Processed: Re: Bug#1003826: buster-pu: package libjackson-json-java/1.9.13-2~deb10u1

2022-02-19 Thread Debian Bug Tracking System
Processing control commands: > tags -1 + confirmed Bug #1003826 [release.debian.org] buster-pu: package libjackson-json-java/1.9.13-2~deb10u1 Added tag(s) confirmed. -- 1003826: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1003826 Debian Bug Tracking System Contact ow...@bugs.debian.org wi

Bug#1003826: buster-pu: package libjackson-json-java/1.9.13-2~deb10u1

2022-02-19 Thread Adam D. Barratt
Control: tags -1 + confirmed On Sun, 2022-01-16 at 14:17 +0200, Adrian Bunk wrote: > * Add upstream fixes. > - Serializing types for deeply nested Maps. > - Set Secure Processing flag on DocumentBuilderFactory. > - Set setExpandEntityReferences(false). (Fixes: CVE-2019-10172) > -

Bug#1003826: buster-pu: package libjackson-json-java/1.9.13-2~deb10u1

2022-01-16 Thread Adrian Bunk
Package: release.debian.org Severity: normal Tags: buster User: release.debian@packages.debian.org Usertags: pu * Add upstream fixes. - Serializing types for deeply nested Maps. - Set Secure Processing flag on DocumentBuilderFactory. - Set setExpandEntityReferences(false). (Fixes