Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-2410

Опубликовано: 03 мая 2024
Источник: nvd
CVSS3: 7.6
CVSS3: 9.8
EPSS Низкий

Описание

The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a stream. If the input is broken up into separate chunks in a certain way, the parser will attempt to read bytes from a chunk that has already been freed. 

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:google:protobuf:*:*:*:*:*:*:*:*
Версия от 4.22.0 (включая) до 4.25.0 (исключая)

EPSS

Процентиль: 15%
0.0005
Низкий

7.6 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 7.6
ubuntu
почти 2 года назад

The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a stream. If the input is broken up into separate chunks in a certain way, the parser will attempt to read bytes from a chunk that has already been freed.

CVSS3: 7.3
redhat
почти 2 года назад

The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a stream. If the input is broken up into separate chunks in a certain way, the parser will attempt to read bytes from a chunk that has already been freed. 

CVSS3: 9.8
msrc
около 1 года назад

Описание отсутствует

CVSS3: 7.6
debian
почти 2 года назад

The JsonToBinaryStream()function is part of the protocol buffers C++ i ...

CVSS3: 7.6
github
почти 2 года назад

The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a stream. If the input is broken up into separate chunks in a certain way, the parser will attempt to read bytes from a chunk that has already been freed. 

EPSS

Процентиль: 15%
0.0005
Низкий

7.6 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-416