Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
Name: jettison | Distribution: openSUSE Tumbleweed |
Version: 1.5.4 | Vendor: openSUSE |
Release: 2.8 | Build date: Tue Sep 5 13:29:14 2023 |
Group: Development/Libraries/Java | Build host: reproducible |
Size: 108137 | Source RPM: jettison-1.5.4-2.8.src.rpm |
Packager: https://bugs.opensuse.org | |
Url: http://jettison.codehaus.org/ | |
Summary: A JSON StAX implementation |
Jettison is a collection of Java APIs (like STaX and DOM) which read and write JSON. This allows nearly transparent enablement of JSON based web services in services frameworks like CXF or XML serialization frameworks like XStream.
Apache-2.0
* Tue Sep 05 2023 Fridrich Strba <fstrba@suse.com> - Make manifest timestamp reproducible * Tue Apr 18 2023 Fridrich Strba <fstrba@suse.com> - Upgrade to version 1.5.4 * Fixes: + Fixing issue 60: Infinite recursion triggered when constructing a JSONArray from a Collection (bsc#1209605, CVE-2023-1436) * Wed Dec 14 2022 Fridrich Strba <fstrba@suse.com> - Upgrade to version 1.5.3 * Fixes: + Backslash escaping. Throw syntax exception on invalid json sooner + Adding another test for backslashes + Introducing new static methods to set the recursion depth limit + Incorrect recursion depth check in JSONTokener + Fixing StackOverflow error (bsc#1206400, CVE-2022-45685, bsc#1206401, CVE-2022-45693) * Wed Oct 05 2022 Fridrich Strba <fstrba@suse.com> - Upgrade to version 1.5.1 * Fixes: + Stack Overflow fix on malformed JSON (bsc#1203515, CVE-2022-40149) + Prevent infinite loop when a /* comment is not terminated (bsc#1203516, CVE-2022-40150) - Removed patches: * jettison-1.3.7-jdk10plus.patch * jettison-update-woodstox-version.patch + not needed with current version * Tue Mar 22 2022 Fridrich Strba <fstrba@suse.com> - Build with source and target levels 8 * Sun Nov 24 2019 Fridrich Strba <fstrba@suse.com> - Specify maven.compiler.release to fix build with jdk9+ and newer maven-javadoc-plugin * Tue Jun 04 2019 Fridrich Strba <fstrba@suse.com> - Initial packaging of jettison 1.3.7
/usr/share/java/jettison /usr/share/java/jettison/jettison.jar /usr/share/licenses/jettison /usr/share/licenses/jettison/LICENSE /usr/share/maven-metadata/jettison.xml /usr/share/maven-poms/jettison /usr/share/maven-poms/jettison/jettison.pom
Generated by rpm2html 1.8.1
Fabrice Bellet, Fri Jan 31 23:50:31 2025