Known vulnerabilities in jackson-databind (Debian package) 2.8.6-1+deb9u5
Vendor:
Debian
Software:
jackson-databind (Debian package)
Version:
2.8.6-1+deb9u5
Software CPE:
cpe:2.3:o:debian:jackson-databind_debian_package:*:*:*:*:*:debian_linux:*:*
Website:
https://www.debian.org/
Total vulnerabilities:
6
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
2.12.1-1+deb11u1
2.11.1
2.11.1-1
2.9.8-3+deb10u2
2.8.6-1+deb9u7
2.10.2
2.9.8
2.8.6
2.4.2
2.4.2-2+deb8u14
2.4.2-2+deb8u13
2.4.2-2+deb8u12
2.4.2-2+deb8u11
2.10.1-1
2.10.2-1
2.4.2-2+deb8u10
2.8.6-1+deb9u6
2.9.8-3+deb10u1
2.10.0-2
2.4.2-2+deb8u9
2.10.0-1
2.9.9.3-1
2.4.2-2+deb8u8
2.9.8-3
2.4.2-2+deb8u7
2.8.6-1+deb9u5
2.4.2-2+deb8u6
2.9.8-2
2.4.2-2+deb8u5
2.9.8-1
2.8.6-1+deb9u4
2.4.2-2+deb8u4
2.9.5-1
2.9.4-1
2.9.1-1
2.8.6-1+deb9u3
2.8.6-1+deb9u2
2.8.6-1+deb9u1
2.4.2-2+deb8u3
2.4.2-2+deb8u2
2.4.2-2+deb8u1
2.4.2-3
2.7.3-1
2.7.4-1
2.8.5-1
2.8.5-2
2.8.6-1
2.2.2-1
2.2.2-2
2.4.2-1
2.4.2-2
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU21593 - Improper input validation CVE-2019-16943 |
CWE-20 | Medium | 2.8.6-1+deb9u6, 2.9.8-3+deb10u1 | 07.10.2019 |
SB2019100711 SB2019100716 SB2019120206 and 34 more |
||
| #VU21580 - Improper input validation CVE-2019-16942 |
CWE-20 | Medium | 2.8.6-1+deb9u6, 2.9.8-3+deb10u1 | 07.10.2019 |
SB2019100711 SB2019100716 SB2019111903 and 23 more |
||
| #VU21136 - Exposure of sensitive information to an unauthorized actor CVE-2019-16335 |
CWE-200 | Medium | 2.8.6-1+deb9u6, 2.9.8-3+deb10u1 | 16.09.2019 |
SB2019091616 SB2019100716 SB2019102422 and 21 more |
||
| #VU21135 - Exposure of sensitive information to an unauthorized actor CVE-2019-14540 |
CWE-200 | Medium | 2.8.6-1+deb9u6, 2.9.8-3+deb10u1 | 16.09.2019 |
SB2019091616 SB2019100716 SB2019102422 and 23 more |
||
| #VU19937 - Exposure of sensitive information to an unauthorized actor CVE-2019-14439 |
CWE-200 | Medium | 2.8.6-1+deb9u6, 2.9.8-3+deb10u1 | 06.08.2019 |
SB2019073015 SB2019100716 SB2019102422 and 16 more |
||
| #VU19018 - Deserialization of Untrusted Data CVE-2019-12384 |
CWE-502 | High | 2.8.6-1+deb9u6, 2.9.8-3+deb10u1 | 04.07.2019 |
SB2019091218 SB2019092703 SB2019100116 and 28 more |