Uploaded image for project: 'Crowd Data Center'
  1. Crowd Data Center
  2. CWD-4579

Upgrade to version 3.2.2 of apache commons-collections

      This v3.2.2 release is a bugfix release, fixing several bugs present in the previous releases of the 3.2 branch. Additionally, this release provides a mitigation for a known remote code exploitation via the standard java object serialization mechanism. By default, serialization support for unsafe classes in the functor package is disabled and will result in an exception when either trying to serialize or de-serialize an instance of these classes. For more details, please refer to COLLECTIONS-580.

      https://commons.apache.org/proper/commons-collections/release_3_2_2.html

            [CWD-4579] Upgrade to version 3.2.2 of apache commons-collections

            Monique Khairuliana (Inactive) made changes -
            Workflow Original: Simplified Crowd Development Workflow v2 - restricted [ 1511110 ] New: JAC Bug Workflow v3 [ 3365432 ]
            Status Original: Resolved [ 5 ] New: Closed [ 6 ]
            vkharisma made changes -
            Link New: This issue relates to JRACLOUD-47638 [ JRACLOUD-47638 ]
            Owen made changes -
            Workflow Original: Simplified Crowd Development Workflow v2 [ 1393210 ] New: Simplified Crowd Development Workflow v2 - restricted [ 1511110 ]
            Owen made changes -
            Workflow Original: Crowd Development Workflow v2 [ 1031126 ] New: Simplified Crowd Development Workflow v2 [ 1393210 ]
            David Black made changes -
            Security Original: Reporters and Developers [ 10071 ]
            Ferd made changes -
            Remote Link New: This issue links to "Page (Extranet)" [ 144364 ]
            Ferd made changes -
            Remote Link New: This issue links to "Page (Extranet)" [ 144009 ]
            Ferd made changes -
            Fix Version/s New: 2.8.4 [ 54305 ]
            Resolution New: Fixed [ 1 ]
            Status Original: Technical Review [ 10028 ] New: Resolved [ 5 ]
            Ferd made changes -
            Status Original: In Progress [ 3 ] New: Technical Review [ 10028 ]
            Ferd made changes -
            Status Original: Open [ 1 ] New: In Progress [ 3 ]

              fchan@atlassian.com Ferd
              dblack David Black
              Affected customers:
              0 This affects my team
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: