pki-deps:10.6 security update
エラータID: AXSA:2025-10775:01
リリース日:
2025/08/22 Friday - 17:22
題名:
pki-deps:10.6 security update
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- jackson-core には、スタックベースのバッファオーバーフローが
発生する問題があるため、リモートの攻撃者により、サービス拒否攻撃を
可能とする脆弱性が存在します。(CVE-2025-52999)
Modularity name: pki-deps
Stream name: 10.6
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2025-52999
jackson-core contains core low-level incremental ("streaming") parser and generator abstractions used by Jackson Data Processor. In versions prior to 2.15.0, if a user parses an input file and it has deeply nested data, Jackson could end up throwing a StackoverflowError if the depth is particularly large. jackson-core 2.15.0 contains a configurable limit for how deep Jackson will traverse in an input document, defaulting to an allowable depth of 1000. jackson-core will throw a StreamConstraintsException if the limit is reached. jackson-databind also benefits from this change because it uses jackson-core to parse JSON inputs. As a workaround, users should avoid parsing input files from untrusted sources.
jackson-core contains core low-level incremental ("streaming") parser and generator abstractions used by Jackson Data Processor. In versions prior to 2.15.0, if a user parses an input file and it has deeply nested data, Jackson could end up throwing a StackoverflowError if the depth is particularly large. jackson-core 2.15.0 contains a configurable limit for how deep Jackson will traverse in an input document, defaulting to an allowable depth of 1000. jackson-core will throw a StreamConstraintsException if the limit is reached. jackson-databind also benefits from this change because it uses jackson-core to parse JSON inputs. As a workaround, users should avoid parsing input files from untrusted sources.
追加情報:
N/A
ダウンロード:
SRPMS
- apache-commons-collections-3.2.2-10.module+el8+1897+732269ec.src.rpm
MD5: 9cf1ba6de38309a2f6ae4aeddfc088eb
SHA-256: 8e5119bb269c37704085980cee6e23a524be7430f1ac9b6d2e26f4a1d4ce602e
Size: 631.54 kB - apache-commons-lang-2.6-21.module+el8+1897+732269ec.src.rpm
MD5: f6664029c7f9b75b8d5b524ef16e75dc
SHA-256: ea4248830832d90253e054181788f19b9dbec02867706e9a4bd724a51985cd8e
Size: 564.15 kB - apache-commons-net-3.6-3.module+el8+1897+732269ec.src.rpm
MD5: 3fc1d0323b6091c92bf724b1015e33e8
SHA-256: 93bcba0fbe4f1a9cd6f70df05c830b736c028c7f1f5633b90b5d66e8fc29e1c8
Size: 433.45 kB - bea-stax-1.2.0-16.module+el8+1897+732269ec.src.rpm
MD5: 7854088cb3dc12af7b9d17ec2c960c3a
SHA-256: bbc87cbdaaa9c1af9890b7bb93f76b4766af4d7a4e20e0b37c34115c0f9462c4
Size: 295.00 kB - fasterxml-oss-parent-69-1.module+el8+1897+732269ec.src.rpm
MD5: 724e89c463c208b2b1ea94b462f30089
SHA-256: bc4180f6ddda82f56a0551795be5e7a28a21310f04815b19fba4433406ce5716
Size: 29.23 kB - glassfish-fastinfoset-1.2.13-9.module+el8+1897+732269ec.src.rpm
MD5: b993d556d1dc686ca19fd76002bdc71e
SHA-256: d26cf46c6ff5a976cbaac87ff4b26bc6e05c2e1b31a807dfcda2fdbea4242744
Size: 1.52 MB - glassfish-jaxb-api-2.2.12-8.module+el8+1897+732269ec.src.rpm
MD5: 0b08aa7c895fc49f884c41f2e96057b9
SHA-256: ffb5d1227efae45cb88d0ea5975d72e19371e1b4cd0ef4f4d5beff44ae303aa5
Size: 241.88 kB - glassfish-jaxb-2.2.11-12.module+el8+1897+732269ec.src.rpm
MD5: 01f221166e70e9c23b1dcbab0b3de2e9
SHA-256: 2cb46068cf4d58b5000eba08970a9cb30848ee5cd6fe1b439caa9ca8c1a0e25c
Size: 4.40 MB - glassfish-jax-rs-api-2.0.1-6.module+el8+1897+732269ec.src.rpm
MD5: 70029951e6375a1213802d14067cf0a7
SHA-256: 662b4db90ea00b5e622e77fe106ba4500a93c42d2664db00686a67db7acd2fdf
Size: 230.19 kB - jackson-annotations-2.19.1-1.module+el8+1897+732269ec.src.rpm
MD5: 7afbe1244ba534fb577dd1975e716822
SHA-256: 0dd19d7d5f3f170e5f3e532b59e212923e1abffc7116031dac07fa4d8e44bb84
Size: 89.71 kB - jackson-bom-2.19.1-1.module+el8+1897+732269ec.src.rpm
MD5: 40c890aebd405c9bc11195d6c52e9f70
SHA-256: 0a04a417dd2f005db79168b5664c205e132a551ceff2ecb44496ec1d9a3dcfba
Size: 76.84 kB - jackson-core-2.19.1-1.module+el8+1897+732269ec.src.rpm
MD5: d18839b8a9c8f93ece774726f8290e23
SHA-256: 09aa89072447da4539d32f1d382162f6b1d3d8e6350de5954f2fae71468ef7e9
Size: 1.18 MB - jackson-databind-2.19.1-1.module+el8+1897+732269ec.src.rpm
MD5: c7267d64ec3a215676b992690d461a14
SHA-256: befb9443d98f1d21d9fce74198159aab3e5a3758b84ef529bcbbbe4f63d41fea
Size: 1.65 MB - jackson-jaxrs-providers-2.19.1-1.module+el8+1897+732269ec.src.rpm
MD5: 2a7a5b0d29de11719aa5c137a6e50312
SHA-256: a8aebc40d2fc0af67444727d3bd85b18671f984bacb5035f7ff14a5fa78e7bb9
Size: 1.87 MB - jackson-modules-base-2.19.1-1.module+el8+1897+732269ec.src.rpm
MD5: ab02555be7fa5aeba975dc9359858c05
SHA-256: 188afa990574239da7be5122b259e0bc3187bf772721296652766b1fb33c0417
Size: 2.25 MB - jackson-parent-2.19.1-1.module+el8+1897+732269ec.src.rpm
MD5: 51ac36b6b46a771d22eea65857c0447c
SHA-256: 8a1e26e812f731be557891e999a232274b752991e58641c46978484b1d6d9b17
Size: 68.21 kB - jakarta-commons-httpclient-3.1-28.module+el8+1897+732269ec.src.rpm
MD5: 5f1fc340eab5387673338d0cf54194ce
SHA-256: b6064112b0c1969d8635473f33bb77306205779a38faabe89d27727d804c8127
Size: 1.81 MB - javassist-3.18.1-8.module+el8+1897+732269ec.src.rpm
MD5: 37feae45d90154ad17cac768f621efe7
SHA-256: 081d6d0c800e572fa2b69e53ee82090a8277ab6ca9ba75e87480b8c72c76abfd
Size: 1.13 MB - msv-2013.6.1-10.module+el8+1897+732269ec.src.rpm
MD5: 19f27d718dc7d73fffb31af8e0cdf627
SHA-256: 24cf59fd0346cac8ec2522f9e8e84cd0b7fad747ac1836854ead84e365b56aea
Size: 768.27 kB - pki-servlet-engine-9.0.62-1.module+el8+1897+732269ec.src.rpm
MD5: a9a6083f1db1dea55499d3ebc74c6276
SHA-256: e24e23de078d138145ef9a7c02aefb47ec7da908e1dc4fe66ffc9a8d472a9a55
Size: 9.82 kB - relaxngcc-1.12-14.module+el8+1897+732269ec.src.rpm
MD5: 4e66dd22ece315484af343ed811ca533
SHA-256: dd05afd7440d9a0ad893d2407b3b052770176ca9a9e96934a84b2bc9d700dd62
Size: 2.03 MB - relaxngDatatype-2011.1-7.module+el8+1897+732269ec.src.rpm
MD5: f9a745d94e76dd17d14c74e8cea78563
SHA-256: 9b497a9039fae8c771deed4ee060a48c505f5610b81862f872763951a5da1791
Size: 22.17 kB - slf4j-1.7.25-4.module+el8+1897+732269ec.src.rpm
MD5: f1febaf3c4e3ccd49c1b4aefbac39bb7
SHA-256: fd74e9dd2d6d64c35793116683fa5f1e16cbf08cf9a53e3cc8dccff5cd43126d
Size: 3.29 MB - stax-ex-1.7.7-8.module+el8+1897+732269ec.src.rpm
MD5: 72ae0c0f625dcf49a70c96a95acac899
SHA-256: 71368cb1a4d376aa9f9998c7dd23e92f9d4fd10a9b03bec79eff5e29df00be88
Size: 49.04 kB - velocity-1.7-24.module+el8+1897+732269ec.src.rpm
MD5: f1174c91454f0b3fdb02a81704018e13
SHA-256: f3c16cfeef2672a3cf785ecd29ceaffed7ed3c30beb67062915a4005d4c4b857
Size: 1.51 MB - xalan-j2-2.7.1-38.module+el8+1897+732269ec.src.rpm
MD5: 844051ed50e014f13c10f58bd55cc2e7
SHA-256: 9728ef2610fd561e1c6ddf9b1c2161b7c8054ac597e71ffa6ddc55e35408422d
Size: 3.24 MB - xerces-j2-2.11.0-34.module+el8+1897+732269ec.src.rpm
MD5: 18c91471d20dfcbec0cb726041d453f6
SHA-256: a1629adb6817ab25a50d24999bc729888433627026063fe9d18dedd2c72f5cea
Size: 1.74 MB - xml-commons-apis-1.4.01-25.module+el8+1897+732269ec.src.rpm
MD5: 4de6374b43df1fbdbd3f277cff176992
SHA-256: bde408223570960a8f4201cabb4fefe86f736a7156e91f4f00d3513473059797
Size: 941.07 kB - xml-commons-resolver-1.2-26.module+el8+1897+732269ec.src.rpm
MD5: 2b4da2861f5df45d2cc28b36d168b5a1
SHA-256: 6c4fc802501a65e596879d8610ae10236a2913f5a0a0e65e1bc62caab2e11e47
Size: 273.42 kB - xmlstreambuffer-1.5.4-8.module+el8+1897+732269ec.src.rpm
MD5: 7851f8b470d1deb123695e43bd4d804c
SHA-256: 988322a66e29a1847972cc01fd2099696ed9ac0cdbe3be5f4fdc5925b4e0c738
Size: 64.54 kB - xml-stylebook-1.0-0.25.b3_xalan2.svn313293.module+el8+1897+732269ec.src.rpm
MD5: 193de8dd8762dded1b9b5ec4d34e273c
SHA-256: 5b311e4097a452c97ba3d8286d90b2ee465b3730814607972f3a66f1056933b3
Size: 1.13 MB - xsom-0-19.20110809svn.module+el8+1897+732269ec.src.rpm
MD5: 6c8c0bbd9cefe4cf9337b50396bdab32
SHA-256: 2e27e52f4e2e6d43df625ee85219eb34fc41639c91504a510b0e97857eb7a374
Size: 387.95 kB
Asianux Server 8 for x86_64
- apache-commons-collections-3.2.2-10.module+el8+1897+732269ec.noarch.rpm
MD5: 2c7239925217a03cf427214688a735bf
SHA-256: b28b85fd88dcf3024608da8d2e23f77ade86f234e1b11ffae90498547d5982e8
Size: 535.89 kB - apache-commons-lang-2.6-21.module+el8+1897+732269ec.noarch.rpm
MD5: 2f64be41a1499aa38734fd5eafc059f5
SHA-256: 37e4d434653115fe3b0023890d9b055017e4ffa91eca0af590d0553a875bb39c
Size: 281.32 kB - apache-commons-net-3.6-3.module+el8+1897+732269ec.noarch.rpm
MD5: 679792c209959693a172820cbbb3ea52
SHA-256: 6c075cc5c90a0563ac7a4247f0862f39f294b767b3b61834481628970ce75224
Size: 295.64 kB - bea-stax-api-1.2.0-16.module+el8+1897+732269ec.noarch.rpm
MD5: d99aa1ab79ea75d6922f8f9158fc037a
SHA-256: 58221f49ee8513f89143099f534827ec43c3a2daa99984b6811e6245f38ae76a
Size: 35.54 kB - fasterxml-oss-parent-69-1.module+el8+1897+732269ec.noarch.rpm
MD5: b544a61c70f3d001a0c278d6db81c85a
SHA-256: f7764530f5d6923384ed50d3cf8ca9fc371645e8873c5dc1ddbed3e616671ca4
Size: 19.84 kB - glassfish-fastinfoset-1.2.13-9.module+el8+1897+732269ec.noarch.rpm
MD5: 7cdc1390645458018310bd6c4d4257d9
SHA-256: 9fa7da3d74c49ec8e58258f52e45d24172c0defa5062b145fcae24d34c615c13
Size: 352.65 kB - glassfish-jaxb-api-2.2.12-8.module+el8+1897+732269ec.noarch.rpm
MD5: 704047f69de1c236537d29e6a7c5129f
SHA-256: eb5ac8278dccd7c7d1c81d1b272ad59a1fcb8f3f89f933446a77f8d7e10a2b6e
Size: 100.33 kB - glassfish-jaxb-core-2.2.11-12.module+el8+1897+732269ec.noarch.rpm
MD5: 76b307d1663099281dc99c742faa6c17
SHA-256: 08e1515380f116ce22ab6716d03fbb4ea1f5628e9f7b65fd2287f73128e914f6
Size: 156.89 kB - glassfish-jaxb-runtime-2.2.11-12.module+el8+1897+732269ec.noarch.rpm
MD5: 72b577586a67f6356be0ad8e40edb2c5
SHA-256: 02403ba05bd617c546af10095cd8a91c74df875295a4403c7cd70b59d59ab0e8
Size: 935.97 kB - glassfish-jaxb-txw2-2.2.11-12.module+el8+1897+732269ec.noarch.rpm
MD5: 4cdc73ea363a5153930bd9994cffd0ac
SHA-256: f44d4659c2c43557b6c6c143303ca885ffdbb493c797e078fadddd8e5ea37e9f
Size: 89.11 kB - jackson-annotations-2.19.1-1.module+el8+1897+732269ec.noarch.rpm
MD5: 8d31b34d9aebef9e36551650c092177b
SHA-256: 8903eeb427edf9a8b67a10259a757909e5ebccd285a0cfea490ef86abe2265a4
Size: 82.75 kB - jackson-bom-2.19.1-1.module+el8+1897+732269ec.noarch.rpm
MD5: 23259dccb29f2e48d5d2d4c668ecea1d
SHA-256: e0497e43592e7bc7f16261271d56fb5b6d25582338d35b043f0626362d006af1
Size: 19.67 kB - jackson-core-2.19.1-1.module+el8+1897+732269ec.noarch.rpm
MD5: e14da104f66441aa3670c2b8c9f49106
SHA-256: 834f1f85c9d52836b0d4fbd054c2fb7abfecb687da423f402146116714bf2d43
Size: 459.55 kB - jackson-databind-2.19.1-1.module+el8+1897+732269ec.noarch.rpm
MD5: f346c443ad789da5b820f450997f19a3
SHA-256: 83305c7981bb6f99e9dcca80856136766e8adf96380bd948f0e7cd84503dc4e5
Size: 1.55 MB - jackson-jaxrs-json-provider-2.19.1-1.module+el8+1897+732269ec.noarch.rpm
MD5: c51b133843beecb8f7a09db0f73bd4bc
SHA-256: 94570c162a31f33379592b6efc715d2fc43ed10039d6c5396d3952a40297b386
Size: 23.37 kB - jackson-jaxrs-providers-2.19.1-1.module+el8+1897+732269ec.noarch.rpm
MD5: 595f702218e89dd1bec4da7244e69fb3
SHA-256: b68cbe32eb5aa2856f50edab4cfe65ed33a88adc8977adc90ea64f468037cb7b
Size: 49.38 kB - jackson-module-jaxb-annotations-2.19.1-1.module+el8+1897+732269ec.noarch.rpm
MD5: 0922cdaa9515aba96b3f1325a6462ee9
SHA-256: 07b21d09acbcc2e6565a502ffe8ec4c28019620bd38cc209a5686abaebe4e2bc
Size: 50.82 kB - jackson-modules-base-2.19.1-1.module+el8+1897+732269ec.noarch.rpm
MD5: df3a76ee31e7d7e4bb715fcc0699c44f
SHA-256: 55f9656badd8fedb111e636693bf55a827dc2df32c949c8ceb79dd3c20c3082c
Size: 21.48 kB - jackson-parent-2.19.1-1.module+el8+1897+732269ec.noarch.rpm
MD5: 42923e9844f9b405e6cbf68614859315
SHA-256: ad49d45a5ca2008c90fffb24669500e4fc938118b836937414b94b9cd9ad21ea
Size: 15.32 kB - jakarta-commons-httpclient-3.1-28.module+el8+1897+732269ec.noarch.rpm
MD5: f6309379a2fa798201466bf55f8f84d3
SHA-256: 1f52eca2ae942f6c2856894a2b65f8e2340240cfa00c4b8cc42687a2b072a2ed
Size: 246.55 kB - javassist-3.18.1-8.module+el8+1897+732269ec.noarch.rpm
MD5: 559e1fcf604b3acca0bf0491aa9c1b08
SHA-256: 15f99e27e32d6759a8533c5511263af062c02ec92ee540516d2d0f9612299391
Size: 680.85 kB - javassist-javadoc-3.18.1-8.module+el8+1897+732269ec.noarch.rpm
MD5: 5cf7f54697a8342a1f3623fa68185493
SHA-256: 6ae667389a0ceb6b3c2731ff3c119fe0c9255694e582183bdac5cedcb909bacf
Size: 780.83 kB - pki-servlet-engine-9.0.62-1.module+el8+1897+732269ec.noarch.rpm
MD5: 98d2a70c993367fbd200d43704572305
SHA-256: 6b44290c89b4ea26105bc6460e82e091f4ef4d34460d33ba9cd355761737ab8c
Size: 8.33 kB - relaxngDatatype-2011.1-7.module+el8+1897+732269ec.noarch.rpm
MD5: 1abbca0c96252b674015faa903eb3d7f
SHA-256: ffc60cc0acc070fc40b2eb7aa4b8fd405054c332a5b328a6472a621ca52f6d56
Size: 26.27 kB - slf4j-1.7.25-4.module+el8+1897+732269ec.noarch.rpm
MD5: a98df84c3020f23b3f60f64c508cbd1d
SHA-256: 1dd4eb018defdbe824a6eb24544cd3600c5a3914d9a573a729177b9423ec450f
Size: 75.55 kB - slf4j-jdk14-1.7.25-4.module+el8+1897+732269ec.noarch.rpm
MD5: 759406bc95afaa3e8bd52f62f60e357f
SHA-256: ed2f8dd07bdd1021b79a386189c332afa83bc73a08e7ee97efebfd63663bdc9d
Size: 23.61 kB - stax-ex-1.7.7-8.module+el8+1897+732269ec.noarch.rpm
MD5: fc75b402da0ca4e18d50f1ad0af35eab
SHA-256: ed6e9b3d069f3b083094234912bd31605f10630a630768b5a404f727a2da014c
Size: 54.33 kB - velocity-1.7-24.module+el8+1897+732269ec.noarch.rpm
MD5: f468041a5567551ae99fca5431fded02
SHA-256: 1044ff800f062215da3c095a63c3a1e4759a1fae7c02bf8de8cd12de1a3cee20
Size: 435.43 kB - xalan-j2-2.7.1-38.module+el8+1897+732269ec.noarch.rpm
MD5: 65b3a3a570c66ae068316dcf294bdbc2
SHA-256: 3b1098bd51789fe9314a85ce7fd5c46271645ea80aeed94ef67960bd6cd368f9
Size: 1.89 MB - xerces-j2-2.11.0-34.module+el8+1897+732269ec.noarch.rpm
MD5: 9637602b1bb9e33de7342383cd98df24
SHA-256: 48426e18d2752d0bac20785efc607b6b1cbbf376b03ab84aa5d8be09b8d92d45
Size: 1.16 MB - xml-commons-apis-1.4.01-25.module+el8+1897+732269ec.noarch.rpm
MD5: af5533174a0c7198ed5b1abab1d74996
SHA-256: 5cd43c41664d7e3602255f0b0d4b6b0e50cc0edb66c4d6ea87b8435bb3bacf0b
Size: 233.02 kB - xml-commons-resolver-1.2-26.module+el8+1897+732269ec.noarch.rpm
MD5: badf0a0266860d260013536a5b7ab845
SHA-256: 4527449353d209324ace95772af0ffaff906432f349ccbf19fa4cbf4b0f3d3fc
Size: 114.24 kB - xmlstreambuffer-1.5.4-8.module+el8+1897+732269ec.noarch.rpm
MD5: a49753b4c41d29a4f5bb080f216fc5b0
SHA-256: 57a3d18619bd1829f245f8f9ae61cc67306b8f12c8d40b558fac8855bf59e759
Size: 85.94 kB - xsom-0-19.20110809svn.module+el8+1897+732269ec.noarch.rpm
MD5: e9865eaa02774012fa38c881c94362be
SHA-256: ce76d8d77757d3fe29e9ab2792fe1b0f4ce000a5228702f257eb907d13981d1c
Size: 397.50 kB