Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-1436

Опубликовано: 22 мар. 2023
Источник: nvd
CVSS3: 5.9
CVSS3: 7.5
EPSS Низкий

Описание

An infinite recursion is triggered in Jettison when constructing a JSONArray from a Collection that contains a self-reference in one of its elements. This leads to a StackOverflowError exception being thrown.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:jettison_project:jettison:*:*:*:*:*:*:*:*
Версия до 1.5.4 (исключая)

EPSS

Процентиль: 7%
0.00026
Низкий

5.9 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-674
CWE-674

Связанные уязвимости

CVSS3: 5.9
ubuntu
почти 3 года назад

An infinite recursion is triggered in Jettison when constructing a JSONArray from a Collection that contains a self-reference in one of its elements. This leads to a StackOverflowError exception being thrown.

CVSS3: 7.5
redhat
почти 3 года назад

An infinite recursion is triggered in Jettison when constructing a JSONArray from a Collection that contains a self-reference in one of its elements. This leads to a StackOverflowError exception being thrown.

CVSS3: 5.9
debian
почти 3 года назад

An infinite recursion is triggered in Jettison when constructing a JSO ...

suse-cvrf
почти 3 года назад

Security update for jettison

CVSS3: 7.5
github
почти 3 года назад

Jettison vulnerable to infinite recursion

EPSS

Процентиль: 7%
0.00026
Низкий

5.9 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-674
CWE-674