{"id":"DSA-4037-1","summary":"jackson-databind - security update","modified":"2026-03-09T01:21:15.729304Z","published":"2017-11-16T00:00:00Z","upstream":["CVE-2017-15095","DEBIAN-CVE-2017-15095"],"affected":[{"package":{"name":"jackson-databind","ecosystem":"Debian:8","purl":"pkg:deb/debian/jackson-databind?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.4.2-2+deb8u2"}]}],"versions":["2.4.2-2","2.4.2-2+deb8u1"],"database_specific":{"source":"https://storage.googleapis.com/debian-osv/dsa-osv/DSA-4037-1.json"}},{"package":{"name":"jackson-databind","ecosystem":"Debian:9","purl":"pkg:deb/debian/jackson-databind?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.8.6-1+deb9u2"}]}],"versions":["2.8.6-1","2.8.6-1+deb9u1"],"database_specific":{"source":"https://storage.googleapis.com/debian-osv/dsa-osv/DSA-4037-1.json"}}],"schema_version":"1.7.3"}