Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-02754
HistoryJan 08, 2022 - 12:00 a.m.

Apache Avro Resource Management Error Vulnerability

2022-01-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
17
apache avro
data serialization
resource management
vulnerability
denial of service
.net sdk
apache foundation
inc.

EPSS

0.001

Percentile

50.6%

Apache Avro is a data serialization system from the Apache Foundation, Inc. A resource management error vulnerability exists in Apache Avro, which stems from the product’s .net SDK component not effectively limiting the amount of allocated resources. An attacker could allocate too many resources to cause a denial of service.