Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c9gm-7rfj-8w5h

Опубликовано: 25 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Duplicate Advisory: ReDoS via crafted JSON input in GJSON

Duplicate Advisory

This advisory has been withdrawn because it is a duplicate of GHSA-ppj4-34rq-v8j9. This link is maintained to preserve external references.

Original Description

GJSON <= 1.9.2 allows attackers to cause a redos via crafted JSON input.

Пакеты

Наименование

github.com/tidwall/gjson

go
Затронутые версииВерсия исправления

< 1.9.3

1.9.3

7.5 High

CVSS3

Дефекты

CWE-1333

Связанные уязвимости

ubuntu
больше 3 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-42836. Reason: This candidate is a duplicate of CVE-2021-42836. Notes: All CVE users should reference CVE-2021-42836 instead of this candidate.

nvd
больше 3 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-42836. Reason: This candidate is a duplicate of CVE-2021-42836. Notes: All CVE users should reference CVE-2021-42836 instead of this candidate.

msrc
больше 1 года назад

Описание отсутствует

7.5 High

CVSS3

Дефекты

CWE-1333