Логотип exploitDog
bind:CVE-2022-3509
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-3509

Количество 7

Количество 7

ubuntu логотип

CVE-2022-3509

около 3 лет назад

A parsing issue similar to CVE-2022-3171, but with textformat in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2022-3509

около 3 лет назад

A parsing issue similar to CVE-2022-3171, but with textformat in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2022-3509

около 3 лет назад

A parsing issue similar to CVE-2022-3171, but with textformat in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2022-3509

больше 1 года назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2022-3509

около 3 лет назад

A parsing issue similar to CVE-2022-3171, but with textformat in proto ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-g5ww-5jh7-63cx

около 3 лет назад

Protobuf Java vulnerable to Uncontrolled Resource Consumption

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2023-03851

больше 3 лет назад

Уязвимость компонента текстового анализа протокола сериализации данных Protobuf, связанная с ошибками при освобождении ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-3509

A parsing issue similar to CVE-2022-3171, but with textformat in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
redhat логотип
CVE-2022-3509

A parsing issue similar to CVE-2022-3171, but with textformat in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 5.3
0%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-3509

A parsing issue similar to CVE-2022-3171, but with textformat in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
msrc логотип
CVSS3: 7.5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2022-3509

A parsing issue similar to CVE-2022-3171, but with textformat in proto ...

CVSS3: 7.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-g5ww-5jh7-63cx

Protobuf Java vulnerable to Uncontrolled Resource Consumption

CVSS3: 7.5
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2023-03851

Уязвимость компонента текстового анализа протокола сериализации данных Protobuf, связанная с ошибками при освобождении ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу