Vulnerability Description
A security issue was found in Netplex Json-smart 2.5.0 through 2.5.1. When loading a specially crafted JSON input, containing a large number of ’{’, a stack exhaustion can be trigger, which could allow an attacker to cause a Denial of Service (DoS). This issue exists because of an incomplete fix for CVE-2023-1370.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/TurtleLiu/Vul_PoC/tree/main/CVE-2024-57699
- https://nvd.nist.gov/vuln/detail/cve-2023-1370
FAQ
What is CVE-2024-57699?
CVE-2024-57699 is a vulnerability with a CVSS score of 7.5 (HIGH). A security issue was found in Netplex Json-smart 2.5.0 through 2.5.1. When loading a specially crafted JSON input, containing a large number of ’{’, a stack exhaustion can be trigger, which could allo...
How severe is CVE-2024-57699?
CVE-2024-57699 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-57699?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.