UbuntuUpdates.org

Package "jq"

Name: jq

Description:

lightweight and flexible command-line JSON processor

Latest version: 1.3-1.1ubuntu1.1
Release: trusty (14.04)
Level: security
Repository: universe
Homepage: https://github.com/stedolan/jq

Links


Download "jq"


Other versions of "jq" in Trusty

Repository Area Version
base universe 1.3-1.1ubuntu1
updates universe 1.3-1.1ubuntu1.1
backports universe 1.4-2.1~ubuntu14.04.1

Changelog

Version: 1.3-1.1ubuntu1.1 2018-09-10 14:06:27 UTC

  jq (1.3-1.1ubuntu1.1) trusty-security; urgency=medium

  * SECURITY UPDATE: Heap-based buffer overflow
    - debian/patches/CVE-2015-8863.patch: Heap buffer overflow in tokenadd()
    - CVE-2015-8863

 -- Mike Salvatore <email address hidden> Fri, 07 Sep 2018 14:02:47 -0400

CVE-2015-8863 Off-by-one error in the tokenadd function in jv_parse.c in jq allows remote attackers to cause a denial of service (crash) via a long JSON-encoded nu



About   -   Send Feedback to @ubuntu_updates