Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hf3r-vmrv-7w29

Опубликовано: 03 янв. 2024
Источник: github
Github: Прошло ревью

Описание

Duplicate Advisory: Denial of service in CBOR library

Duplicate Advisory

This advisory has been withdrawn because it is a duplicate of GHSA-6r92-cgxc-r5fg. This link is maintained to preserve external references.

Original Description

PeterO.Cbor versions 4.0.0 through 4.5.0 are vulnerable to a denial of service vulnerability. An attacker may trigger the denial of service condition by providing crafted data to the DecodeFromBytes or other decoding mechanisms in PeterO.Cbor. Depending on the usage of the library, an unauthenticated and remote attacker may be able to cause the denial of service condition.

Пакеты

Наименование

PeterO.Cbor

nuget
Затронутые версииВерсия исправления

>= 4.0.0, < 4.5.1

4.5.1

Дефекты

CWE-407

Дефекты

CWE-407