Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37160
HistorySep 19, 2022 - 4:37 p.m.

Denial Of Service (DoS)

2022-09-1916:37:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
xstream core
vulnerability
dos attack
stack overflow
xml serialization
application crash

XStream Core is vulnerable to denial of service. The vulnerability exist due to a stack overflow during the serialization of xml data which allows an attacker to parse malicious input causing an application crash.

CPENameOperatorVersion
xstream corele1.4.19
xstream corele1.4.19