summaryrefslogtreecommitdiffstats
path: root/etc/requirements.txt
diff options
context:
space:
mode:
authorThomas Nelson (arthurdent3) <nelson24@att.com>2019-09-17 11:10:11 -0400
committerGerrit Code Review <gerrit@onap.org>2019-09-17 15:10:11 +0000
commitfeb4e31e26dba48c39ed67961ac5058e44ecfec7 (patch)
treee385fd5e234c6c951f9702eaf7e90173216a5d8d /etc/requirements.txt
parentda100daf74fea2e5e53e19597c9e3555b8bbb699 (diff)
Update git submodules
* Update docs/submodules/music.git from branch 'master' to 5a742d9e9dce7c3da9ba193d61f0505e7cc57ec5 - Jackson Faster-xml vulnerability. CVE-2019-14439 Information Disclosure Vulnerability FasterXML Jackson-databind is prone to an information-disclosure vulnerability that occurs due to a polymorphic typing issue. Specifically, this issue occurs when an externally exposed JSON endpoint has default typing enabled and has logback jar in the classpath. An attacker can exploit this issue to obtain sensitive information that may aid in further attacks. Issue-ID: MUSIC-504 Signed-off-by: Thomas Nelson (arthurdent3) <nelson24@att.com> Signed-off-by: Thomas Nelson (arthurdent3) <nelson24@att.com> Change-Id: I2c31986ff2d792d482f84406e96c47dbf652f32f
Diffstat (limited to 'etc/requirements.txt')
0 files changed, 0 insertions, 0 deletions