Описание
serde-json-wasm stack overflow during recursive JSON parsing
When parsing untrusted, deeply nested JSON, the stack may overflow, possibly enabling a Denial of Service attack. This was fixed by adding a check for recursion depth.
Пакеты
Наименование
serde-json-wasm
rust
Затронутые версииВерсия исправления
= 1.0.0
1.0.1
Наименование
serde-json-wasm
rust
Затронутые версииВерсия исправления
< 0.5.2
0.5.2
Связанные уязвимости
CVSS3: 3.2
nvd
7 месяцев назад
The serde-json-wasm crate before 1.0.1 for Rust allows stack consumption via deeply nested JSON data.