A prometheus-jmx-exporter security update has been released for AlmaLinux 8.
ALSA-2022:6820 Moderate: prometheus-jmx-exporter security update
Type:
security
Severity:
moderate
Release date:
2022-10-07
Description
Security Fix(es):
* snakeyaml: Denial of Service due to missing nested depth limitation for collections (CVE-2022-25857)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
References:
RHSA-2022:6820
CVE-2022-25857
ALSA-2022:6820
Updates packages:
prometheus-jmx-exporter-0.12.0-8.el8_6.noarch.rpm
prometheus-jmx-exporter-openjdk11-0.12.0-8.el8_6.noarch.rpm
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.
ALSA-2022:6820 Moderate: prometheus-jmx-exporter security update