Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2022-40149
Description:Those using Jettison to parse untrusted XML or JSON data may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow. This effect may support a denial of service attack.
Test IDs: 1.3.6.1.4.1.25623.1.0.893184  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2022-40149
Debian Security Information: DSA-5312 (Google Search)
https://www.debian.org/security/2023/dsa-5312
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=46538
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=46538
https://github.com/jettison-json/jettison/issues/45
https://github.com/jettison-json/jettison/issues/45
https://lists.debian.org/debian-lts-announce/2022/11/msg00011.html




© 1998-2025 E-Soft Inc. All rights reserved.