<define-tag description>보안 업데이트</define-tag>
<p>It was discovered that jackson-databind, a Java library used to parse
JSON and other data formats, did not properly validate user input
before attempting deserialization. This allowed an attacker providing
maliciously crafted input to perform code execution, or read arbitrary
files on the server.</p>
<p>For the oldstable distribution (stretch), these problems have been fixed
in version 2.8.6-1+deb9u6.</p>
<p>안정 배포(buster)에서, 이 문제를 버전 2.9.8-3+deb10u1에서 고침.</p>
<p>jackson-databind 패키지를 업그레이드 하는 게 좋음.</p>
<p>jackson-databind의 자세한 보안 상태는 보안 추적 페이지 참조:
<a href="">\</a></p>
