Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29425
HistoryFeb 19, 2021 - 1:15 a.m.

Denial Of Service (DoS)

2021-02-1901:15:41
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

0.001 Low

EPSS

Percentile

44.4%

jackson-dataformat-cbor is vulnerable to denial of service (DoS). The vulnerability exists through the eager allocation of byte buffer that causes an out of memory error when a large len value is processed in _finishBytes.