K000141024: G0 vulnerability CVE-2024-24786
Discription

Security Advisory Description The protojson.Unmarshal function can enter an infinite loop when unmarshaling certain forms of invalid JSON. This condition can occur when unmarshaling into a message which contains a google.protobuf.Any value, or when the UnmarshalOptions.DiscardUnknown option is set. (CVE-2024-24786) Impact Attackers can exploit this vulnerability to cause unexpected consumption of resources, such as CPU cycles or memory, resulting in the system slowing down or taking a long time to…Read More

Back to Main

Subscribe for the latest news: