Skip to content
Pre-release
Pre-release

@paulbrodner paulbrodner released this Nov 8, 2019

Fixing security vulnerabilities found during security scans of official 7.0.1 release

The 7.0.1-patch includes the following libraries updates:

  • jackson-databind from 2.9.9 to 2.9.10.1 version
  • update xstream from 1.4.10 to 1.4.11.1 version
  • jackson-mapper-asl from 1.9.13 to 1.9.13.redhat-4 version
  • jackson-jaxrs from 1.9.13 1.9.13.redhat-4 version
  • jackson-core-asl from 1.9.13 to 1.9.13.redhat-4 version
  • jackson-xc from 1.9.13 to 1.9.13.redhat-4 version
  • undertow-servlet from 2.0.21 to 2.0.23 version
  • santuario.xmlsec from 2.1.3 to 2.1.4 version
  • h2 library from 1.4.193 to 1.4.198 version
  • avro library from 1.7.6 to 1.9.1 version

Distribution zip created using building and working with the code base guide simplified in this Makefile

$ make install build-server

If you want to start the server locally

$ wget https://github.com/Alfresco/keycloak/releases/download/7.0.1-patch/keycloak-7.0.1.zip
$ unzip -oq  keycloak-7.0.1.zip
$ cd keycloak-7.0.1
// add test user
$ ./bin/add-user-keycloak.sh -u admin -p admin
$ bash bin/standalone.sh
Assets 3
You can’t perform that action at this time.