Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:47568
HistoryJun 17, 2024 - 6:56 a.m.

Infinite Loop

2024-06-1706:56:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
libyaml
vulnerability
infinite loop
buffer states
yaml parser
denial-of-service (dos)

AI Score

6.9

Confidence

High

EPSS

0

Percentile

9.6%

LibYAML is vulnerable to an Infinite loop. The vulnerability is due to improper handling of buffer states during YAML parsing. An attackers can exploit this by crafting a specific input to the YAML parser which potentially leads to a Denial-of-Service (DoS) condition.

AI Score

6.9

Confidence

High

EPSS

0

Percentile

9.6%