Логотип exploitDog
bind:CVE-2022-3510
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-3510

Количество 7

Количество 7

ubuntu логотип

CVE-2022-3510

около 3 лет назад

A parsing issue similar to CVE-2022-3171, but with Message-Type Extensions in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2022-3510

около 3 лет назад

A parsing issue similar to CVE-2022-3171, but with Message-Type Extensions in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2022-3510

около 3 лет назад

A parsing issue similar to CVE-2022-3171, but with Message-Type Extensions in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2022-3510

5 месяцев назад

Parsing issue in protobuf message-type extension

EPSS: Низкий
debian логотип

CVE-2022-3510

около 3 лет назад

A parsing issue similar to CVE-2022-3171, but with Message-Type Extens ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4gg5-vx3j-xwc7

около 3 лет назад

Protobuf Java vulnerable to Uncontrolled Resource Consumption

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2023-04975

около 3 лет назад

Уязвимость библиотеки среды выполнения Java Protocol Buffers protobuf-java, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-3510

A parsing issue similar to CVE-2022-3171, but with Message-Type Extensions in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
redhat логотип
CVE-2022-3510

A parsing issue similar to CVE-2022-3171, but with Message-Type Extensions in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 5.3
0%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-3510

A parsing issue similar to CVE-2022-3171, but with Message-Type Extensions in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded messages with repeated or unknown fields causes objects to be converted back-n-forth between mutable and immutable forms, resulting in potentially long garbage collection pauses. We recommend updating to the versions mentioned above.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
msrc логотип
CVE-2022-3510

Parsing issue in protobuf message-type extension

0%
Низкий
5 месяцев назад
debian логотип
CVE-2022-3510

A parsing issue similar to CVE-2022-3171, but with Message-Type Extens ...

CVSS3: 7.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-4gg5-vx3j-xwc7

Protobuf Java vulnerable to Uncontrolled Resource Consumption

CVSS3: 7.5
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2023-04975

Уязвимость библиотеки среды выполнения Java Protocol Buffers protobuf-java, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
около 3 лет назад

Уязвимостей на страницу