Vulnerability Bulletins

DSA-4190 jackson-databind - security update

   
Affected software Debian
 
It was discovered that jackson-databind, a Java library used to parseJSON and other data formats, improperly validated user input prior todeserializing because of an incomplete fix forCVE-2017-7525.

More info:

https://www.debian.org/security/2018/dsa-4190