jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
{
"unresolved_ranges": [
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:big_data_spatial_and_graph:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"fixed": "23.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:coherence:14.1.1.0.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "14.1.1.0.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:commerce_platform:11.3.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "11.3.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:commerce_platform:11.3.1:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "11.3.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:commerce_platform:11.3.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "11.3.2"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_billing_and_revenue_management:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "12.0.0.4.0"
},
{
"last_affected": "12.0.0.6.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_cloud_native_core_binding_support_function:22.1.3:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "22.1.3"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_cloud_native_core_console:1.9.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "1.9.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_cloud_native_core_network_repository_function:22.1.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "22.1.2"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_cloud_native_core_network_repository_function:22.2.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "22.2.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_cloud_native_core_network_slice_selection_function:22.1.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "22.1.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_cloud_native_core_network_slice_selection_function:22.1.1:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "22.1.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_cloud_native_core_security_edge_protection_proxy:22.1.1:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "22.1.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_cloud_native_core_service_communication_proxy:22.2.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "22.2.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:communications_cloud_native_core_unified_data_repository:22.2.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "22.2.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "8.0.7"
},
{
"last_affected": "8.1.0.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:8.1.1.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.1.1.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:8.1.2.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.1.2.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_analytical_applications_infrastructure:8.1.2.1:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.1.2.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_behavior_detection_platform:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "8.1.1.0"
},
{
"last_affected": "8.1.2.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_behavior_detection_platform:8.0.7.0.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.7.0.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_behavior_detection_platform:8.0.8:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.8"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_crime_and_compliance_management_studio:8.0.8.2.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.8.2.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_crime_and_compliance_management_studio:8.0.8.3.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.8.3.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_enterprise_case_management:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "8.1.1.0"
},
{
"last_affected": "8.1.2.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_enterprise_case_management:8.0.7.1:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.7.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_enterprise_case_management:8.0.7.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.7.2"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_enterprise_case_management:8.0.8.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.8.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_enterprise_case_management:8.0.8.1:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.8.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_trade-based_anti_money_laundering:8.0.7:*:*:*:enterprise:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.7"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:financial_services_trade-based_anti_money_laundering:8.0.8:*:*:*:enterprise:*:*:*",
"extracted_events": [
{
"last_affected": "8.0.8"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:global_lifecycle_management_nextgen_oui_framework:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"fixed": "13.9.4.2.2"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:global_lifecycle_management_nextgen_oui_framework:13.9.4.2.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "13.9.4.2.2"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:global_lifecycle_management_opatch:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"fixed": "12.2.0.1.30"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:graph_server_and_client:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"fixed": "22.2.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:health_sciences_empirica_signal:9.1.0.5.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "9.1.0.5.2"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.58"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.59:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.59"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:primavera_gateway:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "17.12.0"
},
{
"last_affected": "17.12.11"
},
{
"introduced": "18.8.0"
},
{
"last_affected": "18.8.14"
},
{
"introduced": "19.12.0"
},
{
"last_affected": "19.12.13"
},
{
"introduced": "20.12.0"
},
{
"last_affected": "20.12.18"
},
{
"introduced": "21.12.0"
},
{
"last_affected": "21.12.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:primavera_p6_enterprise_project_portfolio_management:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "17.12.0.0"
},
{
"last_affected": "17.12.20.4"
},
{
"introduced": "18.8.0.0"
},
{
"last_affected": "18.8.25.4"
},
{
"introduced": "19.12.0"
},
{
"last_affected": "19.12.19.0"
},
{
"introduced": "20.12.0.0"
},
{
"last_affected": "21.12.4.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:primavera_unifier:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "17.0"
},
{
"last_affected": "17.12"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:primavera_unifier:18.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "18.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:primavera_unifier:19.12:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "19.12"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:primavera_unifier:20.12:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "20.12"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:primavera_unifier:21.12:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "21.12"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:retail_sales_audit:15.0.3.1:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "15.0.3.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:sd-wan_edge:9.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "9.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:sd-wan_edge:9.1:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "9.1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:spatial_studio:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"fixed": "20.1.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:utilities_framework:4.3.0.5.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "4.3.0.5.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:utilities_framework:4.3.0.6.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "4.3.0.6.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:utilities_framework:4.4.0.0.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "4.4.0.0.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:utilities_framework:4.4.0.2.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "4.4.0.2.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:utilities_framework:4.4.0.3.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "4.4.0.3.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:utilities_framework:4.4.0.5.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "4.4.0.5.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:weblogic_server:12.2.1.3.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "12.2.1.3.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:weblogic_server:12.2.1.4.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "12.2.1.4.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:weblogic_server:14.1.1.0.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "14.1.1.0.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "10.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "11.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "9.0"
}
]
}
]
}{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:fasterxml:jackson-databind:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "2.12.6.1"
},
{
"introduced": "2.13.0"
},
{
"fixed": "2.13.2.1"
}
]
}