Количество 17
Количество 17
BDU:2026-05124
Уязвимость протокола сериализации данных Protobuf, связанная с неконтролируемой рекурсией, позволяющая нарушителю вызывать отказ в обслуживании
ROS-20260524-73-0055
Уязвимость protobuf
CVE-2026-0994
A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError.
CVE-2026-0994
A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError.
CVE-2026-0994
A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError.
CVE-2026-0994
A denial-of-service (DoS) vulnerability exists in google.protobuf.json ...
SUSE-SU-2026:0618-1
Security update for protobuf
SUSE-SU-2026:0563-1
Security update for protobuf
SUSE-SU-2026:0517-1
Security update for protobuf
SUSE-SU-2026:0374-1
Security update for protobuf
RLSA-2026:3095
Important: protobuf security update
RLSA-2026:3094
Important: protobuf security update
GHSA-7gcm-g887-7qv7
protobuf affected by a JSON recursion depth bypass
ELSA-2026-3095
ELSA-2026-3095: protobuf security update (IMPORTANT)
ELSA-2026-3094
ELSA-2026-3094: protobuf security update (IMPORTANT)
openSUSE-SU-2026:20390-1
Security update for protobuf
SUSE-SU-2026:1653-1
Security update for protobuf
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-05124 Уязвимость протокола сериализации данных Protobuf, связанная с неконтролируемой рекурсией, позволяющая нарушителю вызывать отказ в обслуживании | CVSS3: 8.6 | 0% Низкий | 7 месяцев назад | |
ROS-20260524-73-0055 Уязвимость protobuf | CVSS3: 8.6 | 0% Низкий | 2 месяца назад | |
CVE-2026-0994 A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError. | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
CVE-2026-0994 A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError. | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
CVE-2026-0994 A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError. | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
CVE-2026-0994 A denial-of-service (DoS) vulnerability exists in google.protobuf.json ... | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
SUSE-SU-2026:0618-1 Security update for protobuf | 0% Низкий | 5 месяцев назад | ||
SUSE-SU-2026:0563-1 Security update for protobuf | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2026:0517-1 Security update for protobuf | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2026:0374-1 Security update for protobuf | 0% Низкий | 6 месяцев назад | ||
RLSA-2026:3095 Important: protobuf security update | 0% Низкий | 5 месяцев назад | ||
RLSA-2026:3094 Important: protobuf security update | 0% Низкий | 5 месяцев назад | ||
GHSA-7gcm-g887-7qv7 protobuf affected by a JSON recursion depth bypass | 0% Низкий | 6 месяцев назад | ||
ELSA-2026-3095 ELSA-2026-3095: protobuf security update (IMPORTANT) | 5 месяцев назад | |||
ELSA-2026-3094 ELSA-2026-3094: protobuf security update (IMPORTANT) | 5 месяцев назад | |||
openSUSE-SU-2026:20390-1 Security update for protobuf | 5 месяцев назад | |||
SUSE-SU-2026:1653-1 Security update for protobuf | 3 месяца назад |
Уязвимостей на страницу