libhibernate3-java 3.6.10.Final-9+deb10u1 source package in Debian
Changelog
libhibernate3-java (3.6.10.Final-9+deb10u1) buster-security; urgency=high * Team upload. * Fix CVE-2020-25638: A flaw was found in hibernate-core. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SQL comments of the query. This flaw could allow an attacker to access unauthorized information or possibly conduct further attacks. The highest threat from this vulnerability is to data confidentiality and integrity. -- Markus Koschany <email address hidden> Wed, 21 Apr 2021 14:51:39 +0200
Upload details
- Uploaded by:
- Debian Java Maintainers
- Uploaded to:
- Buster
- Original maintainer:
- Debian Java Maintainers
- Architectures:
- all
- Section:
- java
- Urgency:
- Very Urgent
See full publishing history Publishing
Series | Published | Component | Section | |
---|---|---|---|---|
Buster | release | main | java |
Builds
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
libhibernate3-java_3.6.10.Final-9+deb10u1.dsc | 2.9 KiB | 2caee4966557a81d7f8892cbd288bb01c0bc107e01837a0ad2c138dfbada2452 |
libhibernate3-java_3.6.10.Final.orig.tar.gz | 3.3 MiB | 1a2f83893f7362fd4d1fae0520a2a058ac7d196071989c08e65be9bfab2e9fbb |
libhibernate3-java_3.6.10.Final-9+deb10u1.debian.tar.xz | 10.9 KiB | 405b82c185fec8ec3d6be6fabb01972c3d5a4527221048be34ab67bc59a6bbd2 |
No changes file available.