[ubuntu/bionic-security] snakeyaml 1.23-1+deb10u1build0.18.04.1 (Accepted)

Fabian Toepfer fabian.toepfer at canonical.com
Thu Mar 9 21:38:57 UTC 2023


snakeyaml (1.23-1+deb10u1build0.18.04.1) bionic-security; urgency=medium

  * fake sync from Debian

snakeyaml (1.23-1+deb10u1) buster-security; urgency=high

  * Non-maintainer upload by the LTS team.
  * Fix CVE-2022-25857, CVE-2022-38749, CVE-2022-38750 and CVE-2022-38751.
    Several security vulnerabilities have been discovered in SnakeYaml, a YAML
    parser for Java, which could facilitate a denial of service attack whenever
    maliciously crafted input files are processed by SnakeYaml.

snakeyaml (1.23-1) unstable; urgency=medium

  * Team upload.
  * New upstream release.
    - Fixes the test failure with Java 11 (Closes: #912389)
  * Standards-Version updated to 4.2.1

Date: 2023-03-09 19:42:08.891282+00:00
Changed-By: Fabian Toepfer <fabian.toepfer at canonical.com>
Maintainer: Debian Java Maintainers <pkg-java-maintainers at lists.alioth.debian.org>
https://launchpad.net/ubuntu/+source/snakeyaml/1.23-1+deb10u1build0.18.04.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Bionic-changes mailing list