Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-868x-rg4c-cjqg

Опубликовано: 08 янв. 2022
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Allocation of Resources Without Limits or Throttling in Apache Avro

A vulnerability in the .NET SDK of Apache Avro allows an attacker to allocate excessive resources, potentially causing a denial-of-service attack. This issue affects .NET applications using Apache Avro version 1.10.2 and prior versions. Users should update to version 1.11.0 which addresses this issue.

Пакеты

Наименование

Apache.Avro

nuget
Затронутые версииВерсия исправления

< 1.11.0

1.11.0

EPSS

Процентиль: 69%
0.00591
Низкий

7.5 High

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 7.5
redhat
около 4 лет назад

A vulnerability in the .NET SDK of Apache Avro allows an attacker to allocate excessive resources, potentially causing a denial-of-service attack. This issue affects .NET applications using Apache Avro version 1.10.2 and prior versions. Users should update to version 1.11.0 which addresses this issue.

CVSS3: 7.5
nvd
около 4 лет назад

A vulnerability in the .NET SDK of Apache Avro allows an attacker to allocate excessive resources, potentially causing a denial-of-service attack. This issue affects .NET applications using Apache Avro version 1.10.2 and prior versions. Users should update to version 1.11.0 which addresses this issue.

EPSS

Процентиль: 69%
0.00591
Низкий

7.5 High

CVSS3

Дефекты

CWE-770