AlmaLinux 2282 Published by

A prometheus-jmx-exporter security update has been released for AlmaLinux 8.



ALSA-2022:6820 Moderate: prometheus-jmx-exporter security update


Type:
security

Severity:
moderate

Release date:
2022-10-07

Description
Security Fix(es):
* snakeyaml: Denial of Service due to missing nested depth limitation for collections (CVE-2022-25857)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References:
RHSA-2022:6820
CVE-2022-25857
ALSA-2022:6820

Updates packages:
prometheus-jmx-exporter-0.12.0-8.el8_6.noarch.rpm
prometheus-jmx-exporter-openjdk11-0.12.0-8.el8_6.noarch.rpm

Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.

  ALSA-2022:6820 Moderate: prometheus-jmx-exporter security update