Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-87962

Опубликовано: 10 сент. 2026
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

t-digest versions 3.1 through 3.3 contain a denial of service vulnerability in MergingDigest.fromBytes that fails to validate length and capacity fields from serialized data. Attackers can supply crafted serialized digests with mismatched header fields to trigger ArrayIndexOutOfBoundsException or NegativeArraySizeException, aborting the parsing thread.

A flaw was found in t-digest. A remote attacker could exploit a denial of service vulnerability in the MergingDigest.fromBytes function by providing specially crafted serialized data. This data, with unvalidated length and capacity fields, can cause the parsing thread to abort due to an ArrayIndexOutOfBoundsException or NegativeArraySizeException, leading to a denial of service.

Отчет

The MergingDigest.fromBytes() method does not validate length fields in serialized input, allowing an attacker to cause excessive memory allocation or out-of-bounds reads, resulting in a Denial of Service. This is exploitable when deserializing untrusted t-digest data received over the network.

Меры по смягчению последствий

Apply the upstream fix. As a workaround, ensure that t-digest serialized data is only accepted from trusted sources and not exposed to untrusted network input.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Fuse 7t-digestNot affected
Red Hat Offline Knowledge Portaloffline-knowledge-portal/rhokp-rhel9Affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2531399com.tdunning/t-digest: t-digest: t-digest: Denial of Service via unvalidated length fields

EPSS

Процентиль: 36%
0.00425
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
5 дней назад

(t-digest versions 3.1 through 3.3 contain a denial of service vulnerab ...)

CVSS3: 7.5
nvd
6 дней назад

t-digest versions 3.1 through 3.3 contain a denial of service vulnerability in MergingDigest.fromBytes that fails to validate length and capacity fields from serialized data. Attackers can supply crafted serialized digests with mismatched header fields to trigger ArrayIndexOutOfBoundsException or NegativeArraySizeException, aborting the parsing thread.

CVSS3: 7.5
github
6 дней назад

t-digest versions 3.1 through 3.3 contain a denial of service vulnerability in MergingDigest.fromBytes that fails to validate length and capacity fields from serialized data. Attackers can supply crafted serialized digests with mismatched header fields to trigger ArrayIndexOutOfBoundsException or NegativeArraySizeException, aborting the parsing thread.

EPSS

Процентиль: 36%
0.00425
Низкий

7.5 High

CVSS3