Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-87822

Опубликовано: 09 сент. 2026
Источник: redhat
CVSS3: 7.5

Описание

t-digest versions 3.1 through 3.3 fail to validate centroid means during deserialization in MergingDigest.fromBytes, allowing attackers to inject NaN values that bypass validation checks. Attackers can craft malicious serialized digests containing NaN centroids that degrade sorting performance from O(n log n) to O(n squared), causing severe processing delays during merge operations.

A flaw was found in t-digest. A remote attacker can exploit a vulnerability in the MergingDigest.fromBytes deserialization process by injecting specially crafted "Not a Number" (NaN) values. These malicious values bypass validation checks, degrading sorting performance from efficient to significantly slower. This can lead to severe processing delays during merge operations, resulting in a Denial of Service (DoS) for the affected system.

Отчет

This is an Important denial of service vulnerability where remote attackers can degrade system performance. By injecting specially crafted NaN values during t-digest deserialization, an attacker can force the affected system to perform computationally expensive merge operations, leading to severe processing delays and resource exhaustion.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Fuse 7t-digestNot affected
Red Hat Offline Knowledge Portaloffline-knowledge-portal/rhokp-rhel9Affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-502
https://bugzilla.redhat.com/show_bug.cgi?id=2531002t-digest: t-digest: Denial of Service via NaN centroid injection during deserialization

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
6 дней назад

(t-digest versions 3.1 through 3.3 fail to validate centroid means duri ...)

CVSS3: 7.5
nvd
6 дней назад

t-digest versions 3.1 through 3.3 fail to validate centroid means during deserialization in MergingDigest.fromBytes, allowing attackers to inject NaN values that bypass validation checks. Attackers can craft malicious serialized digests containing NaN centroids that degrade sorting performance from O(n log n) to O(n squared), causing severe processing delays during merge operations.

CVSS3: 7.5
github
6 дней назад

t-digest versions 3.1 through 3.3 fail to validate centroid means during deserialization in MergingDigest.fromBytes, allowing attackers to inject NaN values that bypass validation checks. Attackers can craft malicious serialized digests containing NaN centroids that degrade sorting performance from O(n log n) to O(n squared), causing severe processing delays during merge operations.

7.5 High

CVSS3