[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-3577-1 jansson -- jansson

ID: oval:org.secpod.oval:def:602501Date: (C)2016-05-30   (M)2022-09-23
Class: PATCHFamily: unix




Gustavo Grieco discovered that jansson, a C library for encoding, decoding and manipulating JSON data, did not limit the recursion depth when parsing JSON arrays and objects. This could allow remote attackers to cause a denial of service via stack exhaustion, using crafted JSON data.

Platform:
Debian 8.x
Product:
libjansson-dev
Reference:
DSA-3577-1
CVE-2016-4425
CVE    1
CVE-2016-4425
CPE    2
cpe:/a:libjansson:libjansson-dev
cpe:/o:debian:debian_linux:8.x

© SecPod Technologies