{"id":"DLA-2990-1","summary":"jackson-databind - security update","modified":"2026-03-09T01:42:39.876668732Z","published":"2022-05-02T00:00:00Z","upstream":["CVE-2020-36518","DEBIAN-CVE-2020-36518"],"affected":[{"package":{"name":"jackson-databind","ecosystem":"Debian:9","purl":"pkg:deb/debian/jackson-databind?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.8.6-1+deb9u10"}]}],"versions":["2.8.6-1","2.8.6-1+deb9u1","2.8.6-1+deb9u2","2.8.6-1+deb9u3","2.8.6-1+deb9u4","2.8.6-1+deb9u5","2.8.6-1+deb9u6","2.8.6-1+deb9u7","2.8.6-1+deb9u8","2.8.6-1+deb9u9"],"database_specific":{"source":"https://storage.googleapis.com/debian-osv/dla-osv/DLA-2990-1.json"}}],"schema_version":"1.7.3"}