You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@jmeter.apache.org by bu...@apache.org on 2019/05/29 12:03:39 UTC

[Bug 63473] New: Please update dependency of jackson to 2.9.9

https://bz.apache.org/bugzilla/show_bug.cgi?id=63473

            Bug ID: 63473
           Summary: Please update dependency of jackson to 2.9.9
           Product: JMeter
           Version: 5.1.1
          Hardware: PC
                OS: Linux
            Status: NEW
          Severity: normal
          Priority: P2
         Component: Main
          Assignee: issues@jmeter.apache.org
          Reporter: stefan@trilobyte-se.de
  Target Milestone: JMETER_5.2

Please update the Jackson lib used from 2.9.8 to current 2.9.9 due to
CVE-2019-12086 in Jackson-Databind.

Thanks.

-- 
You are receiving this mail because:
You are the assignee for the bug.

[Bug 63473] Please update dependency of jackson to 2.9.9

Posted by bu...@apache.org.
https://bz.apache.org/bugzilla/show_bug.cgi?id=63473

--- Comment #2 from S. Seide <st...@trilobyte-se.de> ---
Thanks - we already use 5.1.1 with updated Jackson libs without any problems so
far.

-- 
You are receiving this mail because:
You are the assignee for the bug.

[Bug 63473] Please update dependency of jackson to 2.9.9

Posted by bu...@apache.org.
https://bz.apache.org/bugzilla/show_bug.cgi?id=63473

Philippe Mouawad <p....@ubik-ingenierie.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
           Hardware|PC                          |All
                 CC|                            |p.mouawad@ubik-ingenierie.c
                   |                            |om
                 OS|Linux                       |All

-- 
You are receiving this mail because:
You are the assignee for the bug.

[Bug 63473] Please update dependency of jackson to 2.9.9

Posted by bu...@apache.org.
https://bz.apache.org/bugzilla/show_bug.cgi?id=63473

Felix Schumacher <fe...@internetallee.de> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|NEW                         |NEEDINFO
           Keywords|                            |FixedInTrunk

--- Comment #1 from Felix Schumacher <fe...@internetallee.de> ---
Thanks for the report. Fixed in trunk. Could you test, if it works for you.

Will be included in next JMeter version.

Date: Wed May 29 12:51:13 2019
New Revision: 1860342

URL: http://svn.apache.org/viewvc?rev=1860342&view=rev
Log:
Update dependency of jackson to 2.9.9

Update the Jackson libraries used from 2.9.8 to current 2.9.9 due to
CVE-2019-12086 in Jackson-Databind.

Bugzilla Id: 63473

Modified:
    jmeter/trunk/LICENSE
    jmeter/trunk/build.properties
    jmeter/trunk/eclipse.classpath
    jmeter/trunk/lib/aareadme.txt
    jmeter/trunk/res/maven/ApacheJMeter_parent.pom
    jmeter/trunk/xdocs/changes.xml

-- 
You are receiving this mail because:
You are the assignee for the bug.

[Bug 63473] Please update dependency of jackson to 2.9.9

Posted by bu...@apache.org.
https://bz.apache.org/bugzilla/show_bug.cgi?id=63473

Philippe Mouawad <p....@ubik-ingenierie.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         Resolution|---                         |FIXED
             Status|NEEDINFO                    |RESOLVED

-- 
You are receiving this mail because:
You are the assignee for the bug.