Lucene search

K
redhatcveRedhat.comRH:CVE-2024-35328
HistoryJun 14, 2024 - 5:12 a.m.

CVE-2024-35328

2024-06-1405:12:23
redhat.com
access.redhat.com
15
mitigation
red hat
product security
ease of use
deployment
applicability
stability

AI Score

6.2

Confidence

High

EPSS

0

Percentile

9.6%

A flaw was found in the libyaml library. Setting a YAML string with the yaml_parser_set_input_string function to be parsed by the yaml_parser_parse function can cause an infinite loop, resulting in a denial of service in the application linked to the library.

Mitigation

Applications that do not parse YAML files/strings from untrusted sources will not be vulnerable to this vulnerability.

AI Score

6.2

Confidence

High

EPSS

0

Percentile

9.6%