Guest

Preview Tool

Cisco Bug: CSCvt28117 - CIAM: Corona shows multiple vulnerabilities for jackson-databind through 2.9.10.2 (Parent)

Last Modified

May 08, 2020

Products (1)

  • Cisco Stealthwatch Enterprise

Known Affected Releases

v7.0.0 v7.0.2 v7.0.3 v7.1.0 v7.1.1 v7.1.2 v7.1.3 v7.2.0

Description (partial)

Symptom:
Cisco Stealthwatch Endpoint Concentrator, Stealthwatch Flow Collector NetFlow, Stealthwatch Flow Collector sFlow, Stealthwatch Flow Sensor, Stealthwatch Management Console (SMC) and Stealthwatch UDP Director includes a version of jackson-databind that is affected by the vulnerabilities identified by the following Common Vulnerability and Exposures (CVE) IDs:

CVE-2019-12384, CVE-2019-12814, CVE-2019-14439, CVE-2019-14540, CVE-2019-16335, CVE-2019-16942, CVE-2019-16943, CVE-2019-17531, CVE-2020-8840, CVE-2019-12086, CVE-2019-14379, CVE-2019-14892, CVE-2019-14893, CVE-2019-17267, CVE-2019-20330

This bug was opened to address the potential impact on this product.

Conditions:
Device with default configuration.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.