This affects the package com.fasterxml.jackson.dataformat:jackson-dataformat-cbor from 0 and before 2.11.4, from 2.12.0-rc1 and before 2.12.1. Unchecked allocation of byte buffer can cause a java.lang.OutOfMemoryError exception.
{ "binaries": [ { "binary_version": "2.7.8-5", "binary_name": "libjackson2-dataformat-cbor" } ] }
{ "binaries": [ { "binary_version": "2.4.3-1", "binary_name": "libjackson2-dataformat-cbor" } ] }
{ "binaries": [ { "binary_version": "2.7.8-3", "binary_name": "libjackson2-dataformat-cbor" } ] }