-8412:01
リリース日:
2024/09/12 Thursday - 17:03
題名:
pki-deps:10.6 security update
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- Jackson Databind には、Java のスタックオーバーフロー例外が
発生する問題があるため、リモートの攻撃者により、多重にネスト
されたオブジェクトの入力を介して、サービス拒否攻撃を可能とする
脆弱性が存在します。(CVE-2020-36518)
Modularity name: pki-deps
Stream name: 10.6
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2020-36518
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
追加情報:
N/A
ダウンロード:
SRPMS
- apache-commons-collections-3.2.2-10.module+el8+1766+957176a1.src.rpm
MD5: 2192f0f33e2d4923c1346e478d59c1d9
SHA-256: 3740579018256bd6dd4ae4a7e83ad6a508eddd768015dc97337fe7d673b90a22
Size: 631.54 kB - apache-commons-lang-2.6-21.module+el8+1766+957176a1.src.rpm
MD5: 7bc026207e8732be2f33404921a68cdc
SHA-256: c09a9ee8274b8e560876f1d393c277e11a0eea771ee0bab59aa929126c2fcc91
Size: 564.15 kB - apache-commons-net-3.6-3.module+el8+1766+957176a1.src.rpm
MD5: cf63a39172a6bf8416016077452c5376
SHA-256: 3eb3223fb1a53e23ccad3f275a25dd00c6616d9fcdb1fc7adfd50011a9cd27e5
Size: 433.45 kB - bea-stax-1.2.0-16.module+el8+1766+957176a1.src.rpm
MD5: 1cd39f5dfc8b186c96eff5c38ee24c89
SHA-256: 3b08adf4d8f715b5866eed1168c045ab10554e3cbf1bc64fd4c0ccb57a32da24
Size: 295.00 kB - fasterxml-oss-parent-49-1.module+el8+1766+957176a1.src.rpm
MD5: 697154b032d95416ba1ba9e5fe63b127
SHA-256: 828b37d6e55941549cf9bef8f2cd916b0809f9273724a49903ec34cb1ea4910f
Size: 28.04 kB - glassfish-fastinfoset-1.2.13-9.module+el8+1766+957176a1.src.rpm
MD5: 68e3e759ef352aaadf7edeca21d6b1dd
SHA-256: f4b5393dcfcefd689351e23a9d8aab8184292b10e39f46fc8d275b78515754b6
Size: 1.52 MB - glassfish-jaxb-api-2.2.12-8.module+el8+1766+957176a1.src.rpm
MD5: c38c6557cb4364c1e590a42ac0da6687
SHA-256: d8899fb3f3ec9ff10ebcb252ab39205b93212135a24c29b78bb14e33bf4524dc
Size: 241.89 kB - glassfish-jaxb-2.2.11-12.module+el8+1766+957176a1.src.rpm
MD5: 7ff84757eafa97b09b85d45ec38ce17e
SHA-256: 2bd3c507237691eb4cacda0b4b77b3c36ac9ce685984e93217f7e113b3f924c7
Size: 4.40 MB - glassfish-jax-rs-api-2.0.1-6.module+el8+1766+957176a1.src.rpm
MD5: 7917b69a6a99a8eb05a196b46b8a12b1
SHA-256: 85e04fe655d116e22961be7869dfa8e677c84ae85ff31a474a073f897defd24e
Size: 230.19 kB - jackson-annotations-2.14.2-1.module+el8+1766+957176a1.src.rpm
MD5: db06222480647bbc868ba2f2e22d4229
SHA-256: 95a9650e6e4756cc9541f19b8062c0810dc66d2038effc12d768122362c14a19
Size: 136.42 kB - jackson-bom-2.14.2-1.module+el8+1766+957176a1.src.rpm
MD5: d164148e7df15c086bb6fe5f0c6e2b5b
SHA-256: d9705e021f468278202dd8b554093156b44ab18838bcf7c08f4c3f7ef90c7582
Size: 76.62 kB - jackson-core-2.14.2-1.module+el8+1766+957176a1.src.rpm
MD5: ac0a0cc89d16da0f1b5fc429a9742cc7
SHA-256: 9c5f0620b25f7dfd408bdb9f077d1f6ffc0cefd72d1b5a6b1823133805d49d75
Size: 1.15 MB - jackson-databind-2.14.2-1.module+el8+1766+957176a1.src.rpm
MD5: b2a1b61ffc6f06eb98e661a2e655aa10
SHA-256: 38f446136144ca5dfbae1cc665738e7fd0891b287f3648c77641ff729fac2d52
Size: 1.56 MB - jackson-jaxrs-providers-2.14.2-1.module+el8+1766+957176a1.src.rpm
MD5: 4fe71a16cde3443fbf563a1ddca273c0
SHA-256: f13d6ef90098ce422bc13ed188f4261844af8d475c8a23a40b5890f6286f8eef
Size: 1.86 MB - jackson-modules-base-2.14.2-2.module+el8+1766+957176a1.src.rpm
MD5: 595833323cb661c55cd8602578669201
SHA-256: 105dab4b1b7b8b0af4a50e7b09a2f28c4b0a14fd637f62375a2a240462df45a2
Size: 2.26 MB - jackson-parent-2.14-1.module+el8+1766+957176a1.src.rpm
MD5: 233ca3f948f1153bfa2e024d51867a7c
SHA-256: 4b7543374111e4cdfdbefc529fe1e28282599a334a5155106f8c064d2c795c6d
Size: 68.56 kB - jakarta-commons-httpclient-3.1-28.module+el8+1766+957176a1.src.rpm
MD5: 0b7789f25862d6a667e631bfee387ab7
SHA-256: 798cb0084503e84349c8d3f2030a18d0d29e73aef8a8e7aff4a9b364bb958a80
Size: 1.81 MB - javassist-3.18.1-8.module+el8+1766+957176a1.src.rpm
MD5: 142f192b62cb95723d88355af350ecb8
SHA-256: d1ca70899847e55af841b8a829df6616e080dc38565df0c3ca6ab8e691be9b00
Size: 1.13 MB - msv-2013.6.1-10.module+el8+1766+957176a1.src.rpm
MD5: 16f691f8c869904ee5f8833c78b6adf6
SHA-256: 98b31b22ee8e9170462440854bc2d978fad88528c6d34ec0f502f091fa8d280f
Size: 768.27 kB - pki-servlet-engine-9.0.62-1.module+el8+1766+957176a1.src.rpm
MD5: 5fd0f4bce0296115f453fada0d3b1f40
SHA-256: 13e8470c18be72ad201a58c05a6f1dfecbe229f066f35eb302b7c6a7da3a396a
Size: 9.82 kB - relaxngcc-1.12-14.module+el8+1766+957176a1.src.rpm
MD5: 5016aa2f9a9a4d9d0791195d2542ca35
SHA-256: d8894262a9397815c0dea3cc348658f05053e537e59e914a584fa0657ec5480f
Size: 2.03 MB - relaxngDatatype-2011.1-7.module+el8+1766+957176a1.src.rpm
MD5: 630ad5e66804a4ea34f2d27683076062
SHA-256: 07b23b69d86e9d3eb437fbf8fcb1bf0a0d551fe33be1bc7f8028de47fab30354
Size: 22.17 kB - slf4j-1.7.25-4.module+el8+1766+957176a1.src.rpm
MD5: ea0ad9dfc946a30967bfced877a21395
SHA-256: c56a3dc5aa92a1f32a91654b3e3896e523648bf5407e275f1c102df7472370e4
Size: 3.29 MB - stax-ex-1.7.7-8.module+el8+1766+957176a1.src.rpm
MD5: 4a3575fb551ee4279c3c5f05f7d71e19
SHA-256: 4b4bfef85d09d01ea637631764fda797e7464760a22d3ccc87ea06951d21928d
Size: 49.04 kB - velocity-1.7-24.module+el8+1766+957176a1.src.rpm
MD5: 03b41d33425fed54f38ab784603e6d1a
SHA-256: e90b79f4351bd01657abe6f76308d4d9a93a9e4f16ba5b313115366ed807021e
Size: 1.51 MB - xalan-j2-2.7.1-38.module+el8+1766+957176a1.src.rpm
MD5: 6a3329892961cb39acba2702d72d4054
SHA-256: 11bf441c998fe41ceddfe8892a48ca6ab1abef3578ad9c82c31915bb07d9b751
Size: 3.24 MB - xerces-j2-2.11.0-34.module+el8+1766+957176a1.src.rpm
MD5: 76ba68fd7f197290f13fa621dd35025e
SHA-256: fad5ff6f469176245782095ee2aa31049b2c4a86d8098b2ebeb764639d2cd6dd
Size: 1.74 MB - xml-commons-apis-1.4.01-25.module+el8+1766+957176a1.src.rpm
MD5: f945e6f6e8aca1d96e6d44e4c29864c4
SHA-256: 5722f065fa2bd1c5f958fee77ea1b0e0328c48c10b8c4932c48a6598ded3549e
Size: 941.07 kB - xml-commons-resolver-1.2-26.module+el8+1766+957176a1.src.rpm
MD5: b82df70404788a6d2cc9e99760e9e7ef
SHA-256: 7fd16b86145fd0f171876a3aa8981c1c14e84acdf8a5a00f5848dfa11ee2fffc
Size: 273.42 kB - xmlstreambuffer-1.5.4-8.module+el8+1766+957176a1.src.rpm
MD5: be37d5b6b4113e1ca8099ebfdecdf468
SHA-256: 02591923d48411a52fcfbb6645808d7e8dbce9d012b42a5bab68187cc209835d
Size: 64.55 kB - xml-stylebook-1.0-0.25.b3_xalan2.svn313293.module+el8+1766+957176a1.src.rpm
MD5: 17c8e8bc79b17e449518d67a20de166d
SHA-256: 41bced9541dce4171c442349f247df28b13686f654e792d60236ce7fd5b4d23b
Size: 1.13 MB - xsom-0-19.20110809svn.module+el8+1766+957176a1.src.rpm
MD5: fa2d384a49a230503471a0d1d3448c9a
SHA-256: add15be006eb46c6a0f5eae8be8df11f02ef155ca2b5d6c2930416afd9e9a0b1
Size: 387.95 kB
Asianux Server 8 for x86_64
- apache-commons-collections-3.2.2-10.module+el8+1766+957176a1.noarch.rpm
MD5: 1225259724ba57460ac47a57a4c7d4cd
SHA-256: 2b1b2cc74cbf4b838c817b09d129d3fcc5b4d5bd957aabc7f0578169804184c6
Size: 535.78 kB - apache-commons-lang-2.6-21.module+el8+1766+957176a1.noarch.rpm
MD5: f448a44fb49b5cfc1a6a3bb08b525729
SHA-256: 563d54f348a684bfc7bbcaf5f22477bfdc5cbecf54ced84a7111f18dfb26a3c2
Size: 281.31 kB - apache-commons-net-3.6-3.module+el8+1766+957176a1.noarch.rpm
MD5: ebb5ea4d29008e342790afc3e4d5f278
SHA-256: b3925d0cbdddb1527fa12313de8cedfc64258ef6e5e7fce975f03ca556d497bd
Size: 295.69 kB - bea-stax-api-1.2.0-16.module+el8+1766+957176a1.noarch.rpm
MD5: 4979cf660e25f0a3af80216a48615f04
SHA-256: 7d4d29bdda465648b6cf7f8481ee801c5493769cea701d7c98be4e2aa631cb77
Size: 35.54 kB - fasterxml-oss-parent-49-1.module+el8+1766+957176a1.noarch.rpm
MD5: 1b7034673822d49b8ffc99aabdb7423c
SHA-256: 3994c190c9d11046bf683c5dd39ad523584b1e91badd805a7750ee167eab1262
Size: 19.73 kB - glassfish-fastinfoset-1.2.13-9.module+el8+1766+957176a1.noarch.rpm
MD5: ff921f56c87b14020c20334da53f159d
SHA-256: 9032162024fd164d66490b9985a705cee798051f8fa327568c59bd2909c1e80b
Size: 352.53 kB - glassfish-jaxb-api-2.2.12-8.module+el8+1766+957176a1.noarch.rpm
MD5: 0de70e63cef9a80f5c8397b24f46d481
SHA-256: 2438ce19f6cd17ad4bf6ecfb2b533579d7ceaff8915c70cb8199cc579b71fb62
Size: 100.25 kB - glassfish-jaxb-core-2.2.11-12.module+el8+1766+957176a1.noarch.rpm
MD5: 089b34e0cc53be66d5c04f0b1775c5b2
SHA-256: fd7785b248dfbb7ba3f8f90db74f9775ab72e8f5afbf59b9ae4c0079de4cc78d
Size: 156.98 kB - glassfish-jaxb-runtime-2.2.11-12.module+el8+1766+957176a1.noarch.rpm
MD5: 73b1ea6ad9b266c92ebe2cdc054cde80
SHA-256: 16e9de72849c4aa917d1c4da71666f8638bdbfb08643961c9682a3a41b2e7aab
Size: 935.90 kB - glassfish-jaxb-txw2-2.2.11-12.module+el8+1766+957176a1.noarch.rpm
MD5: d69764ae4b3f1eb19e34c2b245cf65e9
SHA-256: ebd07eb8fab2923af32eeb01bd0de36a04a8774b627a43a9eb419ea26ca78c1a
Size: 89.14 kB - jackson-annotations-2.14.2-1.module+el8+1766+957176a1.noarch.rpm
MD5: 8513d136698c491f74233c01b0b4f3da
SHA-256: 2552188c4e0d95b59cdd7f7b6014085829d3ec37cf7db2bc87db4b0d50d714a6
Size: 78.50 kB - jackson-bom-2.14.2-1.module+el8+1766+957176a1.noarch.rpm
MD5: eb6d8c79b53ca58e41d79011d57c833a
SHA-256: 557118529c3ba9d4afc98ab5a704c34768fc7fcdc40ca920326710fa00bab205
Size: 18.90 kB - jackson-core-2.14.2-1.module+el8+1766+957176a1.noarch.rpm
MD5: 6ed8991dabc828785b3fe573b9984e8e
SHA-256: afce0c2e9d5675dba725c27ec5fba4f3d7388466af48f1c5b104d343564b504a
Size: 447.53 kB - jackson-databind-2.14.2-1.module+el8+1766+957176a1.noarch.rpm
MD5: 0f02228972ec941f4af4ae820306c031
SHA-256: 883ebbf76af1b7363593f92b3f62d27b56f3ff873dfb3dd9597b2126f0955192
Size: 1.47 MB - jackson-jaxrs-json-provider-2.14.2-1.module+el8+1766+957176a1.noarch.rpm
MD5: eeec644064bd4fb3b1db99e911173c2b
SHA-256: 2bab63dc7c80a5e266bb2bd2e125ab6cefe06b121f1d4bd2a605b1c19e2b5e90
Size: 22.96 kB - jackson-jaxrs-providers-2.14.2-1.module+el8+1766+957176a1.noarch.rpm
MD5: 298639c0c8eb1d62ba6ca5cc1bcf11ad
SHA-256: 2b0d9d55fc2dd0aa6d1cd9adcaad9e28834f359ce8a6328e7e29579443fb509c
Size: 44.87 kB - jackson-module-jaxb-annotations-2.14.2-2.module+el8+1766+957176a1.noarch.rpm
MD5: 52dfe4fb5559b268c175dbe93a770056
SHA-256: b2d215025e1d523fabb70a494fb06542fb9056683aac23bb908cfd4940de128d
Size: 50.05 kB - jackson-modules-base-2.14.2-2.module+el8+1766+957176a1.noarch.rpm
MD5: 3e9131ea4ab5e3c045c6d470e11ac8fd
SHA-256: 3983ee9beb79a0d454b0d01478ecb4f4a3b8196c6feb8e1ce6e30ea3361c52ab
Size: 20.06 kB - jackson-parent-2.14-1.module+el8+1766+957176a1.noarch.rpm
MD5: 2ca416e3a008e23cc151b017c9589af3
SHA-256: 187c88216f0be1e93f186a05703eabbdedfeac94f792f93e3dfcb125ef740dfc
Size: 15.19 kB - jakarta-commons-httpclient-3.1-28.module+el8+1766+957176a1.noarch.rpm
MD5: c5f63f4e819778d1704eb97356cca5d0
SHA-256: f9e9fea6e490421896af29f18fbd188ae25de808f276dcee4c704ca303a4da81
Size: 246.55 kB - javassist-3.18.1-8.module+el8+1766+957176a1.noarch.rpm
MD5: 2a2d016a2dedac1fe8e3da3c73741bf8
SHA-256: 9e66de8473dc05b75c5b99207b1b6766ddc8306f45e19c2cc1239f2d526f6041
Size: 680.82 kB - javassist-javadoc-3.18.1-8.module+el8+1766+957176a1.noarch.rpm
MD5: 2b1e7eba7e899b7d73796e21a5c8fa69
SHA-256: 14b5b8e8eaba5b0ac4e717e363479990f8425eac74490561e1f92d33d53b40e2
Size: 781.01 kB - pki-servlet-engine-9.0.62-1.module+el8+1766+957176a1.noarch.rpm
MD5: fef852c790f0d18b8fd0cff647395c17
SHA-256: df51ec1b4c9642ae1172ca366a302c94a9dac94e746becc7f6ff9b055995814a
Size: 8.33 kB - relaxngDatatype-2011.1-7.module+el8+1766+957176a1.noarch.rpm
MD5: 187c811ee504ad27743bfe720f88c0d4
SHA-256: efb29e363dbd5064e05fdee585c9cae3f2bd32a256b72e4b22c66edd6379af86
Size: 26.26 kB - slf4j-1.7.25-4.module+el8+1766+957176a1.noarch.rpm
MD5: 041e33c66eca636334919d5b4a495cd7
SHA-256: 231eb62fdbdda3f122ca5a53bb30dc036c5bdd15a7f00cc1a91ab0cf1b7199bb
Size: 75.60 kB - slf4j-jdk14-1.7.25-4.module+el8+1766+957176a1.noarch.rpm
MD5: 36891bc58c97cc91b3b126cee24e90a4
SHA-256: 50e36be4ca4a0de6c5f28166181d8e7a8e3e52fb060163a45b0c572963b6efe3
Size: 23.61 kB - stax-ex-1.7.7-8.module+el8+1766+957176a1.noarch.rpm
MD5: ac70e6de0325cc8fb073fe642f98674b
SHA-256: c7c48219d3fddf260a20748a613fd631feabe7c39bc36e09f5e0d9b4483c08e0
Size: 54.32 kB - velocity-1.7-24.module+el8+1766+957176a1.noarch.rpm
MD5: 450e9f75863e76d50c99e956d36d496e
SHA-256: 92f600c98251e0ef24c7f9607ea69b93ea2c0297d7eda1680ff3b34d656e08d6
Size: 435.44 kB - xalan-j2-2.7.1-38.module+el8+1766+957176a1.noarch.rpm
MD5: 27143c817c29bb6a43ae802bf4dbd8a1
SHA-256: 60cc2c4faf99914196f924fe2975405f2710a7801a622c469cbbe1c2b3997d8f
Size: 1.89 MB - xerces-j2-2.11.0-34.module+el8+1766+957176a1.noarch.rpm
MD5: 076f5fa99f5fdf15e5eeb36ee97c84f3
SHA-256: a107e6a844cdc0ea8786dbf9dd9fd627ab5221101fd431862f2522ea1ccf332a
Size: 1.16 MB - xml-commons-apis-1.4.01-25.module+el8+1766+957176a1.noarch.rpm
MD5: 73b76434c4120b929b58f6ce4dbf7227
SHA-256: feee1f5847836917a46756edff5e687ec78d2b7a45630ca301e4021d4b78478a
Size: 233.14 kB - xml-commons-resolver-1.2-26.module+el8+1766+957176a1.noarch.rpm
MD5: ec74a73252b4cd0944555d5faf5d68f1
SHA-256: 786d363ce62977c1d862e3c69973a6c50d00a963210267b7ada71a48db62f548
Size: 114.26 kB - xmlstreambuffer-1.5.4-8.module+el8+1766+957176a1.noarch.rpm
MD5: e15cae9897c862bf54411bb6ca9a561a
SHA-256: dafe9b76fc804f2c83e8f84e1deb0051ac76ab1910b885339591dfeabbc7192d
Size: 85.94 kB - xsom-0-19.20110809svn.module+el8+1766+957176a1.noarch.rpm
MD5: 8cf29906fe1e0ef6b7b179eee8a86846
SHA-256: d131a7d040f2ea04efad9e17c07c6f34c2c0947a1c48fd4f98157e79236907ea
Size: 397.51 kB