CVE-2024-23684
19.01.2024, 21:15
Inefficient algorithmic complexity in DecodeFromBytes function in com.upokecenter.cbor Java implementation of Concise Binary Object Representation (CBOR) versions 4.0.0 to 4.5.1 allows an attacker to cause a denial of service by passing a maliciously crafted input. Depending on an application's use of this library, this may be a remote attacker.Enginsight
Vendor | Product | Version |
---|---|---|
peteroupc | cbor | 4.0.0 ≤ 𝑥 < 4.5.1 |
𝑥
= Vulnerable software versions
References