Back

HIGH

jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

Published Dec 13, 2022

Description

A stack overflow in Jettison before v1.5.2 allows attackers to cause a Denial of Service (DoS) via crafted JSON data.

Affected products

Remediation

Red Hat statement

Red Hat has determined the impact of this flaw to be Moderate. A successful attack using this flaw would require the processing of untrusted, unsanitized, or unrestricted user inputs, which runs counter to established Red Hat security practices.

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Dec 13, 2022
Updated Apr 22, 2025
Reserved Nov 21, 2022
CISA Vulnrichment
Updated Apr 22, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Dec 23, 2022
ENISA EUVD
Assigner mitre
Published Dec 13, 2022
Updated Apr 22, 2025
Exploited since n/a
EUVD-2022-7554 GHSA-7RF3-MQPX-H7XG