diff --git a/xstream-distribution/src/content/changes.html b/xstream-distribution/src/content/changes.html index bb7bc1ca7..6e4a42c2f 100644 --- a/xstream-distribution/src/content/changes.html +++ b/xstream-distribution/src/content/changes.html @@ -104,9 +104,19 @@

Stream compatibility

  • No support for Hibernate 3 collections.
  • + + +

    1.4.21

    + +

    Released November 7, 2024.

    + +

    This maintenance release addresses the security vulnerability + CVE-2024-47072, when using the BinaryDriver to unmarshal a manipulated input + stream causing a Denial of Service due to a stack overflow.

    Major changes

    diff --git a/xstream-distribution/src/content/download.html b/xstream-distribution/src/content/download.html index fff4a31c8..42278169f 100644 --- a/xstream-distribution/src/content/download.html +++ b/xstream-distribution/src/content/download.html @@ -1,7 +1,7 @@