RADAR-base / radar-output-restructure

Reads avro files in HDFS and outputs json or csv per topic per user in local file system
Apache License 2.0
1 stars 0 forks source link

Stack-based Buffer Overflow SNYK-JAVA-ORGYAML-3113851 #536

Closed github-actions[bot] closed 1 year ago

github-actions[bot] commented 1 year ago

Overview

org.yaml:snakeyaml is a YAML 1.1 parser and emitter for Java.

Affected versions of this package are vulnerable to Stack-based Buffer Overflow via stack overflow, when supplied with untrusted input.

Note: This vulnerability might not be fixed. Please refer to snakeyaml maintainers' recommendations for such vulnerabilities.

Remediation

There is no fixed version for org.yaml:snakeyaml.

References