UbuntuUpdates.org

Package "libgoogle-gson-java"

Name: libgoogle-gson-java

Description:

Converts Java objects into their JSON representation

Latest version: 2.8.8-1ubuntu0.1
Release: jammy (22.04)
Level: security
Repository: universe
Homepage: https://github.com/google/gson

Links


Download "libgoogle-gson-java"


Other versions of "libgoogle-gson-java" in Jammy

Repository Area Version
base universe 2.8.8-1
updates universe 2.8.8-1ubuntu0.1

Changelog

Version: 2.8.8-1ubuntu0.1 2024-03-12 17:07:09 UTC

  libgoogle-gson-java (2.8.8-1ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: Denial of Service
    - debian/patches/CVE-2022-25647.patch: fixed a Deserialization of Untrusted
      Data vaulnerablity in the writeReplace() function
    - CVE-2022-25647

 -- Amir Naseredini <email address hidden> Thu, 07 Mar 2024 13:04:41 +0000

CVE-2022-25647 The package com.google.code.gson:gson before 2.8.9 are vulnerable to Deserialization of Untrusted Data via the writeReplace() method in internal clas



About   -   Send Feedback to @ubuntu_updates