Количество 13
Количество 13
CVE-2026-0994
A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError.
CVE-2026-0994
A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError.
CVE-2026-0994
A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError.
CVE-2026-0994
A denial-of-service (DoS) vulnerability exists in google.protobuf.json ...
SUSE-SU-2026:0618-1
Security update for protobuf
SUSE-SU-2026:0563-1
Security update for protobuf
SUSE-SU-2026:0517-1
Security update for protobuf
SUSE-SU-2026:0374-1
Security update for protobuf
RLSA-2026:3095
Important: protobuf security update
RLSA-2026:3094
Important: protobuf security update
GHSA-7gcm-g887-7qv7
protobuf affected by a JSON recursion depth bypass
ELSA-2026-3095
ELSA-2026-3095: protobuf security update (IMPORTANT)
ELSA-2026-3094
ELSA-2026-3094: protobuf security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-0994 A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError. | 0% Низкий | 2 месяца назад | ||
CVE-2026-0994 A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError. | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
CVE-2026-0994 A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth accounting inside the internal Any-handling logic, an attacker can supply deeply nested Any structures that bypass the intended recursion limit, eventually exhausting Python’s recursion stack and causing a RecursionError. | 0% Низкий | 2 месяца назад | ||
CVE-2026-0994 A denial-of-service (DoS) vulnerability exists in google.protobuf.json ... | 0% Низкий | 2 месяца назад | ||
SUSE-SU-2026:0618-1 Security update for protobuf | 0% Низкий | около 1 месяца назад | ||
SUSE-SU-2026:0563-1 Security update for protobuf | 0% Низкий | около 1 месяца назад | ||
SUSE-SU-2026:0517-1 Security update for protobuf | 0% Низкий | около 1 месяца назад | ||
SUSE-SU-2026:0374-1 Security update for protobuf | 0% Низкий | около 2 месяцев назад | ||
RLSA-2026:3095 Important: protobuf security update | 0% Низкий | около 1 месяца назад | ||
RLSA-2026:3094 Important: protobuf security update | 0% Низкий | около 1 месяца назад | ||
GHSA-7gcm-g887-7qv7 protobuf affected by a JSON recursion depth bypass | 0% Низкий | 2 месяца назад | ||
ELSA-2026-3095 ELSA-2026-3095: protobuf security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-3094 ELSA-2026-3094: protobuf security update (IMPORTANT) | около 1 месяца назад |
Уязвимостей на страницу