Vulnerability Bulletins

DSA-3840 mysql-connector-java - security update

   
Affected software Debian
 
Thijs Alkemade discovered that unexpected automatic deserialisation ofJava objects in the MySQL Connector/J JDBC driver may result in theexecution of arbitary code. For additional details, please refer to theadvisory athttps://www.computest.nl/advisories/CT-2017-0425_MySQL-Connector-J.txt

More info:

https://www.debian.org/security/2017/dsa-3840