Логотип exploitDog
bind: "CVE-2022-3171"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2022-3171"

Количество 11

Количество 11

ubuntu логотип

CVE-2022-3171

больше 2 лет назад

A parsing issue with binary data in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2022-3171

больше 2 лет назад

A parsing issue with binary data in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2022-3171

больше 2 лет назад

A parsing issue with binary data in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 4.3
EPSS: Низкий
msrc логотип

CVE-2022-3171

9 месяцев назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2022-3171

больше 2 лет назад

A parsing issue with binary data in protobuf-java core and lite versio ...

CVSS3: 4.3
EPSS: Низкий
redos логотип

ROS-20221020-02

больше 2 лет назад

Уязвимость protobuf-java

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-h4h5-3hr4-j3g2

больше 2 лет назад

protobuf-java has a potential Denial of Service issue

CVSS3: 5.7
EPSS: Низкий
fstec логотип

BDU:2022-06396

больше 2 лет назад

Уязвимость библиотеки среды выполнения Java Protocol Buffers protobuf-java, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3922-1

больше 2 лет назад

Security update for protobuf

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2783-2

почти 2 года назад

Security update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcrypt, python-cryptography, python-cryptography-vectors, python-google-api-core, python-googleapis-common-protos, python-grpcio-gcp, python-humanfriendly, python-jsondiff, python-knack, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-psutil, python-pytest-asyncio, python-requests, python-websocket-client, python-websockets

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2783-1

почти 2 года назад

Security update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcrypt, python-cryptography, python-cryptography-vectors, python-google-api-core, python-googleapis-common-protos, python-grpcio-gcp, python-humanfriendly, python-jsondiff, python-knack, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-psutil, python-pytest-asyncio, python-requests, python-websocket-client, python-websockets

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-3171

A parsing issue with binary data in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2022-3171

A parsing issue with binary data in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2022-3171

A parsing issue with binary data in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
msrc логотип
CVSS3: 7.5
0%
Низкий
9 месяцев назад
debian логотип
CVE-2022-3171

A parsing issue with binary data in protobuf-java core and lite versio ...

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
redos логотип
ROS-20221020-02

Уязвимость protobuf-java

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-h4h5-3hr4-j3g2

protobuf-java has a potential Denial of Service issue

CVSS3: 5.7
0%
Низкий
больше 2 лет назад
fstec логотип
BDU:2022-06396

Уязвимость библиотеки среды выполнения Java Protocol Buffers protobuf-java, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:3922-1

Security update for protobuf

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2783-2

Security update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcrypt, python-cryptography, python-cryptography-vectors, python-google-api-core, python-googleapis-common-protos, python-grpcio-gcp, python-humanfriendly, python-jsondiff, python-knack, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-psutil, python-pytest-asyncio, python-requests, python-websocket-client, python-websockets

почти 2 года назад
suse-cvrf логотип
SUSE-SU-2023:2783-1

Security update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcrypt, python-cryptography, python-cryptography-vectors, python-google-api-core, python-googleapis-common-protos, python-grpcio-gcp, python-humanfriendly, python-jsondiff, python-knack, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-psutil, python-pytest-asyncio, python-requests, python-websocket-client, python-websockets

почти 2 года назад

Уязвимостей на страницу