CVE-2023-7272

In Eclipse Parsson before 1.0.4 and 1.1.3, a document with a large depth of nested objects can allow an attacker to cause a Java stack overflow exception and denial of service. Eclipse Parsson allows processing (e.g. parse, generate, transform and query) JSON documents.
Configurations

No configuration.

History

21 Nov 2024, 08:45

Type Values Removed Values Added
References () https://gitlab.eclipse.org/security/vulnerability-reports/-/issues/12 - () https://gitlab.eclipse.org/security/vulnerability-reports/-/issues/12 -

18 Jul 2024, 12:28

Type Values Removed Values Added
Summary
  • (es) En Eclipse Parsson anterior a 1.0.4 y 1.1.3, un documento con una gran profundidad de objetos anidados puede permitir que un atacante provoque una excepción de desbordamiento de pila de Java y denegación de servicio. Eclipse Parsson permite procesar (por ejemplo, analizar, generar, transformar y consultar) documentos JSON.

17 Jul 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-17 15:15

Updated : 2024-11-21 08:45


NVD link : CVE-2023-7272

Mitre link : CVE-2023-7272

CVE.ORG link : CVE-2023-7272


JSON object : View

Products Affected

No product.

CWE
CWE-787

Out-of-bounds Write