CVE-2023-5072
7.5HIGHDenial of Service in JSON-Java versions up to and including 20230618. A bug in the parser means that an input string of modest size can lead to indefinite amounts of memory being used.
Publicado: 10/12/2023Atualizado: 9/19/2025
Descrição
Denial of Service in JSON-Java versions up to and including 20230618. A bug in the parser means that an input string of modest size can lead to indefinite amounts of memory being used.
Análise IADesenvolvido por IA
Produtos Afetados
stlearyjson-java
Referências
- http://www.openwall.com/lists/oss-security/2023/12/13/4
- https://github.com/stleary/JSON-java/issues/758Issue Tracking
- https://github.com/stleary/JSON-java/issues/771ExploitIssue Tracking
- https://security.netapp.com/advisory/ntap-20240621-0007/
- http://www.openwall.com/lists/oss-security/2023/12/13/4
- https://github.com/stleary/JSON-java/issues/758Issue Tracking
- https://github.com/stleary/JSON-java/issues/771ExploitIssue Tracking
- https://security.netapp.com/advisory/ntap-20240621-0007/