Back

HIGH

DoS Vulnerability in JSON-Java

Published Oct 12, 2023

Description

Denial of Service in JSON-Java versions up to and including 20230618.  A bug in the parser means that an input string of modest size can lead to indefinite amounts of memory being used.

Affected products

Remediation

Red Hat statement

This vulnerability may cause denial of service with a small string input, causing the server to be unresponsive easily, hence the Important impact.

Red Hat mitigation

No current mitigation is available for this flaw.

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Google
Published Oct 12, 2023
Updated Feb 13, 2025
Reserved Sep 19, 2023
CISA Vulnrichment
Updated Nov 21, 2024
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Oct 12, 2023
ENISA EUVD
Assigner Google
Published Oct 12, 2023
Updated Feb 13, 2025
Exploited since n/a
EUVD-2023-2880 GHSA-4JQ9-2XHW-JPX7