-
Suggestion
-
Resolution: Fixed
-
1
-
Problem Definition
Jira 8.22.0 and lower versions have PostgresSQL driver version 42.2.23. This version has a vulnerability as described in: https://nvd.nist.gov/vuln/detail/CVE-2022-21724
Suggested Solution
Upgrade bundled PostgresSQL JDBC driver to 42.2.25+ version
Workaround
Upgrade driver manually , for example to 42.2.25
- is cloned from
-
JRASERVER-72629 Upgrade PostgresSQL JDBC driver to 42.2.23+ version
- Closed
- mentioned in
-
Page Failed to load
Form Name |
---|
[JRASERVER-73578] Upgrade PostgresSQL JDBC driver to 42.2.25+ version
Labels | Original: database security security-imported | New: database resolved-in-vf security security-imported |
Assignee | New: Karol Skwierawski [ 4e432536cf93 ] |
Fix Version/s | New: 8.22.2 [ 99697 ] | |
Fix Version/s | New: 8.20.12 [ 101716 ] | |
Fix Version/s | New: 8.13.25 [ 102192 ] | |
Resolution | New: Fixed [ 1 ] | |
Status | Original: Gathering Interest [ 11772 ] | New: Closed [ 6 ] |
Remote Link | New: This issue links to "Page (Confluence)" [ 990304 ] |
Security | Original: Reporter and Atlassian Staff [ 10751 ] |
Labels | Original: database security security-imported shouldBePrivate | New: database security security-imported |
Labels | Original: database security security-imported | New: database security security-imported shouldBePrivate |
Security | New: Reporter and Atlassian Staff [ 10751 ] |
Component/s | Original: Environment - Database [ 55604 ] | |
Component/s | New: Security [ 68109 ] |
UIS | Original: 2 | New: 1 |
UIS | Original: 3 | New: 2 |