Uploaded image for project: 'JOC - JobScheduler Operations Center'
  1. JOC - JobScheduler Operations Center
  2. JOC-588

Update Jackson version to >= 2.9.5 due to 3rd party vulnerability issue in Jackson (CVE-2018-7489)

    XMLWordPrintable

Details

    • CVE-2018-7489

    Description

      Current Situation

      Desired Behavior

      • Due to a vulnerability Issue of older Jackson releases the JOC Cockpit as well as the JobScheduler should use the current version 2.9.7 that fixes the issues.

      Maintainer Notes

      Release 1.11 that includes Jackson version 2.4.3 is at its end of life. Therefore no maintenance release is provided.
      Users of release 1.11 should therefore upgrade to release 1.12.

      Attachments

        Activity

          People

            sp Santiago Aucejo Petzoldt
            ap Andreas PĆ¼schel
            Oliver Haufe Oliver Haufe
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: