Описание
A Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input. Maliciously structured messages—specifically those containing negative varints or deep recursion—can be used to crash the application, impacting service availability.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needed | |
| esm-infra-legacy/trusty | needed | |
| esm-infra-legacy/xenial | needed | |
| esm-infra/bionic | needed | |
| esm-infra/focal | needed | |
| esm-infra/xenial | ignored | end of ESM support, was needed |
| jammy | needed | |
| noble | needed | |
| questing | ignored | end of life, was needed |
| resolute | needed |
Показывать по
EPSS
Связанные уязвимости
A Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input. Maliciously structured messages—specifically those containing negative varints or deep recursion—can be used to crash the application, impacting service availability.
Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input
A Denial of Service (DoS) vulnerability exists in the Protobuf PHP lib ...
Protobuf: Denial of Service issue through malicious messages containing negative varints or deep recursion
Уязвимость библиотеки сериализации данных protobuf, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю вызвать отказ в обслуживании
EPSS