CVE-2024-21907
03.01.2024, 16:15
Newtonsoft.Json before version 13.0.1 is affected by a mishandling of exceptional conditions vulnerability. Crafted data that is passed to the JsonConvert.DeserializeObject method may trigger a StackOverflow exception resulting in denial of service. Depending on the usage of the library, an unauthenticated and remote attacker may be able to cause the denial of service condition.Enginsight
Vendor | Product | Version |
---|---|---|
newtonsoft | json.net | 𝑥 < 13.0.1 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References